Section: .. / papers / general /
| /// File Name: |
sniffing.pdf |
Description:
|
This is a whitepaper called Packet Sniffing. Written in Persian.
| | Homepage: | http://www.datairan.ir/ | | File Size: | 2772848 | | Last Modified: | Jan 15 19:36:53 2010 |
| MD5 Checksum: | d5df22a5efa0f3ceb3df8f726c360aab |
|
| /// File Name: |
sniffing_diag.pdf |
Description:
|
This paper describes a practical attack against the protocol used by SAP for client server communication. The purpose of this paper is to clarify the fact that the protocol does not sufficiently protect sensitive information like user names and passwords.
| | Author: | Andreas Baus,Rene Ledosquet | | File Size: | 145380 | | Last Modified: | Jul 17 16:47:08 2009 |
| MD5 Checksum: | 0dfef625ea594c24856e94170d752328 |
|
| /// File Name: |
socat-virtual-network.pdf |
Description:
|
Whitepaper discussing how to create virtual networks with Socat. Written in Turkish.
| | Author: | Necati Demir | | File Size: | 129355 | | Last Modified: | Dec 7 20:08:50 2009 |
| MD5 Checksum: | 46f30a529d4ca3155f18d561ec812abd |
|
| /// File Name: |
social-engineering.pdf |
Description:
|
Whitepaper called Social Engineering - An Attack Of Persuasion. Written in French.
| | Author: | 599eme Man | | File Size: | 258893 | | Last Modified: | Jun 22 23:13:33 2009 |
| MD5 Checksum: | 44159f876c96d6b554858c0a6b9b453e |
|
| /// File Name: |
sock-raw.txt |
Description:
|
This paper's purpose is to explain the often misunderstood nature of raw sockets. The driving force of writing this text was the curiosity of the author to learn the ins and outs of this powerful socket type also known as SOCK_RAW. What is going to be discussed here will *not* be another tutorial on how to hand-craft one's own packets. This topic has been overly discussed many times and one can find quite a few references on the net about it (mixter etc). What is going to be discussed here is what raw sockets do behind the scenes.
| | Author: | ithilgore | | Homepage: | http://sock-raw.homeunix.org/ | | File Size: | 64613 | | Last Modified: | Dec 8 23:23:59 2008 |
| MD5 Checksum: | 733a08d7be73f0242f7fa4c92660f9e5 |
|
| /// File Name: |
Software.Distribution.Malware.Infec..> |
Description:
|
This paper presents an efficient mechanism as well as the corresponding reference implementation for on-the-fly infecting of executable code with malicious software. Their algorithm deploys virus infection routines and network redirection attacks, without requiring the modification of the application itself. This allows infection of executables with an embedded signature when the signature is not automatically verified before execution. They briefly discuss countermeasures such as secure channels, code authentication as well as trusted virtualization that enables the isolation of untrusted downloads from other applications running in trusted domains or compartments.
| | Author: | Felix Groebert | | Homepage: | http://groebert.org/felix | | File Size: | 223713 | | Last Modified: | Jul 18 17:30:01 2008 |
| MD5 Checksum: | f0295501b1659600e2481f6a2cb082cb |
|
| /// File Name: |
sonda-TR.pdf |
Description:
|
Whitepaper called A Practical Attack to De-Anonymize Social Network Users.
| | Author: | Christopher Kruegel,Engin Kirda,Gilbert Wondracek,Thorsten Holz | | File Size: | 566975 | | Last Modified: | Mar 1 17:06:11 2010 |
| MD5 Checksum: | 9b9fdebc922d5057c3271a50176f09d0 |
|
| /// File Name: |
spoofing-technique.txt |
Description:
|
Whitepaper called spoofing technique.
| | Author: | mc2_s3lector | | File Size: | 2285 | | Last Modified: | Feb 9 17:34:57 2010 |
| MD5 Checksum: | 65a186b0f1619645b5df80b181c70b95 |
|
| /// File Name: |
sqlinj-paper.txt |
Description:
|
Whitepaper discussing SQL injection. Written in Portuguese.
| | Author: | Rafael Arantes | | File Size: | 4487 | | Last Modified: | Jan 18 20:22:56 2010 |
| MD5 Checksum: | be352ed7cb456f96db7991ac76f81452 |
|
| /// File Name: |
SQLInjectionWhitePaper.pdf |
Description:
|
SQL injection is a technique for exploiting web applications that use client-supplied data in SQL queries without stripping illegal characters first. Despite being remarkably simple to protect against, there is an astonishing number of production systems connected to the Internet that are vulnerable to this type of attack. The objective of this paper is to educate the professional security community on the techniques that can be used to take advantage of a web application that is vulnerable to SQL injection as well as make clear the correct mechanisms that should be put in place to protect against SQL injection, as well as input validations problems in general.
| | Author: | SPI Labs | | Homepage: | http://www.spidynamics.com | | File Size: | 816899 | | Last Modified: | Feb 2 03:20:35 2002 |
| MD5 Checksum: | e67624e3913f0dd2dea2ddbae0a5f3dd |
|
| /// File Name: |
ssh-tunnelfwd.pdf |
Description:
|
Short tutorial called SSH Tunneling and SSH Port Forwarding.
| | Author: | n3tpr0b3 | | File Size: | 392736 | | Last Modified: | Mar 16 17:21:38 2009 |
| MD5 Checksum: | 74f38a09137240cb3c9a6ca2d431fc9c |
|
| /// File Name: |
ssh_tunnels.txt |
Description:
|
Encrypted Tunnels using SSH and MindTerm - This paper will discuss using Secure Shell (SSH) and MindTerm to secure organizational communication across the Internet. Easy to setup and reliable software need to be used in order to allow the inexperienced users the ability to quickly establish secure communication channels.
| | Author: | Duane Dunston | | Homepage: | http://www.linuxsecurity.com | | File Size: | 34275 | | Last Modified: | May 30 19:25:25 2001 |
| MD5 Checksum: | c6f772e94054386472ab1a226d50571d |
|
| /// File Name: |
stack-overflow.pdf |
Description:
|
Whitepaper written in Spanish called Stack Overflow Como Si Estuvieraen Primero.
| | Author: | Pr@fEs0r X | | File Size: | 1211843 | | Last Modified: | Jan 30 19:15:07 2009 |
| MD5 Checksum: | 574b68026c94f8f3f9bfa97ed8aa127a |
|
| /// File Name: |
stakkato.pdf |
Description:
|
Paper discussing the Stakkato intrusions which ultimately resulted in the theft of IOS source code released by one of the affected sites detailing how they caught stakkato.
| | Author: | Micheal Turner | | Homepage: | http://www.nsc.liu.se/~nixon/stakkato.pdf | | File Size: | 163111 | | Last Modified: | May 25 21:30:34 2006 |
| MD5 Checksum: | 3a6f5bc541aea4bfd352fdd6d8431aeb |
|
| /// File Name: |
sthuy_article_openvpn_29940810.B.zi..> |
Description:
|
This whitepaper discusses OpenVPN as a free, secure, and easy to use and configure SSL-Based VPN solution. It offers various scenarios of use.
| | Author: | Stijn Huyghe | | File Size: | 1646498 | | Last Modified: | Aug 13 11:10:26 2004 |
| MD5 Checksum: | bd0687e11edb3c819cbc5613c99044bc |
|
| /// File Name: |
synflood.pdf |
Description:
|
Whitepaper called SynFlood DDOS Attacks and Prevention. Written in Turkish.
| | Author: | Huzeyfe ONAL | | File Size: | 433681 | | Last Modified: | Jan 19 21:39:06 2010 |
| MD5 Checksum: | 8250f1ac90a72b3238a67db6dc5e0aee |
|
| /// File Name: |
SyscalltableAMD64EN.txt |
Description:
|
Whitepaper titled "How to get sys_call_table on amd64 under Linux".
| | Author: | pouik | | File Size: | 9327 | | Last Modified: | Oct 18 19:35:23 2006 |
| MD5 Checksum: | cb8bcc65f01e76177ffea9b98ef6102c |
|
| /// File Name: |
tcom_router.txt |
Description:
|
Whitepaper discussing the T-Com Speedport W 500 V router and related security issues that surround it.
| | Author: | insec | | File Size: | 43030 | | Last Modified: | Jan 21 16:34:42 2009 |
| MD5 Checksum: | fb2191cd8ac2a5b1f6cbf033b727d5b2 |
|
| /// File Name: |
tcpip-fragment.pdf |
Description:
|
Whitepaper discussing TCP/IP fragmented packets. Written in Turkish.
| | Author: | Huzeyfe ONAL | | File Size: | 476467 | | Last Modified: | Aug 6 02:33:29 2009 |
| MD5 Checksum: | 1196ce9d4f76289c544409f4891fd03e |
|
| /// File Name: |
telephony-ip.pdf |
Description:
|
Whitepaper discussing telephony in conjunction with IP. Written in Spanish.
| | Author: | Cygog | | File Size: | 229928 | | Last Modified: | Jan 30 19:15:01 2009 |
| MD5 Checksum: | 988fe398061a850ee4c958cf28da9960 |
|
| /// File Name: |
tempest.pdf |
Description:
|
The story regarding how the United States first learned about the fundamental security vulnerability called "compromising emanations" is revealed for the first time in this 1972 paper called TEMPEST: A Signal Problem.
| | Homepage: | http://www.nsa.gov/ | | File Size: | 284750 | | Last Modified: | Apr 29 21:06:17 2008 |
| MD5 Checksum: | 6930f3cfa80a029f63102875a3947dcc |
|
| /// File Name: |
the_in_security_of_omegle.pdf |
Description:
|
Whitepaper called The (In)Security Of Omegle - What Omegle Users Should Know.
| | Author: | Valentin Hobel | | File Size: | 482991 | | Last Modified: | Feb 10 18:07:20 2010 |
| MD5 Checksum: | e3e3c8e1f97a0a39184ad62581357078 |
|
| /// File Name: |
timesync.html |
Description:
|
White paper discussing the fact that many modern networks are extremely dependant on a centralized time resource and the negative aspects of a network not having one.
| | Author: | 3APA3A | | Homepage: | http://www.security.nnov.ru/advisories/timesync.asp | | File Size: | 22180 | | Last Modified: | Aug 20 03:54:26 2004 |
| MD5 Checksum: | b4fcd8bce74ebb05e8db85ae5c200d7c |
|
|
|
|
|