Plague in (security) software drivers & BSDOhook utility

2007-09-18 Thread Matousec - Transparent security Research
-drivers.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Kaspersky Multiple insufficient argument validation of hooked SSDT function Vulnerability

2007-06-15 Thread Matousec - Transparent security Research
source code are available here: http://www.matousec.com/info/advisories/Kaspersky-Multiple-insufficient-argument-validation-of-hooked-SSDT-functions.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Outpost Enforcing system reboot with 'outpost_ipc_hdr' mutex Vulnerability

2007-06-01 Thread Matousec - Transparent security Research
of Outpost Firewall PRO More details and a proof of concept including its source code are available here: http://www.matousec.com/info/advisories/Outpost-Enforcing-system-reboot-with-outpost_ipc_hdr-mutex.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Bypassing PFW/HIPS open process control with uncommon identifier

2007-05-16 Thread Matousec - Transparent security Research
- Transparent security Research http://www.matousec.com/

ZoneAlarm Insufficient validation of 'vsdatant' driver input buffer Vulnerability

2007-05-01 Thread Matousec - Transparent security Research
ousec - Transparent security Research http://www.matousec.com/

ZoneAlarm Multiple insufficient argument validation of hooked SSDT function Vulnerability

2007-04-16 Thread Matousec - Transparent security Research
here: http://www.matousec.com/info/advisories/ZoneAlarm-Multiple-insufficient-argument-validation-of-hooked-SSDT-functions.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Norton Multiple insufficient argument validation of hooked SSDT function Vulnerability

2007-04-03 Thread Matousec - Transparent security Research
including its source code are available here: http://www.matousec.com/info/advisories/Norton-Multiple-insufficient-argument-validation-of-hooked-SSDT-functions.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Norton Insufficient validation of 'SymTDI' driver input buffer

2007-03-15 Thread Matousec - Transparent security Research
, -- Matousec - Transparent security Research http://www.matousec.com/

SymEvent Driver Local Access System Denial of Service

2007-03-14 Thread Matousec - Transparent security Research
gards, -- Matousec - Transparent security Research http://www.matousec.com/

Comodo Bypassing settings protection using magic pipe Vulnerability

2007-03-01 Thread Matousec - Transparent security Research
-magic-pipe.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Comodo DLL injection via weak hash function exploitation Vulnerability

2007-02-15 Thread Matousec - Transparent security Research
-exploitation.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Comodo Multiple insufficient argument validation of hooked SSDT function Vulnerability

2007-02-02 Thread Matousec - Transparent security Research
and a proof of concept including its source code are available here: http://www.matousec.com/info/advisories/Comodo-Multiple-insufficient-argument-validation-of-hooked-SSDT-functions.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Outpost Bypassing Self-Protection using file links Vulnerability

2007-01-15 Thread Matousec - Transparent security Research
tpost Firewall PRO 4.0 * possibly older versions of Outpost Firewall PRO More details and a proof of concept including its source code are available here: http://www.matousec.com/info/advisories/Outpost-Bypassing-Self-Protection-using-file-links.php Regards, -- Matousec - Transparent sec

Kerio Fake 'iphlpapi' DLL injection Vulnerability

2007-01-01 Thread Matousec - Transparent security Research
Sunbelt Kerio Personal Firewall More details and a proof of concept including its source code are available here: http://www.matousec.com/info/advisories/Kerio-Fake-iphlpapi-DLL-injection.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Bypassing process identification of several personal firewalls and HIPS

2006-12-15 Thread Matousec - Transparent security Research
d products * possibly other personal firewalls and HIPS software More details and a proof of concept including its source code are available here: http://www.matousec.com/info/advisories/Bypassing-process-identification-serveral-personal-firewalls-HIPS.php Regards, -- Matousec - Transparen

Outpost Bypassing Self-Protection via Advanced DLL injection with handle stealing Vulnerability

2006-12-01 Thread Matousec - Transparent security Research
e are available here: http://www.matousec.com/info/advisories/Outpost-Bypassing-Self-Protection-via-Advanced-DLL-injection-with-handle-stealing.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Outpost Multiple insufficient argument validation of hooked SSDT function Vulnerability

2006-11-15 Thread Matousec - Transparent security Research
and a proof of concept including source code is available here: http://www.matousec.com/info/advisories/Outpost-Multiple-insufficient-argument-validation-of-hooked-SSDT-functions.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/

Outpost Insufficient validation of 'SandBox' driver input buffer

2006-11-01 Thread Matousec - Transparent security Research
: * Outpost Firewall PRO 4.0 (964.582.059) More details and a proof of concept including source code is available here: http://www.matousec.com/info/advisories/Outpost-Insufficient-validation-of-SandBox-driver-input-buffer.php Regards, -- Matousec - Transparent security Research http

ISS BlackICE PC Protection Filelock protection bypass Vulnerability

2006-10-16 Thread Matousec - Transparent security Research
: http://www.matousec.com/info/advisories/BlackICE-Filelock-protection-bypass.php Regards, -- Matousec - Transparent security Research http://www.matousec.com/