This paper describes FILE stream overflow vulnerabilities and illustrates how they can be exploited. The author uses a FILE stream overflow in dvips as a case study.
1ba52e016c0392136d39eef96e00aa376e076ea025a6eab55d090bf725634635
80log.sh is a shell script which uses netcat to log the HTTP server versions of multiple or single web servers.
335edb395f23336e6e0ea9d7b5f0b577527bb4aaa306e4333b1dd282dd4ee0cf
Linux sparc connect back shellcode. 216 bytes, sends a shell to a specified IP on port 2313. Includes a small c program which encodes an IP address into the shellcode.
4476cc4879f912cfde47de6359817f8123a4b3e6279c62e2d877d0d5b195b2c3
A local DoS utility that utilizes a users ability to spawn multiple processes using Xterm, Rxvt, or Time. Tested on Slackware 7.1.
4f8755c38361730442bf52d7e93981e730604ccb866811bfcafe511bc819147f
Port-binding shellcode that binds to tcp port 8975 for Linux on Sparc.
1da3cedc1b42a86af88a60d44c954f2454e64423c6d2eb6ad231f91314a92658
The Unix Sequence Password Generator creates password files and allows on-the-fly cracking when used with other tools. Also supports all sets of characters.
90324d42b4b78b05efabe74a5bafd66d0a9aae0b8627af722072036358bc380e
Shellcode for OpenBSD under Sparc which binds a shell to tcp port 9999. Tested on OpenBSD 2.6(Sun4m) on a Sparc-station 5.
b0b0be40c62d1e42e3a74567f2fc01b6a6d96ef13ad6a18d5267707d9055fda8