Threat Level: green Handler on Duty: Rob VandenBrink

SANS ISC: Diaries by Keyword - Internet Security | DShield Diaries by Keyword


Sign Up for Free!   Forgot Password?
Log In or Sign Up for Free!
Date Author Title

PAC FILE

2016-08-24Xavier MertensExample of Targeted Attack Through a Proxy PAC File

PAC

2019-06-20/a>Xavier MertensUsing a Travel Packing App for Infosec Purpose
2019-05-19/a>Guy BruneauIs Metadata Only Approach, Good Enough for Network Traffic Analysis?
2019-02-24/a>Guy BruneauPacket Editor and Builder by Colasoft
2018-06-06/a>Xavier MertensConverting PCAP Web Traffic to Apache Log
2018-02-20/a>Renato MarinhoStatically Unpacking a Brazilian Banker Malware
2017-09-29/a>Lorna HutchesonGood Analysis = Understanding(tools + logs + normal)
2017-09-17/a>Guy BruneaurockNSM as a Incident Response Package
2017-04-28/a>Russell EubanksKNOW before NO
2017-04-13/a>Rob VandenBrinkPacket Captures Filtered by Process
2017-03-25/a>Russell EubanksDistraction as a Service
2017-03-11/a>Russell EubanksWhat's On Your Not To Do List?
2017-03-03/a>Lorna HutchesonBitTorrent or Something Else?
2017-01-28/a>Lorna HutchesonPacket Analysis - Where do you start?
2016-12-27/a>Guy BruneauUsing daemonlogger as a Software Tap
2016-11-05/a>Xavier MertensFull Packet Capture for Dummies
2016-08-24/a>Xavier MertensExample of Targeted Attack Through a Proxy PAC File
2016-07-05/a>Johannes UllrichApache Update: TLS Certificate Authentication Bypass with HTTP/2 (CVE-2016-4979)
2016-06-15/a>Richard PorterWarp Speed Ahead, L7 Open Source Packet Generator: Warp17
2015-10-12/a>Guy BruneauCritical Vulnerability in Multiple Cisco Products - Apache Struts 2 Command Execution http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20131023-struts2
2014-09-19/a>Guy BruneauWeb Scan looking for /info/whitelist.pac
2014-08-17/a>Rick WannerPart 2: Is your home network unwittingly contributing to NTP DDOS attacks?
2014-07-28/a>Johannes UllrichInteresting HTTP User Agent "chroot-apach0day"
2014-07-05/a>Guy BruneauMalware Analysis with pedump
2014-06-04/a>Richard Porterp0f, Got Packets?
2014-04-12/a>Guy BruneauCritical Security Update for JetPack WordPress Plugin. Bug has existed since Jetpack 1.9, released in October 2012. - http://jetpack.me/2014/04/10/jetpack-security-update/
2014-03-18/a>Mark HofmanCall for packets dest 5000 or source 6000
2014-03-17/a>Jim ClausingNew Apache web server release
2014-03-13/a>Daniel WesemannWeb server logs containing RS=^ ?
2014-02-04/a>Johannes UllrichOdd ICMP Echo Request Payload
2014-01-31/a>Chris MohanLooking for packets from three particular subnets
2013-12-01/a>Richard PorterBPF, PCAP, Binary, hex, why they matter?
2013-11-27/a>Rob VandenBrinkApache 2.4.7 is released 11/25. Download: http://httpd.apache.org/download.cgi#apache24 and Readme: http://apache.mirror.iweb.ca//httpd/CHANGES_2.4.7
2013-11-13/a>Johannes UllrichPacket Challenge for the Hivemind: What's happening with this Ethernet header?
2013-06-05/a>Richard PorterWireshark 1.10.0 Stable Released http://www.wireshark.org/download.html
2013-05-19/a>Kevin ShorttPort 51616 - Got Packets?
2013-04-30/a>Russ McReeApache binary backdoor adds malicious redirect to Blackhole
2013-04-13/a>Johannes UllrichProtocol 61: Anybody got packets?
2013-03-19/a>Johannes UllrichWindows 7 SP1 and Windows Server 2008 R2 SP1 Being "pushed" today
2012-12-22/a>Guy BruneauNew Poll - Which of the following issues impacted the most your business in 2012? - https://isc.sans.edu/poll.html
2012-09-13/a>Mark BaggettTCP Fuzzing with Scapy
2012-05-23/a>Mark BaggettIP Fragmentation Attacks
2012-05-14/a>Mark HofmanGot packets? Interested in TCP/8909, TCP/6666, TCP/9415, TCP/27977 and UDP/7
2012-02-22/a>Johannes UllrichApache 2.4 Features
2012-02-07/a>Jim ClausingBook Review: Practical Packet Analysis, 2nd ed
2011-10-06/a>Rob VandenBrinkApache HTTP Server mod_proxy reverse proxy issue
2011-08-30/a>Johannes UllrichA Packet Challenge: Help us identify this traffic
2011-08-30/a>Johannes UllrichApache patch out for "byte range" DoS vulnerability http://www.apache.org/dist/httpd/Announcement2.2.html
2011-08-25/a>Kevin ShorttRevival of an Unpatched Apache HTTPD DoS
2011-03-07/a>Lorna HutchesonCall for Packets - Unassigned TCP Options
2011-02-24/a>Johannes UllrichWindows 7 / 2008 R2 Service Pack 1 Problems
2011-02-23/a>Johannes UllrichWindows 7 Service Pack 1 out
2011-01-25/a>Johannes UllrichPacket Tricks with xxd
2011-01-15/a>Jim ClausingWhat's up with port 8881?
2010-09-28/a>Daniel WesemannStrange packet: "daylight rekick", anyone?
2010-09-16/a>Johannes UllrichA Packet a Day
2010-08-22/a>Manuel Humberto Santander PelaezSCADA: A big challenge for information security professionals
2010-04-13/a>Johannes UllrichApache.org Bugtracker Breach
2010-03-07/a>Mari NicholsApache releases version 2.2.15 with 5 security fixes including OpenSSL issue.
2010-02-16/a>Johannes UllrichTeredo "stray packet" analysis
2010-01-25/a>William Salusky"Bots and Spiders and Crawlers, be gone!" - or - "New Open Source WebAppSec tools, Huzzah!"
2009-11-18/a>Rob VandenBrinkUsing a Cisco Router as a “Remote Collector” for tcpdump or Wireshark
2009-11-03/a>Bojan ZdrnjaOpachki, from (and to) Russia with love
2009-10-14/a>Johannes UllrichOdd Apache/MSIE issue with downloads from ISC
2009-08-28/a>Adrien de Beaupreapache.org compromised
2009-06-23/a>Bojan ZdrnjaSlowloris and Iranian DDoS attacks
2009-06-21/a>Bojan ZdrnjaApache HTTP DoS tool mitigation
2009-06-18/a>Bojan ZdrnjaApache HTTP DoS tool released
2009-05-07/a>Jim ClausingA packet challenge and how I solved it
2009-05-01/a>Adrien de BeaupreOdd packets
2009-04-07/a>Johannes UllrichCommon Apache Misconception
2009-01-12/a>William SaluskyWeb Application Firewalls (WAF) - Have you deployed WAF technology?
2009-01-03/a>Rick WannerRAID != Backup
2008-11-17/a>Jim ClausingA new cheat sheet and a contest
2008-10-09/a>Bojan ZdrnjaWatch that .htaccess file on your web site
2008-09-22/a>Jim ClausingMore on tools/resources/blogs
2008-07-15/a>Maarten Van HorenbeeckBlackBerry PDF parsing vulnerability
2008-06-07/a>Jim ClausingWhat's going on with these ports? Got packets?
2008-05-26/a>Marcus SachsPort 1533 on the Rise
2008-04-27/a>Marcus SachsWhat's With Port 20329?
2008-04-25/a>Joel EslerSome packets perhaps?
2008-04-22/a>donald smithMaximus root kit downloads via MySpace social engineering trick.
2008-04-16/a>William StearnsPasser, a aassive machine and service sniffer
2008-03-23/a>Johannes UllrichFinding hidden gems (easter eggs) in your logs (packet challenge!)
2006-10-17/a>Arrigo TriulziHacking Tor, the anonymity onion routing network

FILE

2019-08-04/a>Didier Stevens Detecting ZLIB Compression
2019-02-19/a>Didier StevensIdentifying Files: Failure Happens
2018-11-05/a>Johannes UllrichStruts 2.3 Vulnerable to Two Year old File Upload Flaw
2017-11-29/a>Xavier MertensFileless Malicious PowerShell Sample
2017-10-30/a>Didier StevensPE files and debug info
2017-10-24/a>Xavier MertensStop relying on file extensions
2017-07-19/a>Xavier MertensBots Searching for Keys & Config Files
2017-07-02/a>Didier StevensPE Section Name Descriptions
2017-05-26/a>Lorna HutchesonFile2pcap - A new tool for your toolkit!
2016-08-24/a>Xavier MertensExample of Targeted Attack Through a Proxy PAC File
2016-05-21/a>Didier StevensPython Malware - Part 2
2016-03-30/a>Xavier MertensWhat to watch with your FIM?
2016-01-20/a>Xavier Mertens/tmp, %TEMP%, ~/Desktop, T:\, ... A goldmine for pentesters!
2015-07-12/a>Didier StevensJump List Files Are OLE Files
2014-03-17/a>Johannes UllrichScans for FCKEditor File Manager
2014-02-28/a>Daniel WesemannOversharing
2014-01-11/a>Guy Bruneautcpflow 1.4.4 and some of its most Interesting Features
2013-08-26/a>Alex StanfordStop, Drop and File Carve
2013-08-21/a>Alex StanfordPsst. Your Browser Knows All Your Secrets.
2011-11-28/a>Tom ListonA Puzzlement...
2011-08-15/a>Mark HofmanHow to find unwanted files on workstations
2009-12-28/a>Johannes Ullrich8 Basic Rules to Implement Secure File Uploads http://jbu.me/48 (inspired by IIS ; bug)
2009-08-13/a>Jim ClausingTools for extracting files from pcaps
2009-06-27/a>Tony CarothersNew NIAP Strategy on the Horizon
2009-05-27/a>donald smithHost file black lists
2009-05-25/a>Jim ClausingMore tools for (US) Memorial Day
2008-03-13/a>Jason LamRemote File Include spoof!?