Security Tools

/Security Tools

Week 23 in Review – 2012

Resources Efficient Padding Oracle Attacks on Cryptographic Hardware - hal.inria.fr Stealing RSA private keys from hardware using oracle attacks in a few hours. JSLR - thespanner.co.uk Cross-Site Scripting (XSS) has been around for ages – with first incidents being reported in the late nineties. Despite the attack technique not being the most complex of all, [...]

2017-03-12T17:39:48-07:00 June 10th, 2012|Security Tools, Security Vulnerabilities|0 Comments

Week 22 in Review – 2012

Event Related HITB Security Conference 2012 Amsterdam - Materials - conference.hitb.org The Materials of HITB Security Conference 2012 – Amsterdam has been published. Resources iOS iPhone Forensics Analysis of iOS 5 backups : Part 2 - resources.infosecinstitute.com In the first part of this article, we discussed the techniques to read iTunes backups. The following article [...]

Week 21 in Review – 2012

Event Related HITB2012 Amsterdam Day 1 HITB2012AMS Day 1 – One Flew Over The Cuckoos Nest - corelan.be Claudio Guarnieri, senior researcher at iSight Partner, and part of the Shadowserver Foundation and the HoneyPot project. He works with malware on a daily basis, maintains malwr.com and is the main developer of the Cuckoo Sandbox, which [...]

Week 19 in Review – 2012

Resources Research for SharePoint (MOSS) - owasp.org This page contains research notes on Microsoft's SharePoint MOSS and WSS MS SQL - Useful Stored Procedures for SQL Injection and Ports Info - pentesticles.com The following post lists and describes various useful stored procedures and port information for MS SQL. Portable Executable 101 - a windows executable [...]

Week 17 in Review – 2012

Event Related Our CanSecWest 2012 slides on passive DNS and Picviz - picviz.blogspot.fr Alexandre Dulaunoy from CIRCL.LU and Sebastien Tricaud from Picviz Labs have been talking at CanSecWest 2012 in Vancouver, Canada, on how to scrutinize a country using passive DNS and Picviz. SyScan 2012 Singapore slides - www.xchg.info Conference and slides of SyScan 2012 [...]

Week 16 in Review – 2012

Event Related Hackito Ergo Sum 2012 TALKS // Hackito Ergo Sum 2012 - 2012.hackitoergosum.org In this presentation we will cover critical aspects of web applications, and how these techniques can be used on real life scenario on big (and highly “secured”) websites. These bugs and methods will be able to assist you in your next [...]