Contribuez à SecuObs en envoyant des bitcoins ou des dogecoins.
Nouveaux articles (fr): 1pwnthhW21zdnQ5WucjmnF3pk9puT5fDF
Amélioration du site: 1hckU85orcGCm8A9hk67391LCy4ECGJca

Contribute to SecuObs by sending bitcoins or dogecoins.

Chercher :
Newsletter :  


Revues :
- Presse
- Presse FR
- Vidéos
- Twitter
- Secuobs





Sommaires :
- Tendances
- Failles
- Virus
- Concours
- Reportages
- Acteurs
- Outils
- Breves
- Infrastructures
- Livres
- Tutoriels
- Interviews
- Podcasts
- Communiques
- USBsploit
- Commentaires


Revue Presse:
- Tous
- Francophone
- Par mot clé
- Par site
- Le tagwall


Top bi-hebdo:
- Ensemble
- Articles
- Revue
- Videos
- Twitter
- Auteurs


Articles :
- Par mot clé
- Par auteur
- Par organisme
- Le tagwall


Videos :
- Toutes
- Par mot clé
- Par site
- Le tagwall


Twitter :
- Tous
- Par mot clé
- Par compte
- Le tagwall


Commentaires :
- Breves
- Virus
- Failles
- Outils
- Tutoriels
- Tendances
- Acteurs
- Reportages
- Infrastructures
- Interviews
- Concours
- Livres
- Communiques


RSS/XML :
- Articles
- Commentaires
- Revue
- Revue FR
- Videos
- Twitter


RSS SecuObs :
- sécurité
- exploit
- windows
- attaque
- outil
- microsoft


RSS Revue :
- security
- microsoft
- windows
- hacker
- attack
- network


RSS Videos :
- curit
- security
- biomet
- metasploit
- biometric
- cking


RSS Twitter :
- security
- linux
- botnet
- attack
- metasploit
- cisco


RSS Comments :
- Breves
- Virus
- Failles
- Outils
- Tutoriels
- Tendances
- Acteurs
- Reportages
- Infrastructures
- Interviews
- Concours
- Livres
- Communiques


RSS OPML :
- Français
- International











Revue de presse francophone :
- Appaloosa AppDome nouent un partenariat pour accompagner les entreprises dans le déploiement et la protection des applications mobiles
- D-Link offre une avec un routeur VPN sans fil AC
- 19 mai Paris Petit-Déjeuner Coreye Développer son business à l'abri des cyberattaques
- POYNTING PRESENTE LA NOUVELLE ANTENNE OMNI-291, SPECIALE MILIEU MARITIME, CÔTIER ET MILIEU HUMIDE
- Flexera Software Les utilisateurs français de PC progressent dans l'application de correctifs logiciels, mais des défis de tailles subsistent
- Riverbed lance SD-WAN basé sur le cloud
- Fujitsu multi-récompensé VMware lui décerne plusieurs Partner Innovation Awards à l'occasion du Partner Leadership Summit
- Zscaler Private Access sécuriser l'accès à distance en supprimant les risques inhérents aux réseaux privés virtuels
- QNAP annonce la sortie de QTS 4.2.1
- Une enquête réalisée par la société de cyber sécurité F-Secure a décelé des milliers de vulnérabilités graves, potentiellement utilisables par des cyber criminels pour infiltrer l'infrastru
- Trouver le juste équilibre entre une infrastructure dédiée et cloud le dilemme de la distribution numérique
- 3 juin - Fleurance - Cybersécurité Territoires
- Cyber-assurances Seules 40 pourcents des entreprises françaises sont couvertes contre les violations de sécurité et les pertes de données
- Des étudiants de l'ESIEA inventent CheckMyHTTPS un logiciel qui vérifie que vos connexions WEB sécurisées ne sont pas interceptées
- Les produits OmniSwitch d'Alcatel-Lucent Enterprise ALE gagnent en sécurité pour lutter contre les cyber-attaques modernes

Dernier articles de SecuObs :
- DIP, solution de partage d'informations automatisée
- Sqreen, protection applicative intelligente de nouvelle génération
- Renaud Bidou (Deny All): "L'innovation dans le domaine des WAFs s'oriente vers plus de bon sens et d'intelligence, plus de flexibilité et plus d'ergonomie"
- Mises à jour en perspective pour le système Vigik
- Les russes ont-ils pwn le système AEGIS ?
- Le ministère de l'intérieur censure une conférence au Canada
- Saut d'air gap, audit de firmware et (in)sécurité mobile au programme de Cansecwest 2014
- GCHQ: Le JTRIG torpille Anonymous qui torpille le JTRIG (ou pas)
- #FIC2014: Entrée en territoire inconnu
- Le Sénat investit dans les monnaies virtuelles

Revue de presse internationale :
- VEHICLE CYBERSECURITY DOT and Industry Have Efforts Under Way, but DOT Needs to Define Its Role in Responding to a Real-world Attack
- Demand letter served on poll body over disastrous Comeleak breach
- The Minimin Aims To Be The Simplest Theremin
- Hacking group PLATINUM used Windows own patching system against it
- Hacker With Victims in 100 Nations Gets 7 Years in Prison
- HPR2018 How to make Komboucha Tea
- Circuit Bender Artist bends Fresnel Lens for Art
- FBI Director Suggests iPhone Hacking Method May Remain Secret
- 2016 Hack Miami Conference May 13-15, 2016
- 8-bit Video Wall Made From 160 Gaming Keyboards
- In An Era Of Decline, News Sites Can t Afford Poor Web Performance
- BeautifulPeople.com experiences data breach 1m affected
- Swedish Air Space Infringed, Aircraft Not Required
- Why cybercriminals attack healthcare more than any other industry
- Setting the Benchmark in the Network Security Forensics Industry

Annuaire des videos
- FUZZING ON LINE PART THREE
- Official Maltego tutorial 5 Writing your own transforms
- Official Maltego tutorial 6 Integrating with SQL DBs
- Official Maltego tutorial 3 Importing CSVs spreadsheets
- install zeus botnet
- Eloy Magalhaes
- Official Maltego tutorial 1 Google s websites
- Official Maltego tutorial 4 Social Networks
- Blind String SQL Injection
- backdoor linux root from r57 php shell VPS khg crew redc00de
- How To Attaque Pc With Back Track 5 In Arabique
- RSA Todd Schomburg talks about Roundup Ready lines available in 2013
- Nessus Diagnostics Troubleshooting
- Panda Security Vidcast Panda GateDefender Performa Parte 2 de 2
- MultiPyInjector Shellcode Injection

Revue Twitter
- RT @fpalumbo: Cisco consistently leading the way ? buys vCider to boost its distributed cloud vision #CiscoONE
- @mckeay Looks odd... not much to go on (prob some slideshow/vid app under Linux)
- [SuggestedReading] Using the HTML5 Fullscreen API for Phishing Attacks
- RT @BrianHonan: Our problems are not technical but cultural. OWASP top 10 has not changed over the years @joshcorman #RSAC
- RT @mikko: Wow. Apple kernels actually have a function called PE_i_can_has_debugger:
- [Blog Spam] Metasploit and PowerShell payloads
- PinkiePie Strikes Again, Compromises Google Chrome in Pwnium Contest at Hack in the Box: For the second time thi...
- @mikko @fslabs y'all wldn't happen to have lat/long data sets for other botnets, wld you? Doing some research (free/open info rls when done)
- RT @nickhacks: Want to crash a remote host running Snow Leopard? Just use: nmap -P0 -6 --script=targets-ipv6-multicast-mld #wishiwaskidding
- An inexpensive proxy service called is actually a front for #malware distribution -

Mini-Tagwall
Revue de presse : security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone

+ de mots clés pour la revue de presse

Annuaires des videos : curit, security, biomet, metasploit, biometric, cking, password, windows, botnet, defcon, tutorial, crypt, xploit

+ de mots clés pour les videos

Revue Twitter : security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall

+ de mots clés pour la revue Twitter

Top bi-hebdo des articles de SecuObs
- [Ettercap – Partie 2] Ettercap par l'exemple - Man In the Middle et SSL sniffing
- [Infratech - release] version 0.6 de Bluetooth Stack Smasher
- [IDS Snort Windows – Partie 2] Installation et configuration
- [Infratech - vulnérabilité] Nouvelle version 0.8 de Bluetooth Stack Smasher
- Mises à jour en perspective pour le système Vigik
- USBDumper 2 nouvelle version nouvelles fonctions !
- EFIPW récupère automatiquement le mot de passe BIOS EFI des Macbook Pro avec processeurs Intel
- La sécurité des clés USB mise à mal par USBDUMPER
- Une faille critique de Firefox expose les utilisateurs de Tor Browser Bundle
- Installation sécurisée d'Apache Openssl, Php4, Mysql, Mod_ssl, Mod_rewrite, Mod_perl , Mod_security

Top bi-hebdo de la revue de presse
- StackScrambler and the Tale of a Packet Parsing Bug

Top bi-hebdo de l'annuaire des videos
- DC++ Botnet. How To DDos A Hub With Fake IPs.
- Comment creer un server botnet!!!!(Réseau de pc zombies)
- Defcon 14 Hard Drive Recovery Part 3

Top bi-hebdo de la revue Twitter
- RT @secureideas: I believe that all the XSS flaws announced are fixed in CVS. Will test again tomorrow if so, release 1.4.3. #BASESnort
- Currently, we do not support 100% of the advanced PDF features found in Adobe Reader... At least that's a good idea.
- VPN (google): German Foreign Office Selects Orange Business for Terrestrial Wide: Full
- @DisK0nn3cT Not really, mostly permission issues/info leak...they've had a couple of XSS vulns but nothing direct.
- Swatting phreaker swatted and heading to jail: A 19-year-old American has been sentenced to eleven years in pris..
- RT @fjserna You are not a true hacker if the calc.exe payload is not the scientific one... infosuck.org/0x0035.png

Top des articles les plus commentés
- [Metasploit 2.x – Partie 1] Introduction et présentation
- Microsoft !Exploitable un nouvel outil gratuit pour aider les développeurs à évaluer automatiquement les risques
- Webshag, un outil d'audit de serveur web
- Les navigateurs internet, des mini-systèmes d’exploitation hors de contrôle ?
- Yellowsn0w un utilitaire de déblocage SIM pour le firmware 2.2 des Iphone 3G
- CAINE un Live[CD|USB] pour faciliter la recherche légale de preuves numériques de compromission
- Nessus 4.0 placé sous le signe de la performance, de l'unification et de la personnalisation
- [Renforcement des fonctions de sécurité du noyau Linux – Partie 1] Présentation
- [IDS Snort Windows – Partie 1] Introduction aux IDS et à SNORT
- Origami pour forger, analyser et manipuler des fichiers PDF malicieux

Les Tweets pour silviocesare

Si vous voulez bloquer un compte Twitter ou nous en proposer un

Menu > Elements de la revue Twitter : - l'ensemble [tous] - par mots clé [tous] - par compte [tous] - le tagwall [voir]

S'abonner au fil RSS global de la revue Twitter


Précédents / Suivants


Les Tweets filtrés pour " silviocesare" (134 résultats)
S'abonner au fil RSS SecuObs pour le compte Twitter silviocesare


[2011-05-22] - 11:21:17 - Got my slides all ready to submit to the @ruxcon cfp. Detecting software bugs and vulnerabilities in Linux.

[2011-05-19] - 09:05:49 - RT @ll__lll_ll: Auscert's slides: https://github.com/snyff/Talks/blob/master/Auscert2011-NoSQL_Databases_Security.pdf?raw=true

[2011-05-06] - 00:12:28 - @mdowd @kristijan Needless to say, Amazon is down with mark dowd? :P

[2011-04-29] - 06:17:37 - Presenting at a workshop today at the Uni on cloud, network, and system security.

[2011-04-22] - 00:44:06 - My use-after-free/double-free detector works intraprocedurally (for now). The freed ptr being tracked must be a local stack variable or reg

[2011-04-22] - 00:44:06 - @_argp I would like to scan most of a Linux distro..

[2011-04-21] - 06:33:11 - export HOME=$(perl -e 'print A x 10000'); xkbevd; non priv buffer overflow found from my binary scanner.

[2011-04-15] - 04:56:24 - Interesting old Linux crt code causes a false positive(?) in my uninit var detection - http://pastebin.com/31wsxDu1

[2011-04-14] - 16:03:16 - @thegrugq its sad but true that grep still finds bugs in Linux distros.. alas, unlikely to get a phd out of it.

[2011-04-12] - 16:31:37 - @wishinet jgraphx for java. mxgraph for javascript. by same people.

[2011-04-04] - 16:45:24 - http://samate.nist.gov/SRD/testsuite.php - 45,000 testcases of c/c++ bugs. 14,000 java bugs.

[2011-03-31] - 08:52:23 - Got a MODEM env buffer overflow in statserial (non suid). Need to run my tool against the entire repo..

[2011-03-30] - 18:17:27 - Scanned my local fs /usr/bin every bin (+non suid) under 100k for strcpy(,getenv overflows. 5 false pos (not overflow), 1 real.

[2011-03-30] - 18:17:27 - Btw, also scanned for sprintf/strcat getenv overflows

[2011-03-30] - 18:17:27 - Real overflow in /usr/bin/ccontrol. But non suid, so matters only for dev/qa/me.

[2011-03-29] - 15:43:24 - @_snagg My recent Ruxmon preso covered a few regex on Linux source. Lame, but it found some stuff that should have died 15 years ago.

[2011-03-25] - 09:26:48 - RT @ruxcon: Ruxmon: Simple Bugs and Vulnerabilities in Linux Distributions - Silvio Cesare, Turning SMB Client Side Bug To Server Side - ...

[2011-03-18] - 09:06:46 - I will be talking at ruxmon this month on Simple Bugs and Vulnerabilities in Linux Distributions.

[2011-03-05] - 14:09:25 - Added initial support to represent stack based arrays natively in my IR. AllocA instruction returns pointer to memory.Decompiler like almost

[2011-02-03] - 06:15:37 - RT @halvarflake: Using VxClass + Memoryze + AuditViewer to generate new private signatures for Zeus and scan for them: http://bit.ly/dOU58r

[2011-01-23] - 14:59:21 - Reading blackhat slides. Most interesting one for me would be Stale pointers are the new black by Vincenzo Iozzo and Giovanni Gola.

[2011-01-22] - 05:50:28 - Seems there might be a use for my work on finding equivalent packages between Linux distros http://bit.ly/gt3rz2

[2011-01-20] - 04:12:05 - @Openwall how do I submit minor bug reports to openwall?

[2011-01-09] - 17:23:02 - @spoiIed hehe.. old school overflows.

[2011-01-09] - 17:23:02 - @spoiIed in fact it was an argv[0] based strcpy overflow.

[2011-01-07] - 15:37:00 - grepping for strcpy.*argv found 1 buffer overflow in a Debian SGID games.

[2011-01-07] - 15:37:00 - Testing 2737 programs in *bin*, 741 crash with a null argv[0] - surely it's better just to disallow exec within the kernel in this case..

[2011-01-06] - 16:21:36 - Grepped for getenv bof in Debian tree. Found 1 SUID overflow in op package. But not compiled in by default. Package not in other distros.

[2010-12-21] - 10:18:47 - RT @headhntr: Software engineering explained in pictorial form - http://alexandre.gramfort.net/tech/software_engineering_explained.gif

[2010-12-15] - 12:55:52 - RT @eugeneteo: Allegations regarding OpenBSD IPSEC http://marc.info/?l=openbsd-techm=129236621626462w=2

[2010-12-02] - 06:50:43 - RT @iseclaborg: Put a version of our dynamic malware analysis tool survey that is scheduled for publication: pdf: http://bit.ly/g0fzv9

[2010-11-30] - 05:27:43 - I think Fedora and the other Linux distributions are normally pretty good in giving attribution. These things happen.

[2010-11-25] - 06:32:02 - @andreasdotorg I think VxClass may be slightly more effective, but not as efficient. Also VxClass has more emphasis on the call graph.

[2010-11-25] - 06:32:02 - The thesis is being sent to the printers tomorrow. Cue last minute panicking and worrying about PDF formatting.

[2010-11-25] - 06:32:02 - RT @Ivanlef0u: Breaking Linux Security Protections by Andrew Griffiths at Ruxcon 2010 http://bit.ly/f1zd2I

[2010-11-14] - 14:39:29 - Including my Java GUI, I am at the magical 100K LOC in a single project as sole author. I've been working on it since 2008.

[2010-11-13] - 10:52:25 - RT @djrbliss: Small success: access to the kernel syslog via dmesg can now be restricted. http://bit.ly/c0ozmA

[2010-11-13] - 10:52:25 - When did my code base get so big..Last line count i did it was 60k LOC. Now it seems to be 94k LOC. Not including java/html or py scripts

[2010-10-25] - 11:49:39 - Phrack will be at Ruxcon http://www.phrack.org http://www.ruxcon.org.au - comments?

[2010-10-14] - 09:02:11 - The FreeBSD installer is so old school. Feels like I'm installing DOS.. or my first Linux in the 90s.

[2010-10-09] - 08:26:37 - If you go through the page links, you'll also see my malware classifier web interface. This is being replaced with a Java client.

[2010-10-02] - 05:25:15 - The university isn't keen to host my malware detection services, but my supervisor will fund me with Amazon EC2.

[2010-09-30] - 18:00:12 - I've pretty much convinced myself that buying Amazon EC2 cloud services is the way to go for hosting my research systems.

[2010-09-22] - 13:47:12 - @kuza55 I had a bit of lol with your reaction to blackhat talks :P

[2010-09-22] - 13:47:12 - @jvanegue Dawson Engler wrote a paper on using SMT/symbolic execution to find bugs in Linux kernel source in 2002 iirc.

[2010-09-20] - 06:43:21 - I do use Python/Java/PHP for some tasks contrary to popular belief :P

[2010-09-17] - 21:55:48 - http://birc.au.dk/Software/RapidNJ/ seems very fast. It finished my 10,000 species evolutionary tree while running inside vmware.

[2010-07-31] - 21:12:49 - @fotisl I had to convert to PDF.

[2010-07-30] - 19:47:05 - @ryanlrussell Submitted a paper to a conference and they have automated validation of the PDF formatting.

[2010-07-29] - 14:56:17 - RT @LambdaCube: New zynamics blog post: Dumping shellcode with Pin http://blog.zynamics.com/2010/07/28/dumping-shellcode-with-pin/

[2010-07-29] - 14:56:17 - Are nested tabs (eg, JTabbedPane in Java) bad style for a general user interface?

[2010-07-28] - 11:27:38 - I have some XML data. I want to pretty print and navigate through the data using Java swing. Any existing libraries to do this?


Précédents / Suivants


S'abonner au fil RSS global de la revue Twitter

Menu > Elements de la revue Twitter : - l'ensemble [tous] - par mots clé [tous] - par compte [tous] - le tagwall [voir]




SecuToolBox :

Mini-Tagwall des articles publiés sur SecuObs :

Mini-Tagwall de l'annuaire video :

Mini-Tagwall des articles de la revue de presse :

Mini-Tagwall des Tweets de la revue Twitter :