01.02.2014 Views

SBDA “same bug, different app” - Security Assessment

SBDA “same bug, different app” - Security Assessment

SBDA “same bug, different app” - Security Assessment

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Wrap Up<br />

• Same Bug, Different App<br />

The theory that an attack vector affecting one application may<br />

also affect another<br />

• The Majority Of Vulnerabilities Are <strong>SBDA</strong><br />

Usually caused by a long string, or an invalid size value<br />

• A Large Number Can Be Found Easily<br />

By using common attack vectors, automated tools can discover a<br />

large number of <strong>SBDA</strong> vulnerabilities<br />

• Remember It’s Platform Independent<br />

Attack vectors against windows may work against *nix<br />

More file base testing should be done against other platforms<br />

• Tomorrows Another Day<br />

And another vulnerability<br />

Copyright <strong>Security</strong>-<strong>Assessment</strong>.com 2005

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!