Diaries by Keyword: XML DOS Code Execution

DateAuthorTitle

XML DOS CODE EXECUTION

2009-08-08Guy BruneauXML Libraries Data Parsing Vulnerabilities

XML

2014-03-12Johannes UllrichWordpress "Pingback" DDoS Attacks
2013-11-01Russ McReeSecunia's PSI Country Report - Q3 2013
2011-11-10Rob VandenBrinkStuff I Learned Scripting - - Parsing XML in a One-Liner
2009-08-08Kevin ListonSun OpenSSO Enterprise/Sun Access Manager XML Vulnerabilities
2009-08-08Guy BruneauXML Libraries Data Parsing Vulnerabilities
2009-02-19Bojan ZdrnjaMS09-002, XML/DOC and initial infection vector
2009-01-31Swa FrantzenVMware updates
2006-11-14Jim ClausingMS06-071: MSXML Core Services
2006-09-19Swa FrantzenYet another MSIE 0-day: VML

DOS

2014-03-12Johannes UllrichWordpress "Pingback" DDoS Attacks
2014-02-17Chris MohanNTP reflection attacks continue
2013-11-22Rick WannerPort 0 DDOS
2013-10-24Johannes UllrichAre you a small business that experienced a DoS attack?
2013-10-08Johannes UllrichCSAM: ANY queries used in reflective DoS attack
2013-07-27Scott FendleyDefending Against Web Server Denial of Service Attacks
2013-06-05Richard PorterBIND 9 Update fixing CVE-2013-3919
2013-04-21John BambenekA Chargen-based DDoS? Chargen is still a thing?
2013-03-28John BambenekWhere Were You During the Great DDoS Cybergeddon of 2013?
2013-03-27Rob VandenBrinkSeveral Cisco IOS DOS Issues Resolved
2013-03-18Kevin ShorttSpamhaus DDOS
2012-09-20Russ McReeFinancial sector advisory: attacks and threats against financial institutions
2012-08-15Guy BruneauCisco IOS XR Software Route Processor DoS Vulnerability - http://tools.cisco.com/security/center/content/CiscoSecurityAdvisory/cisco-sa-20120530-iosxr
2012-05-21Kevin ShorttDNS ANY Request Cannon - Need More Packets
2012-03-30Daniel WesemannTomorrow, the world will end
2012-03-16Russ McReeMS12-020 RDP vulnerabilities: Patch, Mitigate, Detect
2012-01-22Johannes UllrichJavascript DDoS Tool Analysis
2011-12-28Daniel WesemannHash collisions vulnerability in web servers
2011-08-30Johannes UllrichApache patch out for "byte range" DoS vulnerability http://www.apache.org/dist/httpd/Announcement2.2.html
2011-08-25Kevin ShorttRevival of an Unpatched Apache HTTPD DoS
2011-05-20Guy BruneauDistributed Denial of Service Cheat Sheet
2011-04-05Mark HofmanSony DDOS
2011-04-05Mark HofmanDNS.be DDOS
2011-03-04Mark HofmanDDOS, the new black?
2011-02-12Kevin ListonDDoS Analysis Process
2011-01-29Mark HofmanSourceforge attack
2011-01-27Guy BruneauISC DHCP DHCPv6 Vulnerability
2010-12-22John BambenekIIS 7.5 0-Day DoS (processing FTP requests)
2010-12-09Mark HofmanHaving a look at the DDOS tool used in the attacks today
2010-12-08Rob VandenBrinkInteresting DDOS activity around Wikileaks
2010-09-14Adrien de BeaupreBlackEnergy DDoS
2010-08-16Raul SilesDDOS: State of the Art
2010-08-13Guy BruneauCisco IOS Software 15.1(2)T TCP DoS
2010-08-07Stephen HallDnsMadeEasy under a "quite large and unique" ddos.
2010-08-04Adrien de BeaupreMultiple Cisco Advisories
2010-05-08Guy BruneauWireshark DOCSIS Dissector DoS Vulnerability
2010-02-02Johannes UllrichPushdo Update
2010-01-19Jim Clausing49Gbps DDoS, IPv4 exhaustion, and DNSSEC, oh my!
2010-01-06Johannes UllrichDenial of Service Attack Aftermath (and what did Iran have to do with it?)
2009-12-30Guy BruneauKDC DoS in cross-realm referral processing
2009-12-24Guy BruneauF5 BIG-IP ASM and PSM Remote Buffer Overflow
2009-12-09Swa Frantzenntpd upgrade to prevent spoofed looping
2009-10-04Guy BruneauSamba Security Information Disclosure and DoS
2009-09-09Mark HofmanPossible DDOS on gov.au sites starting tonight?
2009-09-08Guy BruneauCisco Security Advisory TCP DoS
2009-08-08Guy BruneauXML Libraries Data Parsing Vulnerabilities
2009-07-29Bojan ZdrnjaBIND 9 DoS attacks in the wild
2009-07-09John BambenekLatest Updates on Ongoing DDoS on Governmental/Commercial Websites in USA and S. Korea
2009-07-08Marcus SachsRFI: DDoS Against Government and Civilian Web Sites
2009-06-23Bojan ZdrnjaSlowloris and Iranian DDoS attacks
2009-06-21Bojan ZdrnjaApache HTTP DoS tool mitigation
2009-06-18Bojan ZdrnjaApache HTTP DoS tool released
2009-03-08Marcus SachsBehind the Estonia Cyber Attacks
2009-01-31Swa FrantzenDNS DDoS - let's use a long term solution
2009-01-31Swa FrantzenVMware updates
2008-12-03Andre LudwigNew ISC Poll! Has your organization suffered a DDoS (Distributed Denial of Service) attack in the last year?
2008-11-29Pedro BuenoUbuntu users: Time to update!
2008-07-20Kevin ListonDenial of Service Attack Against Georgia-- Are You Participating?
2008-04-10Deborah HaleDSLReports Being Attacked Again

CODE

2013-10-25Johannes UllrichPHP.net compromise aftermath: Why Code Signing Beats Hashes
2013-08-04Johannes UllrichBBCode tag "[php]" used to inject php code
2013-02-16Lorna HutchesonFedora RedHat Vulnerabilty Released
2012-07-19Mark BaggettA Heap of Overflows?
2012-04-26Richard PorterPacketstorm Security and Metasploit have Exploit code for MS12-027
2012-04-25Daniel WesemannBlacole's shell code
2012-03-16Russ McReeMS12-020 RDP vulnerabilities: Patch, Mitigate, Detect
2012-03-11Johannes UllrichAn Analysis of Jester's QR Code Attack. (Guest Diary)
2011-08-11Guy BruneauBlackBerry Enterprise Server Critical Update
2011-08-03Johannes UllrichMalicious Images: What's a QR Code
2011-03-07Bojan ZdrnjaOracle padding attacks (Codegate crypto 400 writeup)
2010-05-12Rob VandenBrinkAdobe Shockwave Update
2010-03-10Rob VandenBrinkMicrosoft Security Advisory 981374 - Remote Code Execution Vulnerability for IE6 and IE7
2010-02-08Adrien de BeaupreWhen is a 0day not a 0day? Fake OpenSSh exploit, again.
2009-08-08Guy BruneauXML Libraries Data Parsing Vulnerabilities
2009-05-29Lorna HutchesonVMWare Patches Released
2008-07-22Mari Nichols
2008-06-10Swa FrantzenRansomware keybreaking

EXECUTION

2013-09-18Rob VandenBrinkCisco DCNM Update Released
2013-02-16Lorna HutchesonFedora RedHat Vulnerabilty Released
2012-03-16Russ McReeMS12-020 RDP vulnerabilities: Patch, Mitigate, Detect
2011-08-11Guy BruneauBlackBerry Enterprise Server Critical Update
2010-05-12Rob VandenBrinkAdobe Shockwave Update
2010-03-10Rob VandenBrinkMicrosoft Security Advisory 981374 - Remote Code Execution Vulnerability for IE6 and IE7
2009-08-08Guy BruneauXML Libraries Data Parsing Vulnerabilities
2009-05-29Lorna HutchesonVMWare Patches Released