<?xml version="1.0" encoding="UTF-8"?><rss version="0.92">
<channel>
	<title>Recognize-Security</title>
	<link>http://www.rec-sec.com</link>
	<description>a non-profit information security web site authored by Moshe Ben Abu (Trancer), focusing on vulnerability research, exploit development (mainly for the Metasploit Framework), web application security, information security and hacking news from around the world.</description>
	<lastBuildDate>Tue, 22 Mar 2011 00:09:35 +0000</lastBuildDate>
	<docs>http://backend.userland.com/rss092</docs>
	<language>en</language>
	
<atom:link rel="hub" href="http://pubsubhubbub.appspot.com" xmlns:atom="http://www.w3.org/2005/Atom" />
	<atom:link rel="hub" href="http://superfeedr.com/hubbub" xmlns:atom="http://www.w3.org/2005/Atom" />
	
	<item>
		<title>Trend Micro Internet Security Pro 2010 ActiveX extSetOwner() Remote Code Execution Exploit (meta)</title>
		<description><![CDATA[Here&#8217;s a Metasploit exploit module I wrote for the Trend Micro Internet Security Pro 2010 ActiveX extSetOwner() remote code execution vulnerability. This vulnerability was originally discovered by Andrea Micalizzi aka rgod working with Zero Day Initiative. Abysssec Security Team published a binary analysis of this vulnerability as a part of MOAUB. This module exploits a [...]]]></description>
		<link>http://www.rec-sec.com/2010/09/28/trend-micro-internet-security-2010-rce-exploit/</link>
			</item>
	<item>
		<title>Stuxnet</title>
		<description><![CDATA[What can I say about the Stuxnet worm that hasn&#8217;t been said yet&#8230; It is one of the most media covered (read hyped) Malware\attack recently. The Stuxnet worm is by far the most sophisticated Malware ever seen. Here are some of the highlights of the Stuxnet worm: Discovered in June 2010 by VirusBlokAda, a Belarus [...]]]></description>
		<link>http://www.rec-sec.com/2010/09/28/stuxnet/</link>
			</item>
	<item>
		<title>Bruce Schneier: The Future of the Security Industry</title>
		<description><![CDATA[Here&#8217;s a bit old but still great presentation by Bruce Schneier about the future of the security industry. Nothing new, just wanted to share it. So if you haven&#8217;t seen this presentation yet, I strongly recommend you do. OWASPMSP &#8211; Bruce Schneier: The Future of the Security Industry: IT is Rapidly Becoming a Commodity]]></description>
		<link>http://www.rec-sec.com/2010/09/27/bruce-schneier-security-industry/</link>
			</item>
	<item>
		<title>Microsoft Windows Live Safety Scanner (OneCare) Download and Execute Exploit</title>
		<description><![CDATA[Here&#8217;s a vulnerability I&#8217;ve found in Microsoft Windows Live Safety Scanner (OneCare). I&#8217;m going full-disclosure with this vulnerability and I haven&#8217;t reported it to Microsoft because in my opinion, this vulnerability isn&#8217;t critical. Now let&#8217;s move on to the details. Description: A vulnerability has been found in Microsoft Windows Live Safety Center (OneCare) which allows [...]]]></description>
		<link>http://www.rec-sec.com/2010/09/21/windows-live-onecare-local-exploit/</link>
			</item>
	<item>
		<title>Novell iPrint Client ActiveX Control call-back-url Stack-based Buffer Overflow exploit (meta)</title>
		<description><![CDATA[And yet another Metasploit exploit module for Novell iPrint, this time for the Novell iPrint Client ActiveX control &#8216;debug&#8217; stack-based buffer overflow vulnerability. This vulnerability was originally discovered by Carsten Eiram of Secunia Research. Abysssec Security Team published a binary analysis of this vulnerability as a part of MOAUB. This module exploits a stack-based buffer [...]]]></description>
		<link>http://www.rec-sec.com/2010/09/21/novell-iprint-callbackurl-buffer-overflow-exploit/</link>
			</item>
	<item>
		<title>Novell iPrint Client ActiveX Control &#8216;debug&#8217; Stack-based Buffer Overflow exploit (meta)</title>
		<description><![CDATA[Here&#8217;s a Metasploit exploit module I wrote for the Novell iPrint Client ActiveX control &#8216;debug&#8217; stack-based buffer overflow vulnerability. This vulnerability was originally discovered by Aaron Portnoy of TippingPoint DVLabs. Abysssec Security Team published a binary analysis of this vulnerability as a part of MOAUB. This module exploits a stack-based buffer overflow in Novell iPrint [...]]]></description>
		<link>http://www.rec-sec.com/2010/09/21/novell-iprint-debug-buffer-overflow-exploit/</link>
			</item>
	<item>
		<title>Advanced Heap Spraying Techniques</title>
		<description><![CDATA[In the January OWASP Israel meeting I did a presentation about new and advanced Heap Spraying techniques. It&#8217;s about time I publish it. In the presentation I demonstrated two new techniques &#8211; Bitmap Heap Spraying and Silverlight Heap Spraying which I&#8217;ll publish here later on this week in addition to a few other new techniques, [...]]]></description>
		<link>http://www.rec-sec.com/2010/09/20/advanced-heap-spraying-techniques/</link>
			</item>
	<item>
		<title>Microsoft Internet Explorer iepeers.dll use-after-free exploit (meta)</title>
		<description><![CDATA[A new Microsoft Internet Explorer 0day exploit has been found circulating in-the-wild. According to Microsoft, there are targeted attacks attempting to use this vulnerability. Microsoft published a security advisory for this vulnerability here: Microsoft Security Advisory (981374): Vulnerability in Internet Explorer Could Allow Remote Code Execution The vulnerability is a use-after-free (invalid pointer reference) vulnerability [...]]]></description>
		<link>http://www.rec-sec.com/2010/03/10/internet-explorer-iepeers-use-after-free-exploit/</link>
			</item>
	<item>
		<title>South River Technologies WebDrive Service Bad Security Descriptor Local Privilege Escalation exploit (meta)</title>
		<description><![CDATA[Here&#8217;s a local privilege escalation exploit I wrote, as a Metasploit Meterpreter script, for the South River Technologies WebDrive Service Bad Security Descriptor vulnerability. This vulnerability was discovered by bellick of the Nine:Situations:Group and the original advisory can be found on the Nine:Situations:Group web site &#8211; South River Technologies WebDrive Service Bad Security Descriptor Local [...]]]></description>
		<link>http://www.rec-sec.com/2010/01/26/srt-webdrive-privilege-escalation/</link>
			</item>
	<item>
		<title>AOL 9.5 Phobos.Playlist Import() Stack-based Buffer Overflow exploit (meta)</title>
		<description><![CDATA[Wrote a new Metaspoit exploit module for the AOL 9.5 Phobos.Playlist ActiveX control Import() stack-based buffer overflow vulnerability. This module exploits a stack-based buffer overflow within Phobos.dll of AOL 9.5. By setting an overly long value to &#8216;Import()&#8217;, an attacker can overrun a buffer and execute arbitrary code. This vulnerability was found by Hellcode Research [...]]]></description>
		<link>http://www.rec-sec.com/2010/01/25/aol-playlist-class-buffer-overflow/</link>
			</item>
	<item>
		<title>Peter Van Eeckhoutte&#8217;s Exploit Writing Tutorials</title>
		<description><![CDATA[Hello everyone. If your in to exploit development or new to this and want to learn how to do it, here&#8217;s a series of tutorials by Peter Van Eeckhoutte (a.k.a corelanc0d3r), which I strongly recommend, that will give you solid knowledge in exploit writing. Today Peter published the latest edition to his exploit writing tutorials [...]]]></description>
		<link>http://www.rec-sec.com/2010/01/22/corelanc0d3r-exploit-tutorials/</link>
			</item>
	<item>
		<title>Recognize-Security on Twitter</title>
		<description><![CDATA[Hello readers, From now on you can follow Recognize-Security on Twitter! Check it out &#8211; @rec_sec]]></description>
		<link>http://www.rec-sec.com/2010/01/21/recognize-security-on-twitter/</link>
			</item>
	<item>
		<title>cPanel HTTP Response Splitting Vulnerability</title>
		<description><![CDATA[Security Advisory for cPanel and WHM (WebHost Manager) versions 11.25. Vulnerabilities found: HTTP Response Splitting vulnerability Open Redirection vulnerability cPanel HTTP Response Splitting Vulnerability &#8211; Security Advisory (PDF). cPanel HTTP Response Splitting Vulnerability &#8211; Security Advisory (TXT). I&#8217;d like to point out the lame work of the cPanel Security Team on these vulnerabilities. Usually when [...]]]></description>
		<link>http://www.rec-sec.com/2010/01/21/cpanel-http-response-splitting-vulnerability/</link>
			</item>
	<item>
		<title>Nmap 5.20 released</title>
		<description><![CDATA[A new version of Nmap Security Scanner released today which is the first stable release since 5.00 &#8211; Nmap 5.20. This version got tons of improvements such as improved UDP scanning, new Nmap Scripting Engine scripts, updated OS and version detection and more. Check out the Change log and announcement of Nmap 5.20. Download Nmap [...]]]></description>
		<link>http://www.rec-sec.com/2010/01/21/nmap-5-20-released/</link>
			</item>
	<item>
		<title>BackTrack Linux 4 released</title>
		<description><![CDATA[A new version for the penetration testers and security experts favorite Linux distrobution released &#8211; BackTrack Linux 4. This version offers new tools, new kernel and tons of bug fixes. And, BackTrack Linux is no longer a part of remote-exploit.org, it got a new home at backtrack-linux.org. I used the new version for the last [...]]]></description>
		<link>http://www.rec-sec.com/2010/01/21/backtrack-linux-4-released/</link>
			</item>
</channel>
</rss>

