OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Dailydave] Google Security Team

From: Roman Medina-Heigl Hernandez (romanrs-labs.com)
Date: Thu Sep 28 2006 - 04:17:35 CDT


H D Moore escribió:
> His exploit code for the recent OpenSSH DoS is just damned funny:

Cool. I coded a local buffer-overflow exploit in sh some time ago. It was
intended for an environment where no compiler nor other interpreters (perl,
etc) were found (an old AIX system). The goal was maximum "compatibility"
(including several shell variants). I did it for fun and because I couldn't
find something similar in my quick search. It's not something awesome but I
could upload it to my site if someone is interested.

Which other "curious" exploits in shell do you know of?

Cheers,
-Román
_______________________________________________
Dailydave mailing list
Dailydavelists.immunitysec.com
http://lists.immunitysec.com/mailman/listinfo/dailydave