mod_ssl provides provides strong cryptography for the Apache 1.3 webserver via the Secure Sockets Layer (SSL v2/v3) and Transport Layer Security (TLS v1). It is based on the SSL/TLS toolkit OpenSSL and supports all SSL/TLS related functionality, including RSA and DSA/DH cipher support, X.509 CRL checking, etc. Additionally it provides special Apache related facilities like DBM and shared memory based inter-process SSL session caching. per-URL SSL session renegotiations, DSO support, etc.
ccd38e216ad54a99fb5bd62a15b8f34e62a390b05ea0b61fedf3e4cdb10a9b05
NN v6.6.3 and below remote format string exploit for FreeBSD. Malicious server owners can use this vulnerability to execute code on systems that are connected with affected clients. Fix available here.
196d39f26cc27f3b7ab41de171afbed92adacc402a4519d9444770b26a2bf244
Squid Proxy Cache security advisory SQUID-2002:3 - Several vulnerabilities found in Squid can be used to remotely execute code on systems running this software. All versions prior to squid-2.4.STABLE7 are affected. The user executing the attack must be allowed to use the proxy for any potential attack to be successful.
74819bb3cc70f2c8058a9215528fef9dc6eebee2059635d21306734aace9596e
Badblue webserver v1.5 for Windows remote directory traversal exploit.
a54d11c4fc9cf04a8c8071a4aec7f365e1cae05097b86eecfeb8f67e5513a8f8
Wu-ftpd 2.6.[0/1] remote heap overflow written in Java. Provides a remote shell. Includes targets for RedHat 7.0 and wu-2.6.0/1 from www.wu-ftpd.org.
57929d95896c2d40e1e0a264c95b5e575151758f19e071e54f3d2c1e88fd64df
Psreal.c for Linux kernel 2.4.x finds processes hidden even if a LKM is used.
907abc05ba6db4ba3e3da65a20995507c4791b01b80ce282d259be8edd58aabc
Elf Shell v0.43b-portable is an automated reverse engineering tool with read/write capability for the ELF format. Sophisticated output with cross references using .got, .ctors, .dtors, .symtab, .dynsym, .dynamic, .rel.* and many other with an integrated hexdump. Designed for Linux. All calls encapsulated in libelfsh.a, so the elfsh API is really reusable. Sample output here.
9068395673dc10ca19ad2f71181d0ce313ff9da89bde2727c0db51c616b87c20
ClownIDS v1.0 verifies the md5 checksums of files and mails the admin and runs scripts when a problem is found.
db4e0cada39f0e39c5956c78aabb2715bfd2c2c20424edcaa0f4dda27a2166d0
Netdump is a libpcap sniffer that dumps the contents of packets that pass through a specified network interface.
8cf364cd3585cac96320d2775c7c9e027970ee90fc3dc00235bf97111d8e025c
Miscutils is a set of commands useful to the program and/or system administrator. Current included programs are: acct, confstr, getrlimit, pathconf, sysconf, crypt, gettimeofday, readlink and stat.
ac8af5b082f64e86f4a4b513ae9587b58bd36cf75664f6713ea74117ed3fef87
Logpatch v1.0 surgically patches utmp/utmpx, wtmp/wtmpx & lastlog. Very portable, a high quality tool. It preserves the file's times and truncates entries at the end of the file.
569a4970dcf7bec3c50169994946021171e8677e2e40ec809817df2a0e3718cb
Mysniff is a libpcap sniffer with RC4 encryption. It sniffs the first 128 bytes of data sent to ftp / telnet / pop2 / pop3 / imap & rlogin servers, therefore revealing the logins & passwords used.
3517098e5b28da5838ac32f5515f19217cf5b23b69780f30b59c227dd2b83c98