The Shadow File

My notes on technology, security, and personal projects

Friday, February 20, 2015

Bowcaster Feature: multipart/form-data

›
Need to reverse engineer or exploit a file upload vulnerability in an embedded web server? I added a multipart/form-data class to Bowcaster...
Saturday, January 31, 2015

Patching, Emulating, and Debugging a Netgear Embedded Web Server

›
Previously I posted about running and remotely debugging a Netgear UPnP daemon using QEMU and IDA Pro. This time we’ll take on the challeng...
Saturday, January 03, 2015

Remote Debugging with QEMU and IDA Pro

›
It's often the case, when analyzing an embedded device's firmware, that static analysis isn't enough. You need to actually execu...
Tuesday, September 23, 2014

Exploit Tunneling and Callback

›
A few years ago, when I worked for my previous employer, I put together a proof-of-concept that was to be part of a client demo. I thought i...
Friday, May 16, 2014

Infiltrate 2014

›
Here are some additional resources I may have mentioned in my Infiltrate 2014 presentation. White Paper:  SQL Injection to MIPS Overflows ...
Monday, December 30, 2013

Emulating and Debugging Workspace

›
A grad student emailed me in response to my Netgear auth bypass post .  He's working on a research project and wanted to know if I knew...
Saturday, December 07, 2013

BayThreat 2013 Presentation - Additional Resources

›
For my presentation at BayThreat, entitled "BT Wireless Routers: Adventures in Reversing and Exploiting", rather than have one or ...
Thursday, October 24, 2013

Netgear Root Compromise via Command Injection

›
At the end of my post on the Netgear wndr3700v4's authentication bugs, I said to expect followup posts. Once the web interface is unloc...
Tuesday, October 22, 2013

Complete, Persistent Compromise of Netgear Wireless Routers

›
UPDATE: Turns out, Jacob Holocomb ( @rootHak42 on Twitter) of Independent Security Evaluators found this bug back in April on a different d...
Wednesday, October 09, 2013

A Connect-back HTTP Exploit Server for Bowcaster

›
I've just added a module to Bowcaster  that I think is cool. Actually, I just got around to finishing a module that was there all along....
Thursday, September 12, 2013

44CON Presentation - Additional Resources

›
Update December 2014: 44CON has posted the videos from all 2013 talks online. Unfortunately, they don't allow the videos to be embedded,...
‹
›
Home
View web version
Powered by Blogger.