<?xml version='1.0' encoding='UTF-8'?><?xml-stylesheet href="http://www.blogger.com/styles/atom.css" type="text/css"?><feed xmlns='http://www.w3.org/2005/Atom' xmlns:openSearch='http://a9.com/-/spec/opensearchrss/1.0/' xmlns:georss='http://www.georss.org/georss' xmlns:gd='http://schemas.google.com/g/2005' xmlns:thr='http://purl.org/syndication/thread/1.0'><id>tag:blogger.com,1999:blog-4096272681815422786</id><updated>2011-07-31T04:13:28.646-07:00</updated><title type='text'>(:-Exploit development blog -:)</title><subtitle type='html'>This is a blog for me to be able to publish all of the exploits i have wrote and keep the community up 
to date.</subtitle><link rel='http://schemas.google.com/g/2005#feed' type='application/atom+xml' href='http://n00b-n00b.blogspot.com/feeds/posts/default'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default?max-results=100'/><link rel='alternate' type='text/html' href='http://n00b-n00b.blogspot.com/'/><link rel='hub' href='http://pubsubhubbub.appspot.com/'/><author><name>n00b</name><uri>http://www.blogger.com/profile/04074265990996888230</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><generator version='7.00' uri='http://www.blogger.com'>Blogger</generator><openSearch:totalResults>4</openSearch:totalResults><openSearch:startIndex>1</openSearch:startIndex><openSearch:itemsPerPage>100</openSearch:itemsPerPage><entry><id>tag:blogger.com,1999:blog-4096272681815422786.post-5119530478595192004</id><published>2009-06-04T15:23:00.000-07:00</published><updated>2009-06-04T15:26:50.475-07:00</updated><title type='text'>IDA Pro 5.5</title><content type='html'>Ida pro 5.5 is due for released this week some time so snap it up :) &lt;br /&gt;I'm looking forward to testing it and looking at some of the new functions it  &lt;br /&gt;has. &lt;br /&gt;&lt;br /&gt;&lt;a href="http://hexblog.com/2009/06/ida_pro_55_goes_alpha.html"&gt;&lt;br /&gt;IDA Pro 5.5 goes alpha &lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4096272681815422786-5119530478595192004?l=n00b-n00b.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://n00b-n00b.blogspot.com/feeds/5119530478595192004/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4096272681815422786&amp;postID=5119530478595192004&amp;isPopup=true' title='1 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default/5119530478595192004'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default/5119530478595192004'/><link rel='alternate' type='text/html' href='http://n00b-n00b.blogspot.com/2009/06/ida-pro-55.html' title='IDA Pro 5.5'/><author><name>n00b</name><uri>http://www.blogger.com/profile/04074265990996888230</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>1</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4096272681815422786.post-2286686846973173900</id><published>2009-05-22T11:51:00.000-07:00</published><updated>2009-06-01T12:13:45.845-07:00</updated><title type='text'>Winamp 5.551 MAKI Parsing Integer Overflow PoC</title><content type='html'>The poc code can be found here im working on  getting shell code execution over the next day or 2 as im working on 3 exploits already atm.And am very busy.  &lt;br /&gt; &lt;br /&gt;Btw His0k4 your exploits don't work &lt;br /&gt; &lt;br /&gt;&lt;br /&gt; ---------------------------------------------&lt;br /&gt;Here is the poc code for the overflow. &lt;br /&gt;&lt;a href="http://www.milw0rm.com/exploits/8767 "&gt;&lt;br /&gt;Winamp 5.551 MAKI Parsing Integer Overflow PoC&lt;/a&gt;&lt;br /&gt; ---------------------------------------------&lt;br /&gt;&lt;br /&gt;I managed to get shell code executed over the weekend and  &lt;br /&gt;the exploit has been sent over at milwr0m. &lt;br /&gt; &lt;br /&gt;I will update with a link as soon as it goes  &lt;br /&gt;up and Also works for vista sp1 and windows xpsp3 &lt;br /&gt; &lt;br /&gt;Please stay tuned im working on a few integer overflows &lt;br /&gt;of my own.&lt;br /&gt;&lt;br /&gt;Here is the working exploit code for the overflow. &lt;br /&gt;&lt;a href="http://www.milw0rm.com/exploits/8783 "&gt;&lt;br /&gt;Winamp 5.551 MAKI Parsing Integer Overflow Exploit&lt;/a&gt;&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4096272681815422786-2286686846973173900?l=n00b-n00b.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://n00b-n00b.blogspot.com/feeds/2286686846973173900/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4096272681815422786&amp;postID=2286686846973173900&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default/2286686846973173900'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default/2286686846973173900'/><link rel='alternate' type='text/html' href='http://n00b-n00b.blogspot.com/2009/05/winamp-5551-maki-parsing-integer.html' title='Winamp 5.551 MAKI Parsing Integer Overflow PoC'/><author><name>n00b</name><uri>http://www.blogger.com/profile/04074265990996888230</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4096272681815422786.post-2150797534724318432</id><published>2009-05-07T15:31:00.000-07:00</published><updated>2009-05-13T06:48:36.167-07:00</updated><title type='text'>Possible openoffice.org v3.1 function pointer manipulation /Integer overflow</title><content type='html'>I was not sure how to class this bug as i never done any research covering integer overflow's or function pointer manipulation.  &lt;br /&gt;  &lt;br /&gt;The write access violation was found by replacing bytes within a specially crafted spread sheet.&lt;br /&gt;  &lt;br /&gt;I am getting in touch with a few people to see if exploitation is possible or feezable to run arbitrary code execution. &lt;br /&gt; &lt;br /&gt;Will update in a few days.&lt;br /&gt;&lt;br /&gt;:Update:&lt;br /&gt;Information has been submitted to a company for further analysis.&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4096272681815422786-2150797534724318432?l=n00b-n00b.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://n00b-n00b.blogspot.com/feeds/2150797534724318432/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4096272681815422786&amp;postID=2150797534724318432&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default/2150797534724318432'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default/2150797534724318432'/><link rel='alternate' type='text/html' href='http://n00b-n00b.blogspot.com/2009/05/possible-openofficeorg-v31-function.html' title='Possible openoffice.org v3.1 function pointer manipulation /Integer overflow'/><author><name>n00b</name><uri>http://www.blogger.com/profile/04074265990996888230</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry><entry><id>tag:blogger.com,1999:blog-4096272681815422786.post-1840198943421297298</id><published>2009-04-07T05:06:00.000-07:00</published><updated>2009-04-08T03:37:46.146-07:00</updated><title type='text'>Xbmc remote buffer over-flow 8.10</title><content type='html'>These are the buffer overflows i recently found &lt;br /&gt;in the xbmc application they have been pached as of&lt;br /&gt;now you can get the new version of xbmc from there&lt;br /&gt;web site.&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.milw0rm.com/exploits/8354 "&gt;XBMC 8.10 GET Request Remote Buffer Overflow Exploit (SEH) (univ)&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.milw0rm.com/exploits/8337"&gt;XBMC 8.10 (GET Requests) Multiple Remote Buffer Overflow PoC&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.milw0rm.com/exploits/8338"&gt;XBMC 8.10 (Get Request) Remote Buffer Overflow Exploit (win)&lt;/a&gt;&lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.milw0rm.com/exploits/8339"&gt;XBMC 8.10 (takescreenshot) Remote Buffer Overflow Exploit&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;&lt;a href="http://www.milw0rm.com/exploits/8340"&gt;XBMC 8.10 (get tag from file name) Remote Buffer Overflow Exploit&lt;/a&gt; &lt;br /&gt;&lt;br /&gt;Im a little bussy atm and will sort blog out some time this week .&lt;div class="blogger-post-footer"&gt;&lt;img width='1' height='1' src='https://blogger.googleusercontent.com/tracker/4096272681815422786-1840198943421297298?l=n00b-n00b.blogspot.com' alt='' /&gt;&lt;/div&gt;</content><link rel='replies' type='application/atom+xml' href='http://n00b-n00b.blogspot.com/feeds/1840198943421297298/comments/default' title='Post Comments'/><link rel='replies' type='text/html' href='http://www.blogger.com/comment.g?blogID=4096272681815422786&amp;postID=1840198943421297298&amp;isPopup=true' title='0 Comments'/><link rel='edit' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default/1840198943421297298'/><link rel='self' type='application/atom+xml' href='http://www.blogger.com/feeds/4096272681815422786/posts/default/1840198943421297298'/><link rel='alternate' type='text/html' href='http://n00b-n00b.blogspot.com/2009/04/xbmc-remote-buffer-over-flow-810.html' title='Xbmc remote buffer over-flow 8.10'/><author><name>n00b</name><uri>http://www.blogger.com/profile/04074265990996888230</uri><email>noreply@blogger.com</email><gd:image rel='http://schemas.google.com/g/2005#thumbnail' width='16' height='16' src='http://img2.blogblog.com/img/b16-rounded.gif'/></author><thr:total>0</thr:total></entry></feed>
