New Tool Release: Sharefuzz

From: Dave Aitel (daitel@atstake.com)
Date: 10/16/01


Message-ID: <3BCB7472.4CA5C502@atstake.com>
Date: Mon, 15 Oct 2001 19:42:42 -0400
From: Dave Aitel <daitel@atstake.com>
To: secprog@securityfocus.com, pen-test@securityfocus.com, sectools@securityfocus.com
Subject: New Tool Release: Sharefuzz


-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

New tool release - Sharefuzz

http://www.atstake.com/research/tools/index.html#vulnerability_scanning

Sharefuzz is a local setuid program fuzzer which automatically detects
environment variable overflows in Unix systems. This tool can be used to ensure

all necessary patches have been applied, or used as a reverse engineering
tool.

Please think of Sharefuzz as necessary due dilligence against all-too-common
programming flaws. Advanced use of Sharefuzz can probe deeply into vulnerable
programs. But in its default configuration, Sharefuzz will root out any obvious

vulnerabilities quickly and
easily.

Again, please send all comments, patches, chain-mail-jokes, etc to:
daitel@atstake.com

Thanks,
Dave Aitel
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQE7y3Qo9iGGtHdhlgMRAvq8AJ9KsZcrdNxRnbefkQFM8SajibqluACfc71M
YMEldiz/M1pajGDtqPcZqVM=
=R/vr
-----END PGP SIGNATURE-----

----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/



Relevant Pages

  • RE: Laboratory Setup Help (RS)
    ... >> This list is provided by the SecurityFocus Security ... For more information on SecurityFocus' SIA service which ... >> vulnerabilities please see: ... >This list is provided by the SecurityFocus Security Intelligence Alert ...
    (Pen-Test)
  • RE: Cross Site Scripting Vulnerabilities - XSS
    ... Cross Site Scripting Vulnerabilities - XSS ... >> This list is provided by the SecurityFocus Security Intelligence ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: Cross Site Scripting Vulnerabilities - XSS
    ... Cross Site Scripting Vulnerabilities - XSS ... >>> This list is provided by the SecurityFocus Security Intelligence ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • RE: Vulnebrability level definition
    ... 'severity' of a given vulnerability, and this severity can change with time. ... different methodologies to rate vulnerabilities and present the associated ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)
  • Re: Scanners and unpublished vulnerabilities - Full Disclosure
    ... AH> vulnerabilities they have notified vendors about. ... This list is provided by the SecurityFocus Security Intelligence Alert ... For more information on SecurityFocus' SIA service which ...
    (Pen-Test)