Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




bugtraq logo Bugtraq mailing list archives

silc question - insecure memory
From: cdowns <cdowns () angrypacket com>
Date: Fri, 31 Jan 2003 23:44:05 -0500

Good Evening,
while screwing around tonight checking memory for the SSH2 advisory. I noticed passphrase and complete sessions from silc in memory. I dont know if this is normal for silc ( I wouldnt think it would be ) but all you need to do it is:

cdowns () Vader:~$ sudo dd if=/dev/mem of=/home/cdowns/mem.dump | less ~cdowns/mem.dump

then just search for you key phrase.

~!>D

--
------------------------------------------
     http://www.angrypacket.com
      Christopher M Downs,RHCE
      cdowns () angrypacket com
        
  char ash[]="\x48\x61\x69\x6C\x20"
  "\x74\x6F\x20\x74\x68\x65\x20\x4B"
  "\x69\x6E\x67";
-------------------------------------------




  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]