WMF SETABORTPROC exploit

2006-01-03 Thread SanjayR
Hi Moore et al (and All): I was trying to understand the wmf setabortproc exploit code. I got confused over one point. In the code, under the point "StandardMetaRecord - Escape()", you have given the value of WORD function as 0x0026 and other possible values can be (according to the code) 0x062

Re: [Full-disclosure] VML Exploit vs. AV/IPS/IDS signatures

2006-09-29 Thread SanjayR
Hi Aviv/Pukhraj & others: As a security professional and researchers, our aim is to provide more in-depth information on intrusion (security) aspects, for example, some virus out-break, new windows vulnerability etc. Aviv is right by saying that signatures should match the vulnerability, not t