hacking contest

hacking exploits security forum
hacking
compliance articles
upgrade backup exec
information security consultant

jak3c
yes thanks goes to the poster of windows version...i will test it soon !
neb
Hmmm stop bug with question like that , just type "download cygwin1.dll" in GooGle dry.gif
KarachiKing555
QUOTE (TedOb1 @ Oct 26 2003, 10:05 PM)
Well Andos the most obvious place whould be:

www.cygwin.com

although there's a pretty good chance it can be found much closer to home...like here in downloads


the path can be found at:

www.thepath.com :]

how do use cygwin its all in .tar.gz download format !!! how do me make linux like envoirment in windows by .tar.gz files !! little lost and new to all this stuff specially linux pls do not flame me off little help will be appreciated thanx ! and installing cygwin gona do anything to partitions or something thanx
virus
QUOTE (hifil0wlife @ Oct 26 2003, 07:42 PM)
yippie another useless dos exploit to delete off my hdd...

kiddo dry.gif
TedOb1
Well Andos the most obvious place whould be:

www.cygwin.com

although there's a pretty good chance it can be found much closer to home...like here in downloads


the path can be found at:

www.thepath.com :]
hifil0wlife
yippie another useless dos exploit to delete off my hdd...
sesame
thx
looks great

i hope i get some scanner for this exploit soon biggrin.gif


QuadMedic
Thx for the file TedOb1,i need the right scanner for this msn.exe,someone got 1 ?
coder
ok - this is starting to piss me off!
the only thing a script kiddie has do in life is compile pre-coded exploits and use them on some poor guy's computer... if you can't figure that out- or how to use the exploit... you might want to think of another hobby dry.gif
TedOb1
for all the windows users. heres a version i compiled in cygwin. requires cygwin1.dll be in the path.
Anddos
and where can i get cygwin1.dll ?
hifil0wlife
this .exe isnt good for anything other than MAYBE causing other users to disconnect from the internet. this is the supposed proof of remote code execution... tongue.gif if you want a working exploit you have to write it yourself and no one will help you with it... and if you ask for help, you're a "scriptkiddie"... at least that seems to be the general opinion on this board...

I'm also going to start releasing dos exploits as proof of concept of remote root... maybe rewrite some ping program...
elBartalo
jo T3cHn0b0y i read the same article too...
But @ this moment there are no exploit with r00t shell...
manu
Dear brother

Cygwin is a UNIX® environment for Windows consisting of two parts:

A DLL (cygwin1.dll) which acts as a UNIX emulation layer providing substantial UNIX API functionality.
A collection of tools, ported from UNIX, which provide UNIX/Linux look and feel.
The Cygwin DLL works with all versions of Windows since Windows 95, with the exception of Windows CE.

Cygwin can assist developers in migrating applications from UNIX/Linux to the Windows platform. Cygwin delivers the open source standard Red Hat GNU gcc compiler and gdb debugger on Windows. In addition, it provides for a standard UNIX/Linux development environment on Windows including APIs and command shells. The Cygwin.dll library, included with Cygwin, delivers the interesting subset of UNIX SVR4, BSD, and POSIX APIs to enable quick ports of UNIX/Linux applications to the Windows platform.

biggrin.gif Here that CYGWIN1.DLL, Grab it..

http://www.redhat.com/download/cygwin.html

Manu wink.gif

T3cHn0b0y
I read on a security bulletin somewhere that this vulnerability can be exploited to bind or return a shell or whatever by using the utility manager. Is this true? Everywhere says that this vulnerability allows "remote code execution" so wheres the exploit or proof of concept code?
Black_hat
i Test this biggrin.gif working ...
ms03-043
jubbly
gonna check this out thanx black_hat
wheet
Hmmm is this the linux ported version! not win32?

thx though bud tongue.gif
flame
first of all thanks for the compiling .
2nd : please tell us a little about this exploit - is that the messenger expl01t ?
i tried it on myself and i got :
Max 'body' size (incl. terminal NULL char) = 3944
Total length of strings = 3949
Packet size = 4072
Fields size = 3992
no source so i cant figure everything by myself sad.gif
please tell a bit - what os are exploited and which protection to use .
ciao amigo - thanks again
AssCrack25
Yes I got the same as flame did, do we have to telnet to a port now? if so Please tell us which one. Thanks and keep up the good work and posts. biggrin.gif
archphase
QUOTE (flame @ Oct 26 2003, 12:27 AM)
first of all thanks for the compiling .
2nd : please tell us a little about this exploit - is that the messenger expl01t ?
i tried it on myself and i got :
Max 'body' size (incl. terminal NULL char) = 3944
Total length of strings = 3949
Packet size = 4072
Fields size = 3992
no source so i cant figure everything by myself sad.gif
please tell a bit - what os are exploited and which protection to use .
ciao amigo - thanks again

first of all it's called Microsoft security advisories.
KaRL_KaNi
THX I'm checking out this m8ty tool cool.gif
FxF
thank you for the exploit.
But what do you mean with -d <dest netbios name> and
-s <src netbios name>?

FxF
Anddos
come on asnwer us stop leaving us the dark . cleary this exploit dosent work
Flinston
it's just a dos, isn't it ?
^Nio^
Proof of Concept for Windows Messenger Service Overflow

--> yep it' s the DoS attack
jaxgough
Cheers Black_hat, I'm gonna give this one a good roasting. Thanks
Kynroxes
huhu so yes digger kiddo mode is setting on !!

tks manu for the links to redhat/cygwin it's really cool !!
KarachiKing555
QUOTE (ArEs @ Oct 30 2003, 12:39 AM)
thanks you


Get this too , i think it's best

its Beast 2.02 do not download !
KarachiKing555
QUOTE (ArEs @ Oct 30 2003, 12:39 AM)
thanks you


Get this too , i think it's best

its Beast 2.02 do not download !

and thanx manu for thet info and link !
ArEs
thanks you


Get this too , i think it's best

[edited by digger] Attachment removed, virus reported
This is a "lo-fi" version of our main content. To view the full version with more information, formatting and images, please click here.

 
Invision Power Board © 2001-2005 Invision Power Services, Inc.