Penetration Testing mailing list archives

New Tool Release: Sharefuzz


From: Dave Aitel <daitel () atstake com>
Date: Mon, 15 Oct 2001 19:42:42 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

New tool release - Sharefuzz

http://www.atstake.com/research/tools/index.html#vulnerability_scanning

Sharefuzz is a local setuid program fuzzer which automatically detects
environment variable overflows in Unix systems. This tool can be used to ensure

all necessary patches have been applied, or used as a reverse engineering
tool.

Please think of Sharefuzz as necessary due dilligence against all-too-common
programming flaws. Advanced use of Sharefuzz can probe deeply into vulnerable
programs. But in its default configuration, Sharefuzz will root out any obvious

vulnerabilities quickly and
easily.

Again, please send all comments, patches, chain-mail-jokes, etc to:
daitel () atstake com

Thanks,
Dave Aitel
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.6 (GNU/Linux)
Comment: For info see http://www.gnupg.org

iD8DBQE7y3Qo9iGGtHdhlgMRAvq8AJ9KsZcrdNxRnbefkQFM8SajibqluACfc71M
YMEldiz/M1pajGDtqPcZqVM=
=R/vr
-----END PGP SIGNATURE-----



----------------------------------------------------------------------------
This list is provided by the SecurityFocus Security Intelligence Alert (SIA)
Service. For more information on SecurityFocus' SIA service which
automatically alerts you to the latest security vulnerabilities please see:
https://alerts.securityfocus.com/


Current thread: