Re: burneye, how i can defeat it?
From: Erik S. Johansen (security_at_sperling.no)
Date: 11/17/03
- Previous message: sk: "Re: ms03-049 sp1a and sp0 now working."
- In reply to: gr00vy: "burneye, how i can defeat it?"
- Next in thread: Chris Eagle: "RE: burneye, how i can defeat it?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
To: vuln-dev@securityfocus.com Date: Mon, 17 Nov 2003 14:25:54 +0200
-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1
On Saturday 15 November 2003 21:26, gr00vy wrote:
> hi list, im writting because i have a problem with a binary, it is
> encrypted with teso burneye, get it at teso's home.
> i would apreciate if you *point me to a some kind of text explaining how
> to debug this kind of problems.
> I have been trying whit pice but it is for kernels bellow .17 -(i can't
> download it :S ).
>
> thanks for the possyble replys
I played around with burneye a while, but couldn't find any obvious weakness
in the implementation. I did however not verify algorithm implementation, but
only the logics used to encrypt and decrypt binaries.
As far as I can tell, you will need a valid password in order to extract the
encrypted parts of a burneye binary.
- --Erik
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.2.2 (GNU/Linux)
iD8DBQE/uL5Yds9m9uhAobARArP+AKCu8xgLu9dvV4zFCNPHUlwaNGFBRACgksyP
z8m9DIqoK0e+9c4WB4tKTcU=
=BgrY
-----END PGP SIGNATURE-----
- Previous message: sk: "Re: ms03-049 sp1a and sp0 now working."
- In reply to: gr00vy: "burneye, how i can defeat it?"
- Next in thread: Chris Eagle: "RE: burneye, how i can defeat it?"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]