Protected: Windows Phone 7: Remote Crash

Posted in (In)Security, Advisory, Windows Phone 7 with tags , , on January 27, 2012 by xlocux

This post is password protected. To view it please enter your password below:


When Reversing meet SQL Injection

Posted in (In)Security, Reversing with tags , , , , on December 15, 2011 by xlocux

It’s been a while since i wrote my last thread, life goes fast and the time is always less than before. Anyway lately i found an interesting target that push me up to write few lines about this case.  Someone i knew in a forum has posted a thread regarding a software (an Epson  print cartridges resetter) that use a server validation to work, nothing special but i had some free time and i start working on it.

Read more »

Hash Crack

Posted in Tools & Fix with tags , , , , , , , , , on August 15, 2011 by xlocux

I wrote a tool that use md5decrypter API to decrypt MD4,MD5,NTLM,LM,SHA1,MySQL5 password.

Read more »

Cam4: Persistent XSS Aka Worm

Posted in (In)Security, Advisory with tags , , , , on June 27, 2011 by xlocux

A friend of mine has told me about this website so I take a look at it and i was impressed to see thousands of free live webcam with any sorts of sex perversions (sounds like a piece of paradise or hell depends from the points of view). Therefore i start thinking about security and, after 10 minutes, i found a critical flaw in the user profile.

Read more »

MD5/SHA1 Checksum Calculator

Posted in Tools & Fix with tags , , , , on May 23, 2011 by xlocux

Simple tool to calculate files checksum that  support MD5 and SHA1.

Read more »

Windows Phone 7: MyPostePay

Posted in Tools & Fix, Windows Phone 7 with tags , , , on May 16, 2011 by xlocux

I don’t use the wallet so i built an app to store my postepay, for security reason i’ve not included the cvv and the card number is encrypted with AES. Login is required to decrypt and access data.

Read more »

Windows Phone 7: SecMes

Posted in Tools & Fix, Windows Phone 7 with tags , , , , on May 9, 2011 by xlocux

Recently I bought a “Samsung Omnia 7″  and I have started some projects, just to get more feeling with the work enviroment, I found a very poor framework, many apis are not yet implemented and silverlight sucks, anyway I got a lot of fun during the developing so I thought to post one of them. Obviously to install the tool you need an unlocked windows phone 7 smartphone and a deployer tool.

Read more »

2 Cent About Team Viewer Buddies

Posted in (In)Security, Reversing with tags , , , on April 17, 2011 by xlocux

Nowadays TeamViewer (TV) is one of the best remote desktop application, its use is widely diffused in all the net from private customers to business. Apparently it seems to be bug free but with a bit of Social Engineering it could become an open windows on your system an your TV buddies. Read more »

Mega Menager <= 3.4.0.9 Insecure Library Loading Vulnerability

Posted in (In)Security, Advisory with tags , , , , on March 2, 2011 by xlocux


Read more »

HexWorkshop <= 6.xx Insecure Library Loading Vulnerability

Posted in Advisory with tags , , , on February 24, 2011 by xlocux

Read more »

Follow

Get every new post delivered to your Inbox.