Section: .. / groups / teso /
| /// File Name: |
chap.pdf |
Description:
|
Weaknesses in the CHAP protocol as used within PPP and PPTP. Allows authentication in PPTP networks without knowing valid login/password combinations. This authentication scheme is widely used at universities (WLAN networks). A link to a special pppd which is able to authenticate without valid /etc/ppp/chap-secrets is included.
| | Author: | Sebastian Krahmer | | Homepage: | http://www.team-teso.net | | File Size: | 488807 | | Last Modified: | Feb 26 07:28:20 2002 |
| MD5 Checksum: | 6b4b918f410d855855fdaab340232b39 |
|
| /// File Name: |
openssh.reverse.tgz |
Description:
|
Openssh-Reverse is a patched OpenSSH which goes in reverse, allowing outside users to connect to machines behind NAT firewalls. In reverse mode, sshd acts as a client and brings the connection to a modified ssh server.
| | Author: | Sebastian Krahmer | | Homepage: | http://www.team-teso.net | | File Size: | 477279 | | Last Modified: | Oct 3 23:33:26 2000 |
| MD5 Checksum: | 942f35d203b1fa524f6a92c140e9c23f |
|
| /// File Name: |
formatstring-1.2.tar.gz |
Description:
|
Exploiting Format String Vulnerabilities v1.2 - Includes over 30 pages of well organized information along with several examples.
| | Author: | Scut | | Homepage: | https://www.team-teso.net | | File Size: | 214530 | | Last Modified: | Oct 11 06:41:48 2001 |
| MD5 Checksum: | b83261bd868fa46874290b59915bda58 |
|
| /// File Name: |
teso_crew_99_at_ccc-camp.jpg |
Description:
|
TESO at CCC.
| | File Size: | 200472 | | Last Modified: | Sep 15 05:38:06 2002 |
| MD5 Checksum: | 38dcfc807b4384b2828156c0f51b981d |
|
| /// File Name: |
objobf-0.5.0.tar.bz2 |
Description:
|
objobf is an obfuscater for x86/Linux ELF relocatable object files (.o files) that can produce fancy graphs to visualize function structures. Released at CCCAMP 2k3.
| | Author: | scut | | Homepage: | http://www.team-teso.net | | File Size: | 188352 | | Last Modified: | Aug 11 01:28:01 2003 |
| MD5 Checksum: | ba6b6f098f2c1e48c6946c6b13f568bb |
|
| /// File Name: |
mipsshellcode.pdf |
Description:
|
Introduction to the MIPS architecture and the IRIX operating system, focusing on how to write shellcode for IRIX. Includes 3 sample shell codes. This is an updated version of the article in Phrack 56.
| | Author: | Scut | | Homepage: | https://www.team-teso.net | | File Size: | 161051 | | Last Modified: | Jan 19 18:52:59 2001 |
| MD5 Checksum: | c472df5fea5c517411de24591466e2b2 |
|
| /// File Name: |
Vortrag-1.0.tar.gz |
Description:
|
German speech given at the CCC - "exploiting format string vulnerabilities". Including examples.
| | Author: | Scut | | Homepage: | https://www.team-teso.net | | File Size: | 99066 | | Last Modified: | Dec 31 17:01:23 2000 |
| MD5 Checksum: | 7a06a5c5d2cef4a82fb837d94c50fca8 |
|
| /// File Name: |
epta.tgz |
Description:
|
Execution Path Timing Analysis of Unix Daemons - White paper on how to determine if a username is valid remotely by timing remote responses of login programs. OpenSSH diff against v2.99p2 which determines if a username exists even on the newest versions of OpenSSH included.
| | Author: | Sebastian Krahmer | | Homepage: | http://www.team-teso.net | | File Size: | 75700 | | Last Modified: | Dec 3 07:20:53 2002 |
| MD5 Checksum: | 3652eb952d213483c1e22f10b941883d |
|
| /// File Name: |
zodiac-0.4.9.tar.gz |
Description:
|
Zodiac is a portable, extensible and multithreaded DNS tool. It is meant to be used as a DNS packet monitor and DNS protocol test and debuging tool. It's basic features are: sniffing of DNS datagrams on an ethernet device, decoding of all types of DNS packets, including safe decompression (partly finished, SOA record are, for example, not decoded yet), nice display and gui, if you like ncurses and text based frontends, always interactive in all situations through built in command line, threaded and flexible design. Advanced features include: local DNS spoof handler, jizz DNS spoof, exploiting a weakness in old bind implementations, determines jizz-weakness, id-prediction and resolver type remotely, id spoofing, exploiting a weakness in the dns protocol itself, implements some advanced DNS denial of service attacks, including flood, label compression and unres attack, advanced DNS smurf.
| | Author: | Scut | | Homepage: | http://www.team-teso.net | | Changes: | Now runs on *BSD, and fixed some bugs. | | File Size: | 67620 | | Last Modified: | Jun 19 07:28:29 2000 |
| MD5 Checksum: | 9cca1d25152f969e0e28db1d1cc9a4e7 |
|
| /// File Name: |
execve-shell.tar.gz |
Description:
|
execve-shell.tar.gz allows you to easily create linux x86 shellcode that execs any command you supply.
| | Author: | Scut | | Homepage: | | | File Size: | 47364 | | Last Modified: | May 29 23:05:27 2000 |
| MD5 Checksum: | ce5e7d60f9ccddc207136cdd9bdaabe7 |
|
| /// File Name: |
lamescan-1.0.tar.gz |
Description:
|
simple threaded portscanner
| | File Size: | 39392 | | Last Modified: | Feb 11 10:28:47 2000 |
| MD5 Checksum: | 53ded3da5f28b2c602f2a66a65e0440d |
|
| /// File Name: |
ifafoffuffoffaf.c |
Description:
|
wuftpd 2.5.0 heap-based exploit
| | File Size: | 29277 | | Last Modified: | Feb 11 10:28:54 2000 |
| MD5 Checksum: | 7bf0400408d2f20dedc96ae3ed232562 |
|
| /// File Name: |
adv3.tar.gz |
Description:
|
Nameserver traffic amplify (DNS Smurf) and NS Route discovery (DNS Traceroute) advisory and exploit.
| | Author: | Scut | | Homepage: | http://www.team-teso.net | | File Size: | 27780 | | Last Modified: | Feb 16 23:35:21 2000 |
| MD5 Checksum: | 03bb040880d2f4294d655db3d59fe609 |
|
| /// File Name: |
teso.gif |
Description:
|
Unavailable.
| | File Size: | 24781 | | Last Modified: | Feb 17 21:49:40 2000 |
| MD5 Checksum: | 0f12f52a2b607ee56d9896035c965c78 |
|
| /// File Name: |
hellkit-1.2.tar.gz |
Description:
|
Hellkit is a shellcode generator. You write the your shellcode in C, and it gets converted to ASM for use with both heap and stack based overflows. Many examples included.
| | Author: | Stealth | | Homepage: | http://www.team-teso.net | | Changes: | Added generic shellcode decoder which can handle shellcode up to 64kb in length containing any bytes, added encoder for this type of decoder, and fixed some signedness issues in array accessment. | | File Size: | 22481 | | Last Modified: | Mar 16 23:25:57 2000 |
| MD5 Checksum: | 1dfa21f029e4fbc903c92734cfe98ca4 |
|
| /// File Name: |
zylyx-0.1.1.tar.gz |
Description:
|
http proxy-cache file finder (goes through http proxies from a file and request a file)
| | File Size: | 21766 | | Last Modified: | Feb 11 10:28:47 2000 |
| MD5 Checksum: | 476c506dde6c12fafd58528cc39e29f8 |
|
| /// File Name: |
7350cfingerd-0.0.4.tar.gz |
Description:
|
Cfingerd prior to v1.4.2 remote root format string exploit. Includes information on finding offsets. Tested against Debian cfingerd v1.3.2, 1.4.0, 1.4.1, and RedHat 7.0 cfingerd 1.3.2.
| | Author: | Scut | | Homepage: | https://www.team-teso.net | | File Size: | 19713 | | Last Modified: | Apr 24 03:35:18 2001 |
| MD5 Checksum: | b2014e7d2b6d5162f60557bb2a339a89 |
|
| /// File Name: |
7350cowboy.c |
Description:
|
7350cowboy.c is supposedly a PHP/3.0.12, 3.0.15, and 3.0.16 with apache 1.3.12 remote format string exploit for FreeBSD 3.4, Slackware Linux 4.0, and 7.0. Very similar to http://packetstormsecurity.org/0010-exploits/phploit.c.
| | File Size: | 19629 | | Last Modified: | Nov 17 15:04:24 2002 |
| MD5 Checksum: | 49cb24b3e1a3f7c0b7a27e6879c6d0a2 |
|
| /// File Name: |
adore-ng-0.41.tgz |
Description:
|
Adore is a Linux LKM based rootkit for Linux v2.[246]. Features smart PROMISC flag hiding, persistent file and directory hiding (still hidden after reboot), process-hiding, netstat hiding, rootshell-backdoor, and an uninstall routine. Includes a userspace program to control everything.
| | Author: | Stealth | | Homepage: | http://www.team-teso.net | | Changes: | Ported to 2.6 and fixed a buffer overflow from version 0.32. | | File Size: | 18877 | | Last Modified: | Mar 12 02:34:01 2004 |
| MD5 Checksum: | 3295d45f24060914c411d1d75343660a |
|
| /// File Name: |
adore-ng-0.31.tgz |
Description:
|
Adore is a Linux LKM based rootkit for Linux v2.[24]. Features smart PROMISC flag hiding, persistent file and directory hiding (still hidden after reboot), process-hiding, netstat hiding, rootshell-backdoor, and an uninstall routine. Includes a userspace program to control everything.
| | Author: | Stealth | | Homepage: | http://www.team-teso.net | | Changes: | Syslog filtering, wtmp/utmp/lastlog filtering, relinking of LKMs as described in Phrack #61. | | File Size: | 18140 | | Last Modified: | Jan 6 01:33:29 2004 |
| MD5 Checksum: | 4a925181db7030c1e9b67225a88abbe0 |
|
|
|
|
|