If you’d like to take a look at the ZeuS/SpyEye botnet source code and see how it ticks, you can download it below. I’m not sure how long this will be up (for obvious reasons), so get it while it’s hot. ZeuS 2.0.8.9 Enjoy.. PS – I am in no way responsible for the use [...]
Posts Tagged ‘code’
ZeuS source code, anyone?
Posted: 12th May 2011 by Matt in codeTags: botnet, code, download, example, leak, ZeuS
An Open Letter to Microsoft
Posted: 8th September 2010 by Matt in news, securityTags: Apache, Blaster, Boink, Bonk, code, Code Red, company, computer, Conficker, crash, denial of service, denial of service attack, exploits, Frag, IIS, ILOVEYOU, irc, Land, Linux, Microsoft, MyDoom, Nestea, NewTear, Nimda, Sandmind, Sasser, Sircam, Slammer, SoBig, Sping, spyware, SQL, TearDrop, vulnerability, vulnerable, Windows, WinNuke, worm
Dear Microsoft, I have watched you develop as a company, starting with Windows 3.1. It was most peoples first experience with a PC and considering that there was really no other marketed OS (Linux was brand new and not really totally “usable” yet. I ran it, but it was not for the faint of heart. [...]
FreeBSD 8.*, 7.* Local ‘root’ Exploit
Posted: 19th August 2010 by Matt in code, hacks, securityTags: 0day, code, exploit, freebsd, full disclosure, hack, local, own, root, vulnerability
This came across on Full Disclosure. Here is the exploit in action along with the source code:
UPDATED: Picpaste & Filename Enumeration. Or, How To Get Free Porn.
Posted: 16th August 2010 by Matt in code, hacks, securityTags: automate, body, code, Enumeration, Free, fusker, image, LWP::UserAgent, naked, nude, perl, picpaste, picture, pictures, PoC, polipo, Porn, proxy, script, sex, sexy, socks, tor, wget
[UPDATE]: So, after I released this, Picpaste decided to try blocking access based on the user agent. One of my readers (Thanks Mark!) supplied updated code that used a different LWP module to manipulate the user agent and changed the ‘wget’ command to supply a fake user agent. Well, they caught on to that as [...]
Spamassassin Milter vulnerability
Posted: 17th March 2010 by Matt in hacksTags: code, hacking, sendmail, spamassassin
So, on Sunday I got an email indicating that there’s a remote root vulnerability in the Spamassassin Sendmail milter. This immediately got my attention because I run both Sendmail and Spamassassin on my servers. I found the proof of concept and began testing my servers. Thankfully, I wasn’t vulnerable, but I’ll bet there are a [...]