buffer overflows

From: Gary O'leary-Steele (GaryO@sec-1.com)
Date: 08/07/01


From: "Gary O'leary-Steele" <GaryO@sec-1.com>
To: <pen-test@securityfocus.com>
Subject: buffer overflows
Date: Tue, 7 Aug 2001 10:14:03 +0100
Message-ID: <MABBKPOCOJFFCPELOADHEEKCCCAA.GaryO@sec-1.com>

Hello all,

I'm looking for a good buffer overflow tutorial. I know some 16bit assembler
using NASM and have experience in perl under win32. I want to code buffer
overflows under Windows NT/2K. Can anyone point me in the right direction,
up to date examples further reading etc.

Kind Regards,

Gary O'leary-Steele
Technical Consultant

Email: GaryO@sec-1.com
Web Site: www.sec-1.com

----------------------------------------------------------------------------
----------------------------------------------------------------------------
----------------
The contents of this Email may be privileged and are confidential. It may
not be disclosed to or used by anyone other than the addressee(s), nor
copied in any way. If received in error, please advise the sender, then
delete from your system.

The opinions expressed within this email represent those of the individual
and not necessarily those of Sec-1 ltd.

Should you wish to use Email as a mode of communication, Sec-1 ltd are
unable to guarantee the security of Email content outside of our own
computer systems.
----------------------------------------------------------------------------
------------------------------------

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



Relevant Pages

  • [UNIX] AFFLIB Multiple Buffer Overflows
    ... Get your security news from a reliable source. ... AFFLIB Multiple Buffer Overflows ... Remote Stack-based Buffer Overflow Through Use of LastModified: ... A portion of a potentially untrustworthy parameter is copied into a buffer ...
    (Securiteam)
  • RE: SQL
    ... Subject: SQL ... >> This list is provided by the SecurityFocus Security ... For more information on SecurityFocus' SIA service which ... >This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • RE: Insurance
    ... property--data beign deemed "intangible" for the purposes of insurance. ... for physical security testing there are often 3rd parties ... For more information on SecurityFocus' SIA service which ... This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • RE: Pen-Testing Lotus Notes/Domino
    ... Subject: Pen-Testing Lotus Notes/Domino ... of document security. ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • R: Pen-Testing help (Compaq Insight & htsearch)
    ... This web server happens to be in front of their ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)