Vulnerability Development mailing list archives

papers on auditing?


From: <gov-boi () hack co za>
Date: Sun, 8 Jul 2001 09:10:22 +0200 (SAST)

I was/am considering opening up a new section under the papers
section on hack.co.za called 'audit'/'auditing' which people
would submit their papers on different auditing methods, common
vulnerablities in source code, and other methods of auditing
binary only applications/utilities/daemons.

Currently there are 3 types of papers:
  http://www.hack.co.za/index.php?page=lynx

howto:
       papers that cover already/pre-written exploits..

beginner:
       papers which revolve around introductions to various exploitation
       methods..

intermediate:
       papers which are more geared towards the slightly more difficult
       topics, or that which goes a bit deeper into topics already
       introduced in the beginner section..

advanced:
       not too many papers make it here.. this would be more geared
       towards kernel type vulnerability discussions and exploitation
       methods.

Well.. reason i am mailing vuln-dev is because i would like to start
a new catagory:

auditing:
       papers that discuss various manual (not automated!) exploitation
       and vulnerability search methods, common problems with various
       functions and also methods of auditing binary only programs.

If you are interested in writing a paper for the auditing catagory,
let me knowe..(or any other catagory?)

Cheers..
++gb


Current thread: