Author of Web attack tool speaks
News Mixter: I rewrote TFN after what I thought Trinoo (a tool that makes another DoS attack known as SMURFing easy) worked like because Trinoo was kept private. That is, if you want to let people access your site, you must to some degree be...
[February 15, 2000, 9:08]
Facebook evolves into an attack tool for criminals
News As Facebook evolves from a University alumini network into an enterprise tool, VeriSign iDefense security experts are warning that the platform is turning into a prime attack vector for cybercriminals.
[July 30, 2007, 8:18]
A Year Ago: New DDoS attack tool in development
News Unknown programmers posted last week the source code to a new distributed Denial-of-Service tool that is under development, according to an analysis of the tool published Monday by David Dittrich of the University of Washington and three other...
[May 1, 2001, 6:00]
ALERT: New DDoS attack tool in development
News Unknown programmers posted last week the source code to a new distributed Denial-of-Service tool that is under development, according to an analysis of the tool published Monday by David Dittrich of the University of Washington and three other...
[May 2, 2000, 16:27]
Security experts scramble to stop new hacking tool
News The hacking tool, dubbed "Stick" by its creators, is engineered to attack Intrusion Detection Systems (IDS), which provide early warning of attacks or security breaches on a network. It could be used to mask an attack.
[March 16, 2001, 8:20]
Virtual-machine exploit lets attackers take over host
News Immunity included the attack code in an update to its commercial penetration-testing tool, Canvas 6.47, released on Tuesday last week. The attack code is in a module of the tool called Cloudburst. The flaw was discovered by Immunity researcher...
[June 9, 2009, 12:29]
Flaws set to spawn another Blaster
News The new attack tool makes it trivial for any malicious actor to gain unauthorised root access to an unpatched computer. Computers that have been patched for the.vulnerability thwart this attack," he said.
[September 17, 2003, 8:54]
Sans Institute warns of cookie-stealing threat
News According to Perry, who also publicised the vulnerability, CookieMonster is a man-in-the-middle attack that works by obtaining DNS responses and caching them. A number of attack vectors could be used by hackers, Perry warned, including Dan Kaminsky...
[September 12, 2008, 15:50]
Windows attack code made public
News However, these attack blueprints are private, supplied to people who pay for the tool. The attack code exploits a flaw in the way Windows handles Vector Markup Language, or VML, documents, which are used for a type of high-quality graphic on the web.
[January 17, 2007, 7:48]
FBI in panic over 'new' hacking tool
News Or the tool could simply be used in a denial-of-service attack, effectively shutting off the system by overwhelming it. Using Stick, an intruder could disguise an attack inside the stream of false alarms.
[March 19, 2001, 8:58]
Researchers warn software updates can be hijacked
News Kotler and colleague Tomer Bitton are releasing a tool called Ippon (which means 'game over' in Judo) that enables the attack and offers a 3D view of potential victims on a network. There is also the possibility that someone could spread an...
[August 3, 2009, 17:56]
Microsoft 'frightened' by police XP hack
News Getting onto the unsecured wireless network, pinging possible IP addresses of other computers on the network, finding Andy's unpatched computer, scanning open ports for vulnerabilities, using the attack tool to build an exploit, and using the...
[November 13, 2007, 10:26]
Apple wireless flaw revealed
News Kicking off a "month of kernel bugs", a security researcher has released attack code that he claims exploits a new security hole in wireless software from Apple. The attack entails trying to trigger a memory corruption flaw by sending a malformed...
[November 2, 2006, 8:52]
Be aware of wireless threats
News In fact, a relatively new wireless tool is helping revive the man-in-the-middle attack. But make no mistake: This type of attack is not obsolete. For example, most security professionals are aware of the man-in-the-middle attack, which occurs when...
[October 21, 2005, 16:15]
If you can't trust FBI-issue software...
News The NIPC were not keen on releasing a remote scanning tool (like mine), because a hacker could use my tools to look for daemons placed by others and using those to launch their attack," he said. Last December, the National Infrastructure Protection...
[February 14, 2000, 10:29]
BT Home Hub encryption under fire
News Once the list of around 80 keys is obtained, the second step in the attack is to try each of them automatically, until the valid key is identified," Pastor continued. Pastor claimed he tested three different BT Home Hubs and that "the attack seems...
[April 16, 2008, 12:15]
'Revenge' hack downed US port systems
News US police traced the source of the attack to a computer at Caffrey's home in Dorset and the IIS Unicode denial of service tool "coded by Aaron" was found on Caffrey's computer during forensic examination.
[October 7, 2003, 16:10]
iPhones: The Wi-Fi threat to business security
News The Pure Hacking consultant demonstrated how a point and click attack can be used to gain access to a victim's Gmail account over a hotspot, using a tool to "sniff out" unencrypted information stored in cookies, and then using a separate tool to...
[June 12, 2008, 11:59]
New tool camouflages hacker programs
News However, if an attacker sends "http://somegarbagehere/" and knows that the "somegarbagehere" portion will be thrown out by the target computer, then the attack still works. The Fragroute program is a dual-use program: It illuminates weaknesses in a...
[April 22, 2002, 9:11]
Windows 2000 Protected Store Key Length Vulnerability Patch
Downloads An attacker would need to gain complete administrative control over the machine that houses the Protected Store in order to gain access to it, and even then would still need to mount a brute-force cryptographic attack against it.
[August 1, 2000, 4:37]



