Translate by BabelFish

HZV

  • Meeting HZV: on September 4, 2010

  • The rentrée arrives for Hackerzvoice, the night of the hack 2011 prépare, meetings HZV begin again as well as the trolls on the chan #hzvÂ… Like all first Saturday of the month, TEAM HZV will hold a meeting à to start from 16:00 in the new buildings de sysdream près of Paris. The new buildings are situés with: 108/108 bis av. Gabriel Pà ©ri - 93400 St-Ouen, SUBWAY 13 - GARIBALDI. It will be nécessaire to contact us by téléphone with 01.78.76.55 .73 in order to accéder à the enclosure of the building. At the time of this meeting, F|uxius will présentera its work on the USRP which will be entitled: “USRP Episode 1: Smoke Gets in Your Eyes”. You will require to provide you with the school stationery prévus in the list that the ministère of éducation main road forwarded to us here. PSÂ: the computer can être remplacée by a laptop with the tools for  “ coder ” or  “ reverser ” a calculatrice and the cartridges dÂ' ink by bière. Your classmates nÂ' will be that more assiduous in their work… to register you or for information, send an email à meeting@hackerzvoice.netL' entrée is free for all, then come many!
  • Holidays or not à the defcon

  • Décollage for Las Vegas today for rest or not… One will post surely some photographs via tweeter. The defcon sÂ' announces well plutôt with good conférences in prospect and also good soirées. Jhaddix precisely made a diary of all the soirées organisées around the blackhat and defcon on its site. One is not likely sÂ' to annoy especially tomorrow morning and tomorrow evening… you will be told!!

Analyzes of a packer and programming of unpacker

To fight against detection by signature the trojans are often packés using a packer. A packer is a program which compresses, figure, protects the achievable ones. So that the achievable ones can be launched, the packer their additions a function, a loader, which will decompress and decipher the achievable one in memory before returning the hand to him. Detections by signatures being done on the achievable one “into hard”, i.e. on the file and not in memory when the program is launched, the code of the malware is quantified and detection by signature fails.

More

Optimization of Blind SQL injection

The faults of injection of code SQL are from now on well-known, but the techniques of exploitation as a blind man are it less. The easy ways to obtain the number of fields employed in a request SELECT, or rough-to force the values of the fields in a dichotomic way are they also increasingly met through the whole of the pages treating of this subject on Internet. But what is it techniques of discovered and recovery of data in an unknown environment, when one is in the incapacity to determine if a forged request caused the awaited result?

More

Novel method of injection of code

The injection of code in a process has been a technique known for several years in the computer security, and largely used by many malwares, and in fact countered by many anti-malware software. There exists however a means of circumventing these detections, while ensuring the injection of a DLL in the memory capacity of another process, and that in a furtive way, without the knowledge of this anti-malware software.

More

Year analysis off Microsoft Windows Vista' S ASLR

Windows Vista includes has new memory protection system called ASLR. Its goal is to escape buffer overflow attacks in vulnerable programs.

More

Stack overflow one Windows Vista

In this article we will analyze the ASLR (Address Space Randomization Layout) that has been added to Windows Vista beta 2 and we will see through year example how it is possible to bypass the ASLR to exploit stack overflows one Windows Vista.

More

Stack overflow one Windows XP SP2

In this different article we will see the protection mechanisms added by Microsoft 
in Windows XP SP2 to prevent stack overflow exploitation.

More

Linux_2.6.x_vsyscalls

Advisory - Linux 2.6.x vsyscalls may Be used ace powerful attack vectors.

[April 13 2005] Keywords: RORIV (ret-onto-ret-into-vsyscalls)
ROJIV (ret-onto-jmp-into-vsyscalls)

Original paper may Be found At:
http://www.sysdream.com/
http://www.lse.epita.fr/publications.php

More

REFWEO.com
toys sextv vphone Internet jewels
")); 0