Posts Tagged ‘code’

ZeuS source code, anyone?

Posted: 12th May 2011 by Matt in code
Tags: , , , , ,

If you’d like to take a look at the ZeuS/SpyEye botnet source code and see how it ticks, you can download it below. I’m not sure how long this will be up (for obvious reasons), so get it while it’s hot. ZeuS 2.0.8.9 Enjoy.. PS – I am in no way responsible for the use [...]

Dear Microsoft, I have watched you develop as a company, starting with Windows 3.1. It was most peoples first experience with a PC and considering that there was really no other marketed OS (Linux was brand new and not really totally “usable” yet. I ran it, but it was not for the faint of heart. [...]

This came across on Full Disclosure. Here is the exploit in action along with the source code:

[UPDATE]: So, after I released this, Picpaste decided to try blocking access based on the user agent. One of my readers (Thanks Mark!) supplied updated code that used a different LWP module to manipulate the user agent and changed the ‘wget’ command to supply a fake user agent. Well, they caught on to that as [...]

Spamassassin Milter vulnerability

Posted: 17th March 2010 by Matt in hacks
Tags: , , ,

So, on Sunday I got an email indicating that there’s a remote root vulnerability in the Spamassassin Sendmail milter.  This immediately got my attention because I run both Sendmail and Spamassassin on my servers.  I found the proof of concept and began testing my servers.  Thankfully, I wasn’t vulnerable, but I’ll bet there are a [...]