Abhishek Singh

Posts by:
Abhishek Singh

 
Analysis of CVE-2011-1852 Buffer Overflow in HP Intelligent Management Center TFTP Server.

We recently published an article in Virus Bulletin which discussed the exploit technique which is possible due to the improper implementation of protocol specifications. This can lead to traditional …

October 03, 2011 //

Read more ›

Exploitation due to the improper implementation of Proprietary Protocol Specification: A new trend

Understanding the exploitation of vulnerability is important both for the product security team and for the research teams that authors signatures for network intrusion prevention/detection (NIS) devices. Product …

July 29, 2011 //

Read more ›

Smart Binary Diffing

Binary diffing is generally performed to understand the changes in the code such that the fixes in the code can be analyzed and then these fixes can be …

June 23, 2011 //

Read more ›

Qakbot Infection

We recently received a computer that we believed to be infected with malware. The goal here was to be able to identify if there is any probable infection …

June 05, 2011 //

Read more ›

Analysis of CVE-2011-1764: A Case of format String Vulnerability in EXIM

CVE-2011-1764 is a case of format string vulnerability in Exim. Format string vulnerabilities arise due to the missing format specifier in a poorly written code. Format string vulnerabilities …

May 18, 2011 //

Read more ›

© 2010–2011