Difference between revisions of "Summerschool Aachen 2005/Challenges"
(→Challenges in Progress) |
(→Challenges in Progress) |
||
Line 26: | Line 26: | ||
* Christian feat. Max - verBOTen - a bot that mirrors only that stuff that is protected by robots.txt | * Christian feat. Max - verBOTen - a bot that mirrors only that stuff that is protected by robots.txt | ||
* Max feat. Christian: [[/SSL fingerprinting]] | * Max feat. Christian: [[/SSL fingerprinting]] | ||
+ | * Max: RSS fuzzer | ||
* Chris - Fake driver to replace Apple's IOI2CMotionSensor for further reverse engineering of the motion sensor driver | * Chris - Fake driver to replace Apple's IOI2CMotionSensor for further reverse engineering of the motion sensor driver | ||
Revision as of 14:21, 23 September 2005
Open Challenges
- formatstringbug and race condition challanges (more challanges on the way)
- extend p0f to fingerrprint ScaPy (default) packets
- find a way to fingerprint
- Build an HTTP-Infrastructure Fingerprinting Tool
- Scan our strange network, fingerprint the stuff in there, modify existing fingerprinting tools to do so
- Find out how httprint works
- Build a minimal DHCP Server on ScaPy
- Build an Fingerprinting Tool for
- dhcp
- rsync
- ssh
- Look into timing/fingerprinting SSH
- (avoidance)
- Write a chapter for /TheBook
Challenges in Progress
- Daniel & Yves - glibc 2.3.5 look at how to exploit heap-based overflows (avoiding the checks)
- Typo & Ilja - 0wn putty
- Update: We found some exploitable bugs. --Typo 18:10, 20 Sep 2005 (CEST)
- Christian feat. Max - verBOTen - a bot that mirrors only that stuff that is protected by robots.txt
- Max feat. Christian: /SSL fingerprinting
- Max: RSS fuzzer
- Chris - Fake driver to replace Apple's IOI2CMotionSensor for further reverse engineering of the motion sensor driver