Browsing Monthly Archive August 2012
IMG_6602-Project-365-Day-16 0

Crack Me Challenge Part 4

First we must take a look at the following piece of code that will be presented in the code segment 5: 004017FC |. B8 40000000

August 31, 2012 Reverse Engineering
a671cd458a15054d8f3b31d9c175bf29 0

WordPress Security

1. Introduction There are numerous tools available when checking the security of the WordPress Content Management System (CMS). In the rest of the article we’ll

August 31, 2012 Application Security
Keyboard 2

CrackMe Challenge Part 3: The Logic Behind the First Challenge

If we take our predicate that we’ve seen in the end of part 2 into account and input at least 64 bytes (0x40) into the

August 30, 2012 Reverse Engineering
inetvis-nmap_decoy_gridsweep 3

Nmap Evade Firewall & Scripting

Nmap is the most powerful scanner that is used to perform so many functions including port scanning, service detection, and even vulnerability detection. Nmap from

August 29, 2012 Hacking
net_monitor 0

Using Log4Trail

A few weeks ago, I happened to read an article from pir8geek.com (a blog about Linux goodies and tips) about a new tool which is

August 28, 2012 Forensics
hacked11copy 0

Interview: Marius Corici, CEO of Hack a Server

Marius Corici is the Co-Founder and CEO of Hack a Server. He is a serial entrepreneur and has been involved with various industries. In 2003

August 28, 2012 Interviews
Network-Security-Ethical-Hacking 0

CrackMe Challenge Part 2

The First Message Box Let’s start our unpacked program with OllyDbg, run it, input eight A’s into the Name and Key 1 field and press

August 28, 2012 Reverse Engineering
keyboard 9

ESET Rule the Code – CrackMe Challenge Part 1: The Unpacking Process

1. Presenting the Problem The CrackMe challenge was first observed on the ESET CrackMe web page, which looked like the the picture below: On the

August 27, 2012 Hacking
software 2

Securing the Software Development Environment

In the February 2012 edition of Computer, a sidebar to an article on “Web Application Vulnerabilities” asks the question: “Why don’t developers use secure coding

August 27, 2012 Hacking
hr20 1

IT Recruiter Interview: John Maughan and Chris Currie from ITHR

Information Technology is the engine room of the modern business, according to recruitment consultancy ITHR (IT Human Resources) in London, England. If that statement holds

August 27, 2012 Interviews
Screen_shot_2009-10-25_at_4.21 1

Vulnerable Applications

Introduction How often have we found ourselves in need of a vulnerable application, which we could use for various purposes? We could use such applications

August 24, 2012 Hacking
identification system interface 0

Chapter 11 – Identity Management and Access Controls

Access controls help us restrict whom and what accesses our information resources, and they possess four general functions: identity verification, authentication, authorization, and accountability. These

August 24, 2012 General Security
1337s.medium 2

A Review of Selected Cryptographic Libraries

Cryptography is the science that deals with the problems of concealing information by encrypting it, and contains the set of methods for achieving such secrecy.

August 23, 2012 Hacking
Botnet-Image-2_wm 2

Sneak Peak into the Art of Exploitation

It’s a well-known saying that gathering maximum information about the enemy is half the work done in defeating him. The same holds true when you

August 22, 2012 Hacking
Trojan-Horse 2

Analyzing the German Trojan, Part 3: the Skype Component

Introduction In the last two parts, available here and here, we looked at the dropper and one of its components (a small EXE file) in

August 22, 2012 Hacking
original 0

Can We Have a Safe Election via the Internet?

In connection with the upcoming USA presidential elections in 2012, I would like to discuss holding the election via the Internet and the risks associated

August 21, 2012 Other
Nessus 5.0.1 -  Vulnerability scanner 0

Nessus

Nessus is an automatic vulnerability scanner that can detect most known vulnerabilities, such as misconfiguration, default passwords, unpatched services, etc. From the following picture, we

August 21, 2012 Hacking
JBoss_logo 3

JBOSS Exploitation

JBoss Application Server is an open-source Java EE-based application server. JBoss is widely used and is deployed by many organizations on their web servers. There are various

August 20, 2012 Hacking
Tor_Project_Anonymity_Online_-_Google_Chrome_2011-05-01_09-59-43 0

Achieving Anonymity with Tor Part 5: Tor Bridges and Hidden Services

1. Introduction to Tor Bridging Running a Tor bridge is essentially the same as running a Tor relay, as far as configuration is concerned. We

August 20, 2012 Other
Tor_project_logo_hq 0

Achieving Anonymity with Tor Part 4: Tor Relays

1. Introduction We’ve seen that Tor network is constituted from Tor nodes, through which we tunnel our traffic to reach anonymity. So far we didn’t

August 17, 2012 Other
Back to Top Copyright © 2012 - InfoSec Institute