Archive for November, 2007

Flushing out MITM attacks in the TOR network

Thursday, November 22nd, 2007

After a few news sites picked up the entries on the suspicious TOR nodes I’ve had a few queries on the issue. (more…)

TOR exit-node doing MITM attacks

Tuesday, November 20th, 2007

I decided to do some more digging on the TOR network to see whether there really are exit-nodes doing MITM attacks. As a target site, I picked up my home computer that had an SSL enabled server. (more…)

On TOR

Monday, November 19th, 2007

As most, if not everyone, know TOR is a network of proxies designed to give some privacy and anonymity to it’s users. Lately TOR has been in the news for quite a bit since a swedish hacker managed to sniff a huge load of user accounts and passwords belonging to foreign embassies. (more…)

Tool Release: Pdump - A process memory dumper

Friday, November 16th, 2007

Pdump is now available for download.

 Pdump is a process memory dumper that dumps the whole process memory.

Each allocated memory page is dumped into it’s own file, and you can load them easily into IDA Pro or similar tool later on for analysis.

The tool can be downloaded from here:

Pdump.exe


InspectorWordpress has prevented 2 attacks.