Section: .. / advisories / l0pht /
| /// File Name: |
asniff_advisory.txt |
Description:
|
asniff_advisory.txt
| | File Size: | 7414 | | Last Modified: | May 16 07:03:40 2000 |
| MD5 Checksum: | b61f0af94f258db4dc2bfa38dc6925a5 |
|
| /// File Name: |
ballz.zip |
Description:
|
Enables you to examine all of the registers inside the Motorola DragonBall processor (running the show on the PalmPilot). Very nifty. Use at your own risk. For devices running MC68328 only.
| | Author: | Kingping | | Homepage: | http://www.l0pht.com/~kingpin/pilot.html | | File Size: | 4092 | | Last Modified: | Feb 14 20:02:00 2000 |
| MD5 Checksum: | a06def97848b519b1fe82c606ce80142 |
|
| /// File Name: |
beamcrack.zip |
Description:
|
BeamCrack is a simple application that will set or reset the bit in each application's database header which tells the launcher that it should or shouldn't be beamable, thus bypassing the PalmPilot's infantile copy-protection.
| | Author: | Kingpin | | Homepage: | http://www.l0pht.com/~kingpin/pilot.html | | File Size: | 2790 | | Last Modified: | Mar 20 22:04:00 2000 |
| MD5 Checksum: | e476e15f20efe0fbc045a2f0f260fdc9 |
|
| /// File Name: |
cc-pinextract.txt |
Description:
|
CRYPTOCard's CRYPTOAdmin software is a challenge/response user authentication administration system. The PT-1 token, which runs on a PalmOS device, generates the one-time-password response. A PalmOS .PDB file is created for each user and loaded onto their Palm device.
| | Author: | gaining access to the .PDB file, the legitimate user's PIN can be determined through a series of DES decrypts-and-compares. Using the demonstration tool, the PIN can be determined in under 5 minutes on a Pentium III 450MHz. ;Homepage here. | | File Size: | 11818 | | Last Modified: | Apr 13 00:18:10 2000 |
| MD5 Checksum: | b5712169e313cbe8cc085fdba02fc070 |
|
| /// File Name: |
DeCRYPTO.zip |
Description:
|
CRYPTOCard's CRYPTOAdmin pin can be decrypted from the .pdb file - Windows 9X demonstration program.
| | Author: | Kingpin | | Homepage: | http://www.l0pht.com/ | | File Size: | 71912 | | Last Modified: | Apr 13 00:24:04 2000 |
| MD5 Checksum: | fe28a18e26b2a225d8b53084273f376f |
|
| /// File Name: |
heimlich.zip |
Description:
|
Heimlich, Proof-of-concept tool for Win98 (47kB), can be used in regards to the eToken vulnerability.
| | Homepage: | http://www.l0pht.com | | File Size: | 48115 | | Last Modified: | May 10 00:29:24 2000 |
| MD5 Checksum: | 5818c71e9174404e37fd6c3553e2e549 |
|
| /// File Name: |
l0pht.00-01-08.lpd |
Description:
|
L0pht Advisory - A remote user can execute arbitrary code on a properly configured Linux LPD server.
| | Author: | Dildog | | File Size: | 3758 | | Last Modified: | Jan 12 21:57:50 2000 |
| MD5 Checksum: | a0df4a0b1fdf8e6852ec294c2926baff |
|
| /// File Name: |
l0pht.00-04-27.cart32fix |
Description:
|
Unavailable.
| | File Size: | 2464 | | Last Modified: | Apr 28 05:53:01 2000 |
| MD5 Checksum: | 8928e3653780d406db9c365c584c615e |
|
| /// File Name: |
l0pht.00-05-04.etoken |
Description:
|
l0pht Security Advisory - eToken Private Information Extraction and Physical Attack. Aladdin Knowledge Systems' (http://www.ealaddin.com) eToken is a portable USB (Universal Serial Bus) authentication device providing complete access control for digital assets. eToken stores private keys, passwords or electronic certificates in a hardware token the size of a house key. The eToken makes use of two-factor authentication. Using the legitimate user's PIN number ("what you know") and the physical USB key ("what you have"), access to the public and private data within the key will be granted.
| | Author: | Kingpin | | Homepage: | http://www.l0pht.com | | File Size: | 11509 | | Last Modified: | May 10 00:26:27 2000 |
| MD5 Checksum: | 97f4c19f2239b97a10ed938e821a3388 |
|
| /// File Name: |
l0pht.00-05-09.7110console |
Description:
|
l0pht Security Advisory - NetStructure 7110 console backdoor. The NetStructure 7110 can be compromised via the admin console even after the admin password has been changed. An undocumented command list exists known as 'wizard' mode. Through this mode there is a password that overides the admin password and allows full access to the internal components of the NetStructure 7110. This password can be used from within the admin command line interface or to overide the admin password at an initial login prompt.
| | Author: | oblivion | | Homepage: | http://www.l0pht.com | | File Size: | 6625 | | Last Modified: | May 10 00:22:33 2000 |
| MD5 Checksum: | b639f43b08ef928267b0e36a153b17a0 |
|
| /// File Name: |
l0pht.00-05-09.7180backdoor |
Description:
|
l0pht Security Advisory - NetStructure 7180 remote backdoor vulnerability. The NetStructure 7180 can be compromised via the admin console even after the admin password has been changed. Root access can be obtained via the Internet when used in a poorly configured or default configuration. Additionally, web based management authentication is done in the clear.
| | Author: | oblivion | | Homepage: | http://www.l0pht.com | | File Size: | 8195 | | Last Modified: | May 10 00:24:04 2000 |
| MD5 Checksum: | 985179a32afe579a2b6c1814fb00fd31 |
|
| /// File Name: |
l0pht.00-07-18.netzero |
Description:
|
L0pht Security Advisory - Passwords can be easily decrypted by exploiting NetZero's encryption algorithm. Includes proof of concept code to decode the password stored in jnetz.prop.
| | Author: | Brian Carrier | | Homepage: | http://www.l0pht.com/advisories.html | | File Size: | 10383 | | Last Modified: | Jul 25 17:31:30 2000 |
| MD5 Checksum: | 4f9160ba188abe167da39ce209985986 |
|
| /// File Name: |
l0pht.00-07-20.ikey |
Description:
|
L0pht Security Advisory - Rainbow Technologies' iKey 1000 contains vulnerabilities which allow an attacker to login as administrator and access all private information stored on the device with no detection by the legitimate user. The attack requires physical access to the device and a EEPROM programmer. Includes a proof of concept tool, iSpy, which retrieves and displays configuration data for the inserted iKey and displays ll public and private data.
| | Author: | Kingpin | | Homepage: | http://www.l0pht.com/advisories.html | | File Size: | 11858 | | Last Modified: | Jul 25 17:40:54 2000 |
| MD5 Checksum: | 067ddab1726a135890936d3da78d624e |
|
| /// File Name: |
l0pht.97-10-08.imap4.1 |
Description:
|
l0pht.97-10-08.imap4.1
| | File Size: | 11992 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 0eb9b08a0a9311a95758aebb9cad991e |
|
| /// File Name: |
l0pht.97-11-01.mie.40 |
Description:
|
l0pht.97-11-01.mie.40
| | File Size: | 6303 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 9334d959c86b12d154ec163f3815c80c |
|
| /// File Name: |
l0pht.98-01-20.lotus_domino |
Description:
|
l0pht.98-01-20.lotus_domino
| | File Size: | 6243 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 0df1f070fef3280eb915d8da8ba20d69 |
|
| /// File Name: |
l0pht.98-02-06.nt.port.binding.vuln |
Description:
|
l0pht.98-02-06.nt.port.binding.vuln
| | File Size: | 8421 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | ac63ecac60e4624b2f575666652b91c9 |
|
| /// File Name: |
l0pht.98-02-23.solaris.printd |
Description:
|
l0pht.98-02-23.solaris.printd
| | File Size: | 3286 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | aaa3da93923ebd9ef2906bfeff908e28 |
|
| /// File Name: |
l0pht.98-10-09.lotus.domino |
Description:
|
l0pht.98-10-09.lotus.domino
| | File Size: | 4372 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 8434ca8722a230cf3d4f4094b55a7c05 |
|
| /// File Name: |
l0pht.99-01-03.suguard |
Description:
|
l0pht.99-01-03.suguard
| | File Size: | 5927 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 3b959db3869cdcef5c998b3766f1a7af |
|
| /// File Name: |
l0pht.99-01-08.clearcase |
Description:
|
l0pht.99-01-08.clearcase
| | File Size: | 6316 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 3c7aa6f4002b692adb1da302998fef47 |
|
| /// File Name: |
l0pht.99-01-08.tmp-watch |
Description:
|
l0pht.99-01-08.tmp-watch
| | File Size: | 10433 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | a67162cd32a07345afd39e7a1cd127d8 |
|
| /// File Name: |
l0pht.99-01-21.password_appraiser |
Description:
|
l0pht.99-01-21.password_appraiser
| | File Size: | 9548 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 68742535c1e4d9e0f03e2371a04967b7 |
|
| /// File Name: |
l0pht.99-02-18.nt-admin |
Description:
|
l0pht.99-02-18.nt-admin
| | File Size: | 9202 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 8c23089f8b6551fd82e992599ad994dd |
|
| /// File Name: |
l0pht.99-04-20.cold_fusion |
Description:
|
l0pht.99-04-20.cold_fusion
| | File Size: | 5491 | | Last Modified: | Sep 23 06:08:35 1999 |
| MD5 Checksum: | 60c34a5d9607afdfaba546f91ad9bf67 |
|
|
|
|
|