Security

Hacking everything, by Chris Evans / scarybeasts

Wednesday, March 28, 2012

vsftpd-3.0.0-pre1 and seccomp filter

›
For the brave, there now exists a pre-release version of vsftpd-3.0.0: https://security.appspot.com/downloads/vsftpd-3.0.0-pre1.tar.gz https...
Thursday, March 22, 2012

On the failings of Pwn2Own 2012

›
This year's Pwn2Own and Pwnium contests were interesting for many reasons. If you look at the results closely, there are many interestin...
9 comments:
Saturday, March 17, 2012

Some random observations on Linux ASLR

›
I've had cause to be staring at memory maps recently across a variety of systems. No surprise then that some suboptimal or at least inte...
6 comments:
Wednesday, February 29, 2012

Chrome Linux 64-bit and Pepper Flash

›
Flash on Linux hasn't always been the best experience in the stability and security departments. Users of 64-bit Linux, in particular, h...
3 comments:
Saturday, January 28, 2012

The dirty secret of browser security #1

›
Here's a curiousity that's developing in modern browser security: The security of a given browser is dominated by how much effort it...
3 comments:
Sunday, July 3, 2011

Alert: vsftpd download backdoored

›
[With thanks to Mathias Kresin for being the first to notice] An incident, what fun! Earlier today, I was alerted that a vsftpd download fro...
34 comments:
Friday, May 27, 2011

libxml vulnerability and interesting integer issues

›
A while ago, I was playing with grammar-based XPath fuzzing and I found and fixed an interesting libxml bug. The commit, for the curious, is...
‹
›
Home
View web version
Powered by Blogger.