|
|
| About site: Software/Operating Systems/Linux/Security - Penetrator Megablaster |
Return to Computers also Computers |
| About site: http://www.angelfire.com/linux/borisl/MegaBlaster.html |
Title: Software/Operating Systems/Linux/Security - Penetrator Megablaster A kernel module that detects and stops overflow attacks, like Linux Buffer Overflow attack security, which aim to get an interactive access to the system. |
|
|
|
|
Morgan\'s_Delphi_components Python for Delphi wrapers, database, sentences parser components. [Open Source, D3]
| RF_Engines_Limited Specialises in advanced digital signal processing hardware designs for high quality signal filtering and conditioning.
| Tass Threaded Usenet newsreader, ancestor of Tin. Tin is the most popular Unix newsreader.
| Fineware_Systems Shareware Windows utilities. File Ferret and Space Hound search, manage files, and eliminate duplicates, Data Pouch stores information, Password Squirrel, Attributer sets file properties, Peeper is a
| Armadillo_Web_Design Offers site design and graphics. Located in Texarkana, Texas.
| 1ClickFormFiller Internet Explorer add-on, which fills Web forms automatically, with a single mouse click, using patented form-field recognition technology. [Win 95/98/Me/NT/2000]
|
|
| Alexa statistic for http://www.angelfire.com/linux/borisl/MegaBlaster.html |
Please visit: http://www.angelfire.com/linux/borisl/MegaBlaster.html
|
| Related sites for http://www.angelfire.com/linux/borisl/MegaBlaster.html |
| Bigston_Information_Technologies Manufacturing software for real time production reporting, tracking and document management utilizing web based and bar code technologies. | | Jubilee_Electronics Specialising in the design and manufacture of custom electronic control systems. | | V_&_V_Design_Pvt__Ltd_ Specializes in the consumer electronics and communications markets. Features example designs, acheivements, and notable customer list. | | css-discuss_Mailing_List Practical discussions of CSS and its use. High volume list. | | Anthony_Awtry_Custom_Scripts A small selection of Perl and Javascript scripts. [Collection] | | Lingua__Romana__Perligata Damian Conway's paper on the module that makes it possible to write Perl programs in Latin. | | idesigns Offers web site development, search engine submission, custom graphics and multilingual pages for medium-sized businesses. [English or French] | | Webnauts_Net Offer a combined interface to collection of tools (W3C, CSE, and Cynthia validators, and also a Lynx simulator) for checking adherence to standards, mark-up and accessibility. | | Mondial_Software Offering cash forecasting, bank reconciliation, credit control and consolidated cash flow decision making tools. | | Emphasys_Computer_Solutions,_Inc Provides application software and services for public housing and community development agencies, including systems running on the IBM UniData database. Located in Petoskey, Michigan, USA. | | Freebyte\'s_Guide_to_Operating_Systems,_Free_and_Non-free Includes: open source, commercial; Unix (BSDs, Linux); Amiga; BeOS, Zeta; RiscOS; DOS, Windows-emulators; educational; a few related topics. | | RFC_2135 Internet Society By-Laws. ISOC Board of Trustees. April 1997. | | TGI_Cable_com Distributor of telecommunciation cables and supplies. | | XDCC_Report Search engine which focuses on file sharing bots. Includes the list of crawled networks and of latest reports as well as a support forum. | | Infrequently_Asked_Questions Jini things that discover "the hard way" for those who come after. | | NuViu_Technologies Offers web and graphics design, application development, networking, and systems solutions. Based in London, Ontario, United States. | | Designs_by_Trish Design personal home pages with music. | | Website_Labs Provide web design, domain registration, and hosting services. | | Ross,_David Profiles restaurant website design by David Ross featuring real-time menus, photography of the food, dining room, and kitchen, and a structured system of information display. | | Zcrab_AlphaNumeric_Display A powerful OCX control for applications which can be used to graphically represent a string composed of an arbitrary number of digits and other characters. |
|
This is websites2007.org cache of m/ as retrieved on 2008.10.12 websites2007.org's cache is the snapshot that we took of the page as we crawled the web. The page may have changed since that time.
|
Penetrator MegaBlaster - against overflow attacks
Penetrator MegaBlaster page #1Please click the refresh button on your browser
in order to get the updated page.
Penetrator MegaBlaster is a kernel module that
detects & stops overflow attacks
(like the famous buffer overflow attack),
which aim to get an interactive access to the
system (for example, open a new shell).
Penetrator MegaBlaster was written by Boris Litvak,
Alex Fishgate & Eyal Serrero, with the guidance of
Amichai Shulman. Advices by Gennady Litvak saved tons of time. It was tested on Red Hat
Linux 6.0 and on Red Hat Linux 5.2.
The main idea is very simple:
The purpose of overflow attack which aims to get
an interactive access is to execute an interactive
program (for example, shell) from the attacked program,
which permissions include SET UID or SET GUID bit. If the permissions
don't include one of this bits, The interactive program
will be opened with the attacker's permissions exactly,
which is not interesting to her.
Penetrator MegaBlaster is basically a module that
replaces the 'execve' system call handler. After it
finishes all the checking, it calls the original handler.
System administrator should have an access file
with lines in a following format:
(name of the SET UID program from which the execve is called)
(space) (uid or '*' for all users) (space) (path of the
program being called).
MegaBlaster checks for execution permissions in this file
for all execve's from SET UID programs. For example,
upon executing shell from finger by user 500, MegaBlaster
will look for fingerd 500 /bin/sh or fingerd * /bin/sh
in the access file. If it doesn't find one of those
lines, the access is denied. Simple. All the reports by
the MegaBlaster can be viewed easily:
grep MegaBlaster /var/log/messages | more.
Notes: the idea can be extended at least by 4 ways:
1) Adding options to MegaBlaster activations (4 currently).
2) Inserting it as a patch into the kernel.
3) Implementing the idea on other OS.
4) Selling the idea to Bill Gates (probably the best out of 4).
You can find all the MegaBlaster files and installation instructions on the
next page.
See also:
StackGuard
SecuriTeam
Known attacks
Next Page
Home
This page is managed by Boris Litvak.
(unique IP's since 20/9/1999)
|
|
| |
A | kernel | module | that | detects | and | stops | overflow | attacks, | like | Linux | Buffer | Overflow | attack | security, | which | aim | to | get | an | interactive | access | to | the | system. |
|
http://www.angelfire.com/linux/borisl/MegaBlaster.html
Penetrator Megablaster 2008 October
dvd rental
dvd
A kernel module that detects and stops overflow attacks, like Linux Buffer Overflow attack security, which aim to get an interactive access to the system.
Rules
|
© 2008 Internet Explorer 5+ or Netscape 6+
|
|
Recommended Sites: 1.
Arts -
Business -
Computers -
Games -
Health -
Home -
Kids and Teens -
News -
Recreation -
Reference -
Regional -
Science -
Shopping -
Society -
Sports -
World
Miss Gallery
- Top Anime Hentai
- DVD rental by mail
- MPAA - MPAA - Credit Card - Debt Management - Credit Cards
|