Posts
Twitter

Archive for the 'Vulnerability Research' Category

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)This book is essential for anyone who is into software development to understand the basic security flaws as well as detect & eliminate them during the early development phase of the product itself.  It offers detailed coverage on 19 crucial security flaws each explained in separate chapters. The book covers [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)Fuzzing is the most powerful and quick method to expose the security flaws in any product. In that direction, this is the first book which attempted to cover all aspects of fuzzing.  Written by prominent authors who mastered this field, the book not only explains the fundamentals but rich with [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)My new tool, SpyDLLRemover is released on the RootkitAnalytics website. This tool helps in detecting and deleting userland based rootkits which hide the processes and injected modules to prevent their detection from antirootkit softwares. Here is the snapshot of SpyDLLRemover detecting the hidden process belonging to HackerDefender Rootkit. Here is [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)This is one of the best book written on most complex and interesting topics of computer security, ‘Discovering and Exploiting Security Holes’. It starts with explanation of different classes of security vulnerabilities such as stack overflows, heap overflows and format string bugs. Then it goes on describing the techniques to [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes) ProcHeapViewer 2.1, is a tool to scan process heaps now comes with integrated search feature which makes it easy to find ascii as well as unicode strings within the heap blocks. Also this new version has better user interface which not only gives it cool look & feel but [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)There is yet another book on the reversing arena which promises great deal of things. The books is titled “Reverse Engineering Code with IDA Pro” is set to release during the second week of February 2008. So far very few books have been released in the reverse engineering field. Also [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)ProcHeapViewer is a fast heap enumeration tool which uses better technique than normal Windows heap API functions. Its very useful tool for anyone involved in analyzing process heaps. Vulnerability researchers can find it useful while working on heap related vulnerabilities. Traditional Windows heap enumeration functions are slower and takes lot [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)Charles Miller, security researcher at Independent Security Evaluators claims that he got the offer of $80,000 for remotely exploitable flaw in Linux, sighs that he could have asked for more. Though he could not get that price due to several conditions but finally managed to sell it for $50,000. He [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)ReactOS® is an advanced free open source operating system providing a ground-up implementation of a Microsoft Windows® XP compatible operating system. ReactOS is currently in its alpha stage and there is long way to go.Though its not exact replica of Windows XP, its near match. Moreover all function names are [...]

Read Full Post »

VN:F [1.7.7_1013]Rating: 0 (from 0 votes)iDefense who created the waves in the security world by introducing the vulnerability research program has started new game for researchers to find out the remotely exploitable flaw in critical internet applications. The game is open for second & third quarters of this year giving ample time for researchers to [...]

Read Full Post »

« Prev