what you don't know can hurt you
Home Files News &[SERVICES_TAB]About Contact Add New
Showing 1 - 7 of 7 RSS Feed

Files from Matousec - Transparent Security Research

Email addressresearch at matousec.com
First Active2006-10-20
Last Active2010-05-06
KHOBE - 8.0 Earthquake For Windows Desktop Security Software
Posted May 6, 2010
Authored by Matousec - Transparent Security Research | Site matousec.com

Whitepaper called KHOBE - 8.0 Earthquake For Windows Desktop Security Software. It discusses Windows desktop security products that can be exploited to bypass a big portion of security features implemented by the affected products.

tags | advisory
systems | windows
SHA-256 | 2a66fee9335500b174da0687391299c45447f47772a54e8b08e9e8a1a6ae0669
ssdt-multi.txt
Posted Sep 18, 2007
Authored by Matousec - Transparent Security Research | Site matousec.com

It appears that a number of vulnerabilities have been discovered in implementations of SSDT hooks in many different products. Vulnerable products range from BlackICE, Norton Internet Security, Process Monitor, and more.

tags | advisory, vulnerability
SHA-256 | 10cab1f6a9cbfe4aa37ddf1207fd3c8ef40386c2d2758a0eadfeaeb9d168a631
BTP00012P004AO.zip
Posted Dec 6, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

Demonstration exploit that shows how Outpost Firewall Pro version 4.0 fails to protect against advanced DLL injection.

tags | exploit
SHA-256 | d098e88f484e24499c8384ec307c65852dc1541fe2460675f4823a8e79ba1d12
outpostFP.txt
Posted Dec 6, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

Outpost Firewall Pro version 4.0 fails to protect against advanced DLL injection.

tags | advisory
SHA-256 | d10c68573c91fa3188e94d699972e536a48599b7f66ade2ce1a96497197376aa
BTP00001P004AO.zip
Posted Nov 3, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

Testing program that exploits Output Firewall PRO version 4.0 which fails to sufficiently protect the \Device\SandBox driver.

tags | exploit
SHA-256 | bdcf73561116d8bf77ee8404cd2913c8d86fe9b944e74e816cb7c846cb06a98f
outpost40.txt
Posted Nov 3, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

Outpost Firewall PRO version 4.0 insufficiently protects its driver \Device\SandBox against a manipulation by malicious applications and it fails to validate its input buffer.

tags | advisory
SHA-256 | 313a85811eb28dca28af6a555e600f8a576f88f81c93bd030e0fc939be516c7f
ISSBlackICE-files.txt
Posted Oct 20, 2006
Authored by Matousec - Transparent Security Research | Site matousec.com

BlackICE PC Protection protects its files against manipulation by malicious software. Its critical files like its database of trusted applications or firewall configuration are protected. The list of protected files is stored in filelock.txt in the BlackICE installation directory. If this file is deleted files mentioned in filelock.txt are not protected any more and can be changed by malicious applications. The implemented protection allows malicious applications to delete this file using native API function ZwDeleteFile. This can result in a bypass of all BlackICE protection mechanisms because its internal components can be replaced with fake copies. The situation is even easier for the attacker because the component control fails to recognize fake components in BlackICE processes.

tags | advisory
SHA-256 | cccf062711f391ac57c883f94f44d73929b8862d2542aff36335459be2a9a18d
Page 1 of 1
Back1Next

File Archive:

September 2024

  • Su
  • Mo
  • Tu
  • We
  • Th
  • Fr
  • Sa
  • 1
    Sep 1st
    261 Files
  • 2
    Sep 2nd
    17 Files
  • 3
    Sep 3rd
    38 Files
  • 4
    Sep 4th
    52 Files
  • 5
    Sep 5th
    23 Files
  • 6
    Sep 6th
    27 Files
  • 7
    Sep 7th
    0 Files
  • 8
    Sep 8th
    1 Files
  • 9
    Sep 9th
    16 Files
  • 10
    Sep 10th
    38 Files
  • 11
    Sep 11th
    21 Files
  • 12
    Sep 12th
    40 Files
  • 13
    Sep 13th
    18 Files
  • 14
    Sep 14th
    0 Files
  • 15
    Sep 15th
    0 Files
  • 16
    Sep 16th
    21 Files
  • 17
    Sep 17th
    51 Files
  • 18
    Sep 18th
    23 Files
  • 19
    Sep 19th
    48 Files
  • 20
    Sep 20th
    36 Files
  • 21
    Sep 21st
    0 Files
  • 22
    Sep 22nd
    0 Files
  • 23
    Sep 23rd
    0 Files
  • 24
    Sep 24th
    0 Files
  • 25
    Sep 25th
    0 Files
  • 26
    Sep 26th
    0 Files
  • 27
    Sep 27th
    0 Files
  • 28
    Sep 28th
    0 Files
  • 29
    Sep 29th
    0 Files
  • 30
    Sep 30th
    0 Files

Top Authors In Last 30 Days

File Tags

Systems

packet storm

© 2024 Packet Storm. All rights reserved.

Services
Security Services
Hosting By
Rokasec
close