papers on auditing?

From: gov-boiat_private
Date: Sun Jul 08 2001 - 00:10:22 PDT

  • Next message: sebi hegi: "Re: dip3.7.7p overflow still not patched on SuSE 7.0 ?"

    I was/am considering opening up a new section under the papers
    section on hack.co.za called 'audit'/'auditing' which people
    would submit their papers on different auditing methods, common
    vulnerablities in source code, and other methods of auditing
    binary only applications/utilities/daemons.
    
    Currently there are 3 types of papers:
      http://www.hack.co.za/index.php?page=lynx
    
    howto:
           papers that cover already/pre-written exploits..
    
    beginner:
           papers which revolve around introductions to various exploitation
           methods..
    
    intermediate:
           papers which are more geared towards the slightly more difficult
           topics, or that which goes a bit deeper into topics already
           introduced in the beginner section..
    
    advanced:
           not too many papers make it here.. this would be more geared
           towards kernel type vulnerability discussions and exploitation
           methods.
    
    Well.. reason i am mailing vuln-dev is because i would like to start
    a new catagory:
    
    auditing:
           papers that discuss various manual (not automated!) exploitation
           and vulnerability search methods, common problems with various
           functions and also methods of auditing binary only programs.
    
    If you are interested in writing a paper for the auditing catagory,
    let me knowe..(or any other catagory?)
    
    Cheers..
    ++gb
    



    This archive was generated by hypermail 2b30 : Sun Jul 08 2001 - 08:32:39 PDT