<?xml version="1.0" encoding="ISO-8859-1"?>
<rss version="2.0" xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:atom="http://www.w3.org/2005/Atom">
<channel>
  <atom:link href="http://vladz.devzero.fr/rss/updates.xml" rel="self" type="application/rss+xml" />
  <title>Another sysadmin hangout</title>
  <link>http://vladz.devzero.fr</link>
  <description>Site updates</description>

<item>
  <title>[Tools] Give Us Chaos!</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>30 Apr 2012 11:32:15 +0200</pubDate>
  <description>Updated the tools section: New release (version 1.1) of GUChaos.c, a tool to securely feed your system's entropy pool.</description>
  <guid isPermaLink="false">vladz.devzero.fr.1</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-tools.php">tools</a> section: <a href="http://vladz.devzero.fr/vladz-tools.php#guchaos">New release (version 1.1) of GUChaos.c, a tool to securely feed your system's entropy pool</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] Debian's x11-common script weakness (CVE-2012-1093)</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>20 Mar 2012 18:32:58 +0100</pubDate>
  <description>Added in the security section: A description of the vulnerability with the associate local root exploit.</description>
  <guid isPermaLink="false">vladz.devzero.fr.2</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#x11-common">A description of the vulnerability with the associate local root exploit</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] X wrapper permission bypass (CVE-2011-4613)</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>17 Dec 2011 15:28:42 +0100</pubDate>
  <description>Added in the security section: A trivial PoC to bypass the X wrapper security restriction on Debian systems.</description>
  <guid isPermaLink="false">vladz.devzero.fr.3</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#xwrapper">A trivial PoC to bypass the X wrapper security restriction on Debian systems</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] Xorg file permission change vulnerability</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>07 Dec 2011 18:59:15 +0100</pubDate>
  <description>Added in the security section: CVE-2011-4029 PoC improved (uses of Inotify and process scheduling priority).</description>
  <guid isPermaLink="false">vladz.devzero.fr.4</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#xorg-vuln">CVE-2011-4029 PoC improved (uses of Inotify and process scheduling priority)</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] bzexe (bzip2) race condition PoC (CVE-2011-4089)</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>06 Nov 2011 17:14:53 +0100</pubDate>
  <description>Added in the security section: bzexe race condition PoC.</description>
  <guid isPermaLink="false">vladz.devzero.fr.5</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#bzexe">bzexe race condition PoC</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] Xorg file permission change vulnerability</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>28 Oct 2011 17:48:56 +0200</pubDate>
  <description>Added in the security section: CVE-2011-4029 description and PoC.</description>
  <guid isPermaLink="false">vladz.devzero.fr.6</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#xorg-vuln">CVE-2011-4029 description and PoC</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] Two vulnerabilities in Xorg (CVE-2011-4028 and CVE-2011-4029)</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>18 Oct 2011 20:25:44 +0200</pubDate>
  <description>Added in the security section: Xorg vulnerabilities due to lock files.</description>
  <guid isPermaLink="false">vladz.devzero.fr.7</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#xorg-vuln">Xorg vulnerabilities due to lock files</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] Escape sequences of death</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>16 Jun 2011 20:14:29 +0200</pubDate>
  <description>Added in the security section: Some malicious escape sequences to crash a terminal which depends on VTE.</description>
  <guid isPermaLink="false">vladz.devzero.fr.8</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#vte">Some malicious escape sequences to crash a terminal which depends on VTE</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Bash] Base64 implementation in Bash</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>03 May 2011 21:10:08 +0200</pubDate>
  <description>Updated the /bin/bash section: The script base64.sh is being used to illustrate some parts of the Advanced Bash Scripting Guide.</description>
  <guid isPermaLink="false">vladz.devzero.fr.9</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-bash.php">/bin/bash</a> section: <a href="http://vladz.devzero.fr/vladz-bash.php#base64">The script base64.sh is being used to illustrate some parts of the Advanced Bash Scripting Guide</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Tools] New release of Pwd-hash</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>27 Apr 2011 00:02:39 +0200</pubDate>
  <description>Updated the tools section: New release of the pwd-hash (version 2.0).</description>
  <guid isPermaLink="false">vladz.devzero.fr.10</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-tools.php">tools</a> section: <a href="http://vladz.devzero.fr/vladz-tools.php#pwd-hash">New release of the pwd-hash (version 2.0)</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Bash] Base64 implementation in Bash</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>11 Apr 2011 21:30:40 +0200</pubDate>
  <description>Updated the /bin/bash section: Improvement of my Base64 scheme implementation in Bash.</description>
  <guid isPermaLink="false">vladz.devzero.fr.11</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-bash.php">/bin/bash</a> section: <a href="http://vladz.devzero.fr/vladz-bash.php#base64">Improvement of my Base64 scheme implementation in Bash</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] Isgate</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>11 Apr 2011 20:54:20 +0200</pubDate>
  <description>Added in the security section: How to disclose gateways on a LAN + script.</description>
  <guid isPermaLink="false">vladz.devzero.fr.12</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#isgate">How to disclose gateways on a LAN + script</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Tools] Keykass</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>31 Jan 2011 21:42:14 +0100</pubDate>
  <description>Updated the tools section: Keykass.so, a dynamic library for keystroke logging.</description>
  <guid isPermaLink="false">vladz.devzero.fr.13</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-tools.php">tools</a> section: <a href="http://vladz.devzero.fr/vladz-tools.php#keykass">Keykass.so, a dynamic library for keystroke logging</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Tools] Give Us Chaos!</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>26 Dec 2010 14:46:37 +0100</pubDate>
  <description>Updated the tools section: A tool to fill your system's entropy spool.</description>
  <guid isPermaLink="false">vladz.devzero.fr.14</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-tools.php">tools</a> section: <a href="http://vladz.devzero.fr/vladz-tools.php#guchaos">A tool to fill your system's entropy spool</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Bash] Base64 encoding implementation in Bash</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>31 Jul 2010 09:51:07 +0200</pubDate>
  <description>Added in the /bin/bash section: The Bash implementation of a Base64 encoder.</description>
  <guid isPermaLink="false">vladz.devzero.fr.15</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-bash.php">/bin/bash</a> section: <a href="http://vladz.devzero.fr/vladz-bash.php#base64">The Bash implementation of a Base64 encoder</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] Crontab</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>18 Jul 2010 17:39:02 +0200</pubDate>
  <description>Added in the security section: How to hide a scheduled task inside a cron table.</description>
  <guid isPermaLink="false">vladz.devzero.fr.16</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#hide-cron">How to hide a scheduled task inside a cron table</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Tools] New release of Assh</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>17 Jul 2010 17:32:34 +0200</pubDate>
  <description>Updated the tools section: New release of the Anonymous Secure SHell (version 2.3).</description>
  <guid isPermaLink="false">vladz.devzero.fr.17</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-tools.php">tools</a> section: <a href="http://vladz.devzero.fr/vladz-tools.php#assh">New release of the Anonymous Secure SHell (version 2.3)</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Tools] New release of Assh</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>01 Apr 2010 23:02:14 +0200</pubDate>
  <description>Updated the tools section: New release of the Anonymous Secure SHell (version 2.2).</description>
  <guid isPermaLink="false">vladz.devzero.fr.18</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-tools.php">tools</a> section: <a href="http://vladz.devzero.fr/vladz-tools.php#assh">New release of the Anonymous Secure SHell (version 2.2)</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[NMAP] Patch for "--resume" option</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>07 Mar 2010 15:31:59 +0100</pubDate>
  <description>Wrote a nmap patch that makes the "--resume" option works with normal output file (previously generated with "-oN"). It has been included in Nmap version 5.20BETA1.</description>
  <guid isPermaLink="false">vladz.devzero.fr.19</guid>
    <content:encoded><![CDATA[<p>Wrote a <a href="http://seclists.org/nmap-dev/2010/q1/770">nmap patch</a> that makes the "--resume" option works with normal output file (previously generated with "-oN"). It has been included in Nmap version 5.20BETA1.</p>]]></content:encoded>
</item>

<item>
  <title>[Traceroute] Bug fix and patch</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>01 Nov 2009 09:09:11 +0100</pubDate>
  <description>Provided a bug fix (patch) to Fedora's traceroute command (patch included in traceroute version 2.0.13).</description>
  <guid isPermaLink="false">vladz.devzero.fr.20</guid>
    <content:encoded><![CDATA[<p>Provided a bug fix (<a href="https://bugzilla.redhat.com/show_bug.cgi?id=532346">patch</a>) to Fedora's traceroute command (patch included in traceroute version 2.0.13).</p>]]></content:encoded>
</item>

<item>
  <title>[NMAP] x11-access.nse (new version)</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>09 Aug 2009 15:08:44 +0200</pubDate>
  <description>Updated the security section: New version (1.3) of the NSE script x11-access.nse. It has been included in Nmap version 5.10BETA1.</description>
  <guid isPermaLink="false">vladz.devzero.fr.21</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: New version (1.3) of the NSE script <a href="http://vladz.devzero.fr/vladz-security.php#nse-x11">x11-access.nse</a>. It has been included in Nmap version 5.10BETA1.</p>]]></content:encoded>
</item>

<item>
  <title>[Bash] ARP spoofing detection script</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>07 Aug 2009 22:23:21 +0200</pubDate>
  <description>Added in the /bin/bash section: A tiny ARP spoofing detection script.</description>
  <guid isPermaLink="false">vladz.devzero.fr.22</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-bash.php">/bin/bash</a> section: <a href="http://vladz.devzero.fr/vladz-bash.php#mitm">A tiny ARP spoofing detection script</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[NMAP] x11-access.nse (new version)</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>07 Aug 2009 19:08:03 +0200</pubDate>
  <description>Updated the security section: New version (1.1) of the NSE script x11-display.nse.</description>
  <guid isPermaLink="false">vladz.devzero.fr.23</guid>
    <content:encoded><![CDATA[<p>Updated the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#nse-x11">New version (1.1) of the NSE script x11-display.nse</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[Security] /bin/su and stdin</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>29 Jul 2009 23:07:00 +0200</pubDate>
  <description>Added in the security section: Send password on /bin/su's stdin.</description>
  <guid isPermaLink="false">vladz.devzero.fr.24</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#su-ioctl">Send password on /bin/su's stdin</a>.</p>]]></content:encoded>
</item>

<item>
  <title>[NMAP] NSE script to check a x11 display</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>29 Jul 2009 21:06:42 +0200</pubDate>
  <description>Added in the security section: A NSE script (for Nmap) to prevent use of "xhosts +".</description>
  <guid isPermaLink="false">vladz.devzero.fr.25</guid>
    <content:encoded><![CDATA[<p>Added in the <a href="http://vladz.devzero.fr/vladz-security.php">security</a> section: <a href="http://vladz.devzero.fr/vladz-security.php#nse-x11">A NSE script (for Nmap) to prevent use of "xhosts +"</a>.</p>]]></content:encoded>
</item>

<item>
  <title>Initial version of the website</title>
  <link>http://vladz.devzero.fr</link>
  <pubDate>27 Jul 2009 20:55:06 +0200</pubDate>
  <description>I've made up this page to share few stuff (commands, scripts and programs) that I've quickly wrote for fun purposes (I hope some of them can be usefull).</description>
  <guid isPermaLink="false">vladz.devzero.fr.26</guid>
    <content:encoded><![CDATA[<p>I've made up this page to share few stuff (commands, scripts and programs) that I've quickly wrote for fun purposes (I hope some of them can be usefull).</p>]]></content:encoded>
</item>

</channel>
</rss>

