Techniques for Vulneability discovery
From: kaipower (kaipower@subdimension.com)Date: 04/05/02
- Previous message: dude@coruscant.net: "win2k hidden shares"
- Next in thread: Oliver Petruzel: "RE: Techniques for Vulnerability discovery"
- Reply: Oliver Petruzel: "RE: Techniques for Vulnerability discovery"
- Reply: Florian Hobelsberger / BlueScreen: "Re: Techniques for Vulneability discovery"
- Reply: W. Lee Schexnaider: "RE: Techniques for Vulneability discovery"
- Reply: NoCoNFLiC: "Re: Techniques for Vulneability discovery"
- Reply: Guillermo Marro: "RE: Techniques for Vulneability discovery"
- Reply: Josha Bronson: "Re: Techniques for Vulneability discovery"
- Reply: Marc Maiffret: "RE: Techniques for Vulneability discovery"
- Reply: LS: "Re: Techniques for Vulneability discovery"
- Reply: Rafael Anschau: "Re: Techniques for Vulneability discovery"
- Reply: GomoR: "Re: Techniques for Vulneability discovery"
- Reply: David Hawley: "RE: Techniques for Vulneability discovery"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
From: "kaipower" <kaipower@subdimension.com> To: <security-basics@securityfocus.com>, <vuln-dev@security-focus.com>, <vuln-dev@securityfocus.com> Date: Fri, 5 Apr 2002 09:04:33 +0800
Hi,
After reading the mailing list for quite a while, there is a burning
question which I kept asking myself:
How do experts discover vulnerabilities in a system/software?
Some categories of vulnerabilities that I am aware of:
1) Buffer overflow (Stack or Heap)
2) Mal access control and Trust management
3) Cross site scripting
4) Unexpected input - e.g. SQL injection?
5) Race conditions
6) password authentication
Do people just run scripts to brute force to find vulnerabilities? (as in
the case of Buffer overflows)
Or do they do a reverse engineer of the software?
How relevant is reverse engineering in this context?
Anybody out there care to give a methodology/strategy in finding
vulnerabilities?
Mike
_________________________________________________________
Do You Yahoo!?
Get your free @yahoo.com address at http://mail.yahoo.com
- Previous message: dude@coruscant.net: "win2k hidden shares"
- Next in thread: Oliver Petruzel: "RE: Techniques for Vulnerability discovery"
- Reply: Oliver Petruzel: "RE: Techniques for Vulnerability discovery"
- Reply: Florian Hobelsberger / BlueScreen: "Re: Techniques for Vulneability discovery"
- Reply: W. Lee Schexnaider: "RE: Techniques for Vulneability discovery"
- Reply: NoCoNFLiC: "Re: Techniques for Vulneability discovery"
- Reply: Guillermo Marro: "RE: Techniques for Vulneability discovery"
- Reply: Josha Bronson: "Re: Techniques for Vulneability discovery"
- Reply: Marc Maiffret: "RE: Techniques for Vulneability discovery"
- Reply: LS: "Re: Techniques for Vulneability discovery"
- Reply: Rafael Anschau: "Re: Techniques for Vulneability discovery"
- Reply: GomoR: "Re: Techniques for Vulneability discovery"
- Reply: David Hawley: "RE: Techniques for Vulneability discovery"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|