Downloads
Downloads
Downloads Home » Presentations
DocumentsDate added
-
Passive Information Gathering - The Risk of the Silent Attackerhot!
- 15.04.2000
- The risk of the silent attacker. I wrote this paper for a "SANS at Night" presentation in D.C.
- Hits: 10482
-
Attack/Defend 1: DCOM, WebDAV, TTYPROMPThot!
- 14.08.2003
- The first in perhaps a series of presentations which show common attacks along with detailed, annotated network traces. This gives a perspective on both sides of a network intrusion. The attacks are shown step-by-step, and the network traces are examined and explained at a high level. This zip file includes the actual ethereal log files and explains how to use filters to isolate important data from those log files. I try to remain technically agnostic in this presentation so technical and non-technical readers can benefit. This first installment of Attack-Defend looks at quiet and noisy nmap scans, a high-end vulnerability scanner (www.heatscanner.com), the Solaris TTYPROMPT telnet bypass (tool-less!), the Microsoft Webdav overflow, and the Microsoft RPC DCOM overflow (the attack used in the August 2003 LoveSan/Msblaster/DCOM worm!)
- Hits: 13994
-
Building the Invisible Firewallhot!
- 23.01.2003
- A presentation on how to build a transparent bridging stateful firewall with Redhat 7.3 and up. This firewall operates on Layer 2 only so it's invisible on the network. For those non-techies- this is an invisible firewall with no IP address based on the free Redhat OS. If you hack it (or even detect it) let me know. Local console attacks don't count, slacker.
- Hits: 14840
-
Analyzing 0day Hacker Toolshot!
- 03.02.2005
- This presentation walks through the process of analyzing a never-before (publically) seen Windows backdoor/rootkit program. I show that the analysis process does not necessarily take programming skills or hardcore technical knowledge, but can be performed adequately with a handful of public tools and a decent amount of time and patience. Suited for any audience, I designed this presentation with most skill levels in mind.
- Hits: 15111
-
Advanced ICMP Techniqueshot!
- 15.11.2002
- Using ICMP as a hacking tool. A presentation about a cool paper. Examples included.
- Hits: 15823