Varga-Perke Bálint, Silent Signal Kft.
Kiskacsa2014jun
Kiskacsa2015dec
PasswMSSQL789
PasswDC789
2ac9cb7dc02b3c0083eb70898e549b63
E52CAC67419A9A2238F10713B629B565:64F12CDDAA88057E06A81B54E73B949B50 61 73 73 77 6f 72 64 31 |Password1|
inurl:bXXXXp site:.hu filetype:sXl
CVE-2009-3482 - TrustPort Antivirus use weak permissions (Everyone: Full Control) for files under %PROGRAMFILES%
MS10-09[3-7]
CVE-2014-0907 - SetUID/SetGID Programs Allow Privilege Escalation Via Insecure RPATH In IBM DB2
#!/bin/bash
#MY_PASS=szeretlek2010gizike
#MY_PASS=szeretlek2011marika
MY_PASS=eltonjohn4ever
CVE-2014-0476 - chkrootkit
SLAPPER_FILES="${ROOTDIR}tmp/.bugtraq ${ROOTDIR}tmp/.bugtraq.c"
# More initialization ...
file_port=
if ${netstat} "${OPT}"|${egrep} "^tcp"|${egrep} "${SLAPPER_PORT}">
/dev/null 2>&1
then
# Setting $file_port ...
fi
for i in ${SLAPPER_FILES}; do
if [ -f ${i} ]; then
file_port=$file_port $i
STATUS=1
fi
done
DEMO
c:\Program Files\Dumb Vendor\Crap Ware.exe -p param1
DEMO
4e 99 06 e8 fc b6 6c c9 fa f4 93 10 62 0f fe e8 f4 96 e8 06 cc 05 79 90 20 9b 09 a4 33 b6 6c 1b
Tökéleses védelem nem létezik, a cél a támadás költségeinek emelése!
Angler (2014 május):
CVE-2013-0074 (március) + CVE-2013-3896 (október)
"The race was definitely underway. I had witnessed the start. I was sure of that much.
But what now ? What comes next ?"
vpbalint kukac silentsignal hu