Cатсн²² (in)sесuяitу / ChrisJohnRiley

Because we're damned if we do, and we're damned if we don't!

Tag Archives: hacking

Blackhat Europe: Abusing JBOSS

Abusing JBOSS (Christian Papathanasiou) Abstract (source: Blackhat.com) JBoss Application Server is the open source implementation of the Java EE suite of services. It’s easy-to-use server architecture and high flexibility makes JBoss the ideal choice for users just starting out with J2EE, as well as senior architects looking for a customizable middleware platform. The pervasiveness of [...]

Blackhat Europe: Practical Crypto Attacks Against Web Applications

Practical Crypto Attacks Against Web Applications (Thai Duong & Juliano Rizzo) Abstract (source: Blackhat.com) In 2009, we released a paper on MD5 extension attack ([1]), and described how attackers can use the attack to exploit popular web sites such as Flickr, Vimeo, Scribd, etc. The attack has been well-received by the community, and made the [...]

Blackhat Europe: Attacking JAVA Serialized Communications

Attacking JAVA Serialized Communications (Manish Saindane) Abstract (source: Blackhat.com) Many applications written in JAVA make use of Object Serialization to transfer full blown objects across the network via byte streams or to store them on the file system. While Penetration Testing applications communicating via Serialized Objects, current tools/application interception proxies allow very limited functionality to [...]

Blackhat Europe: SAP Backdoors: A ghost at the heart of your business

SAP Backdoors: A ghost at the heart of your business (Mariano Nuñez Di Croce) Abstract (source: Blackhat.com) In any company, the ERP (Enterprise Resource Planning) is the heart of the business technological platform. These systems handle the key business processes of the organization, such as procurement, invoicing, human resources management, billing, stock management and financial [...]

Follow

Get every new post delivered to your Inbox.

Join 36 other followers