Section: .. / papers / unix /
| /// File Name: |
Securing-Optimizing-RH-Linux-1_2.pd..> |
Description:
|
Securing and Optimizing Red Hat Linux - This documentation is indispensable for peoples that want to get all advantage, security, and optimization of a Linux Server. Features Free/SWAN section, Quota configuration, Portsentry, Logcheck, section, improved firewall security approach, more system security tips and a lot other changes. This is the version 1.2 released the March 17, 2000.
| | Author: | Gerhard Mourani | | Homepage: | http://pages.infinit.net/lotus1/ | | File Size: | 2734799 | | Last Modified: | Apr 5 19:21:14 2000 |
| MD5 Checksum: | 4e12ba68f8ecabb49a9835b8d88a1c6d |
|
| /// File Name: |
AIX_Security.pdf |
Description:
|
White paper on basic security and hardening procedures for AIX. Many of the features and functions shown throughout this guide are applicable to AIX 4.3 and above, but are more directed towards AIX 5.2. This guide attempts to cover a lot of ground and offers useful and necessary insight for anyone administering AIX machines.
| | Author: | Andre Derek Protas | | File Size: | 356907 | | Last Modified: | Jul 27 23:23:39 2004 |
| MD5 Checksum: | 7ee76c37cf394cc8018decb23e4e558e |
|
| /// File Name: |
osstmm.pdf |
Description:
|
Open-Source Security Testing Methodology Manual - This is a document of Internet security testing methodology, a set of rules and guidelines for solid penetration testing, ethical hacking, and information security analysis including the use of open source testing tools for the standardization of security testing and the improvement of automated vulnerability testing tools.
| | Homepage: | http://www.ideahamster.org | | File Size: | 321442 | | Last Modified: | Apr 7 02:14:08 2001 |
| MD5 Checksum: | 039e3cb8c5d94cdfe5ee1b5f56784f88 |
|
| /// File Name: |
unixsec.ps |
Description:
|
UNIX & Security: Describes many of the security features of the UNIX operating system, as well as features that could be added to result in an evaluatable system at Class C2
| | File Size: | 299109 | | Last Modified: | Oct 1 17:22:48 1999 |
| MD5 Checksum: | d1e921d3d8bab9f12e8226d64b883971 |
|
| /// File Name: |
asmcodes-1.0.2.pdf |
Description:
|
Unix Assembly Code Development for Vulnerabilities Illustration Purposes v1.02 - Covers IRIX / MIPS, Solaris, HP-UX, AIX, Ultrix, Linux, BeOS, and BSD. Includes system call invocation information, code specifics, "Zero free" code, ASM functionality, and examples.
| | Author: | The Last Stage of Delerium | | Homepage: | http://lsd-pl.net | | File Size: | 280120 | | Last Modified: | Jul 29 01:48:31 2001 |
| MD5 Checksum: | 024ff88ab975a35c795a04c9db0f0576 |
|
| /// File Name: |
sri.ps |
Description:
|
Improving the Security of Your UNIX System: A description of many of the security features of the average UNIX system, and how to use them
| | File Size: | 274262 | | Last Modified: | Oct 1 17:22:48 1999 |
| MD5 Checksum: | c52a4a9fa7497e501cb8f84d80fcd5b5 |
|
| /// File Name: |
core_format_strings.pdf |
Description:
|
Vulnerabilities in Your Code Part II - Format string vulnerabilities and exploitation. Shows the exact location of the vulnerabilities, providing detailed explanations and exploits for each one found.
| | Author: | Core Security Team | | Homepage: | http://www.core-sec.com | | File Size: | 236465 | | Last Modified: | Jan 23 03:40:01 2003 |
| MD5 Checksum: | bb907eb9a4f60e0c9bfc8c3f75d6307a |
|
| /// File Name: |
tripwire.ps |
Description:
|
The Design and Implementation of Tripwire: A File System Integrity Checker: Tripwire computes checksums of files on the system, and then scans later for any changes to those files
| | File Size: | 222139 | | Last Modified: | Oct 1 17:22:48 1999 |
| MD5 Checksum: | 66e85a10586dc2a38398ebf44ba36224 |
|
| /// File Name: |
formatstring-1.2.tar.gz |
Description:
|
Exploiting Format String Vulnerabilities v1.2 - Includes over 30 pages of well organized information along with several examples.
| | Author: | Scut | | Homepage: | https://www.team-teso.net | | File Size: | 214530 | | Last Modified: | Oct 11 00:41:48 2001 |
| MD5 Checksum: | b83261bd868fa46874290b59915bda58 |
|
| /// File Name: |
cops.ps |
Description:
|
The COPS Security Checker System: A description of one of the most popular UNIX security scanners
| | File Size: | 202735 | | Last Modified: | Oct 1 17:22:48 1999 |
| MD5 Checksum: | 1595be6f3741364a37bd6943cb0da3a1 |
|
| /// File Name: |
tools.ps |
Description:
|
UNIX Security Tools: An excellent summary of most of the public domain UNIX security tools, and where to obtain them
| | File Size: | 147852 | | Last Modified: | Oct 1 17:22:48 1999 |
| MD5 Checksum: | 2f8e5396603ba8eb713b4974da1427df |
|
| /// File Name: |
bsdkern.htm |
Description:
|
Attacking FreeBSD with Kernel Modules - The System Call Approach. System calls can be backdoored on FreeBSD much like they can on linux, and most linux kernel modules can easily be ported to FreeBSD. Includes information on intercepting system calls, filesystem related hacks, hiding files and contests, process related hacks, file execution redirection, tty hijacking, and module hiding.
| | Author: | pragmatic | | Homepage: | http://www.pimmel.com/articles/ | | File Size: | 146950 | | Last Modified: | Dec 20 15:09:53 1999 |
| MD5 Checksum: | 6fa8de63f4d5e1d3600b411782a2ff6a |
|
| /// File Name: |
envpaper.pdf |
Description:
|
Radical Environments part I - A paper that compiles various stack related tips and tricks which discusses how an exploit without nops works.
| | Author: | gloomy, The Itch | | Homepage: | http://www.netric.org | | File Size: | 131498 | | Last Modified: | Apr 22 01:53:49 2003 |
| MD5 Checksum: | b567cc1c11e03fc568e88bd47b06c40c |
|
| /// File Name: |
sparc.zip |
Description:
|
This document describes buffer overrun vulnerabilities on Sun Microsystems SPARC machines. We will begin by examining the SPARC architecture, looking at the registers and the stack. We will then go on to see exact how buffer overrun vulnerabilities occur and how control over the processes execution is gained under SPARC and then detail how, from here, the vulnerability can be exploited to gain control over the computer by looking at exploit code that spawns a shell under Solaris.
| | Author: | David Litchfield | | Homepage: | http://www.atstake.com | | File Size: | 101504 | | Last Modified: | Jan 25 02:22:44 2002 |
| MD5 Checksum: | f84c8fdc8a46ebf7eb620006ec7dd07d |
|
| /// File Name: |
twexper.ps |
Description:
|
Experiences With Tripwire: Using Integrity Checkers for Intrusion Detection: A description of how the Tripwire integrity checker has performed in the field
| | File Size: | 99971 | | Last Modified: | Oct 1 17:22:48 1999 |
| MD5 Checksum: | c9f69cefd7ca2199e43a1f88a71b60e4 |
|
| /// File Name: |
Vortrag-1.0.tar.gz |
Description:
|
German speech given at the CCC - "exploiting format string vulnerabilities". Including examples.
| | Author: | Scut | | Homepage: | https://www.team-teso.net | | File Size: | 99066 | | Last Modified: | Dec 31 11:01:23 2000 |
| MD5 Checksum: | 7a06a5c5d2cef4a82fb837d94c50fca8 |
|
| /// File Name: |
sessext.ps |
Description:
|
The `Session Tty' Manager: A method for controlling access to terminals by background processes after the user has logged out
| | File Size: | 98032 | | Last Modified: | Oct 1 17:22:48 1999 |
| MD5 Checksum: | 789d924b9b1e382ba5c95ff4c901b921 |
|
| /// File Name: |
promiscuous_detection_01.pdf |
Description:
|
In the local network, the act of sniffing has become a serious threat. Malicious users can use sniffing techniques to steal confidential documents and anyone's privacy by sniffing the network. Sniffing causes privacy intrusion, and can be done simply by downloading free sniffer tools from the Internet and installing them into a personal computer that resides on the local network. The documentation below discusses the use of Address Resolution Protocol (ARP) packets to effectively detect malicious users when they are sniffing the network. The tool Promiscan implements the techniques discussed in this document.
| | Homepage: | http://www.securityfriday.com | | File Size: | 95873 | | Last Modified: | Dec 8 21:35:57 2001 |
| MD5 Checksum: | bc65962e49e09ab64b3e0d74e72cfe7d |
|
| /// File Name: |
noroot.ps |
Description:
|
Life Without Root: A method for authorizing users to perform certain system administration tasks without giving them the super-user password
| | File Size: | 82758 | | Last Modified: | Oct 1 17:22:48 1999 |
| MD5 Checksum: | db036d542aa53454f5503454ec32d190 |
|
| /// File Name: |
IM2001.pdf.gz |
Description:
|
Monitoring Networks Using ntop - How to monitor networks using the security tool ntop. Includes information on how to use it as a lightweight IDS.
| | Homepage: | http://www.ntop.org/ntop.html | | File Size: | 61795 | | Last Modified: | Jul 10 20:49:36 2001 |
| MD5 Checksum: | d7040802ce1e515343918c4951abd3e9 |
|
| /// File Name: |
adv.overflow.paper.txt |
Description:
|
Paper on writing advanced buffer overflow exploits. The early buffer overflow exploit codes only spawn a shell ( execute /bin/sh ). However, nowadays some of the buffer overflow exploit codes have very nice features. For example, passing through filtering, opening a socket, breaking chroot, and so on. This paper will attempt to explain the advanced buffer overflow exploit skill under intel x86 linux.
| | Author: | Taeho Oh, Postech Laboratory for Unix Security, and Postech Linux User Group. | | File Size: | 60166 | | Last Modified: | Oct 21 17:07:02 1999 |
| MD5 Checksum: | 766c0b7ea7f39e69f2ab7dce3503415d |
|
| /// File Name: |
fbsdfun.htm |
Description:
|
Fun and Games with FreeBSD Kernel Modules - Kernel hacking using kernel modules and kmem patching. Contains information on how to intercept system calls and other calls in the kernel by altering the corresponding call table. Also shows how to alter these tables by writing to kernel memory and gives an example of patching the kernel directly without the use of modules. Furthermore an example is given on how the symbol table in the kernel can be altered.
| | Author: | Stephanie Wehner | | Homepage: | http://www.r4k.net | | File Size: | 56829 | | Last Modified: | Sep 17 22:36:32 2001 |
| MD5 Checksum: | 1c02af353600d213d821553a35d81211 |
|
| /// File Name: |
trinoo.analysis.txt |
Description:
|
Unavailable.
| | File Size: | 55408 | | Last Modified: | Dec 8 20:02:23 1999 |
| MD5 Checksum: | 850306089225ee486a29ed60b7f5dd71 |
|
|
|
|
|