White papers

Reverse Honey Traps – Beating Online Anti-virus Engine in its Own Game

// June 7th, 2010 // No Comments » // White papers

Author: Rohit Bansal (RB1337) / Aditya K Sood (0kn0ck)

Web based online anti viruses are used heavily for scanning malware files and providing the resultant output. There are number of online service providers which perform inline scanning of uploaded malware executables by the normal user or the victims. This process is based on the hierarchical functions and different steps opted to analyze the viruses and other worm activities. The infections occur dynamically when the executable becomes active in the environment. Everything is automated in this process as servers residing at the backend scan the executable and sent the information to other third party servers for secondary analysis or updating their record directly. That’s how the normal functioning of free online malware scanner works.

Penetration Testing versus Source Code Review

// April 4th, 2010 // No Comments » // White papers

Author: Nikhil Wagholikar

Within the domain of application security assessments, there are multiple approaches that can be considered. The most common ones are black-box penetration testing, application design review and source code reviews……

Spam – The Evolution

// May 8th, 2009 // No Comments » // White papers

This paper discusses the evolution of spam and how spammers operate in the wild. It also talks about the details of various AntiSpam techniques used to stop spam and how spammers target each technique for bypassing the AntiSpam servers.

Author: Aseem Jakhar

Download

Spiffy Spyware Stuff

// May 7th, 2009 // No Comments » // White papers

An increasing number of shareware softwares today come with spyware programs, programs that collect browsing habits of users and other information and periodically report them to remote host. In this paper, we discuss the use of network based signatures for detecting spywares. We present a survey of commonly found spywares and their working. We also propose a set of basic network signatures and demonstrate that most of the commonly found spywares satisfy them.

Author: Tushar Dalvi and Nilesh Dalvi

Download

Legiment Techniques of IDS/IPS Evasion

// May 7th, 2009 // No Comments » // White papers

There are many classical evasion techniques for IPS/IDS systems. They mainly exploit Network layer limitations of IPS/IDS. As a result IPS/IDS have grown stronger at network level to address these evasion techniques, but the IDS/IPS are still weak at Application Layers Legiment techniques encourage you to create more and newer evasion techniques in various applications to bypass and at the end improve the Security Systems.

Author: Ajit Hatti

Download