01.02.2014 Views

SBDA “same bug, different app” - Security Assessment

SBDA “same bug, different app” - Security Assessment

SBDA “same bug, different app” - Security Assessment

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Some Common Test Methods<br />

• Fuzzing<br />

Create packets/files with injected arbitrary data<br />

• Manual Inspection<br />

Inspecting packets/files for vector avenues<br />

Reviewing RFC and packet formats for vector avenues<br />

• Reverse Engineering<br />

De<strong>bug</strong>gers and disassemblers<br />

• Automated Analysis<br />

Search files for [length]string pairs<br />

• Vector Automation<br />

Attempt some or all vectors against a target<br />

• Target Automation<br />

Attempt one vector against multiple targets<br />

Copyright <strong>Security</strong>-<strong>Assessment</strong>.com 2005

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!