R-fx Networks

 Linux Software & Blog

Follow me on TwitterRSS Feeds

  • Home
  • Development
  • HowTo
  • My Blog
  • Projects
    • Advanced Policy Firewall
    • Brute Force Detection
    • Incremental rsync
    • Linux Environment Security
    • Linux Malware Detect
    • Linux Socket Monitor
    • Network Socket Inode Validation
    • Process Resource Monitor
    • System Integrity Monitor
    • System Priority
  • About Us
    • Donation Roll
    • Site Map

Facebook Inbox Message Disclosure Vulnerability

Jun 23rd

Posted in My Blog

No comments

Title: Facebook Inbox Message Disclosure Vulnerability Published: June 24th 2010 Credit: Ryan MacDonald Severity: Information/Privacy Disclosure Vulnerable: Facebook Messaging System BigPipe Performance Pipelining Summary: A vulnerability exists in facebooks messaging system that allows an attacker to view the addressed users, subject and inbox preview text (120 characters) of message contents for recently sent/received messages (last 6) on a users account. Technical Details: BigPipe Pipeling java script code embedded into the source code of ALL PAGES under the “messages” section on facebook, preloads message data that can be arbitrarily read through malicious client side java script or other client side objects. The offending java script specifically is the More >

disclosure, facebook, vulnerability

rfxn.com In Numbers

May 27th

Posted in Development

No comments

Yup, nothing to see here except numbers…

2,018: Downloads of the newest project, Linux Malware Detect, month to date. 2,294: Signatures for Linux Malware Detect. 6,207: Downloads for all projects for the month to date. 14,176: Google results with link backs to rfxn.com or related domains (i.e: r-fx.org, rfxn.org etc..). 30,061: Active APF installations relative to unique IP’s fetching the reserved.networks file daily. 70,826: Project downloads for the last 12 months, May 2009 – April 2010. 133,931: Total visitor session to rfxn.com, month to date. 258,154: The number of web sites protected by APF (passed unique install IP’s to domainsbyip.com). 1,231,604: Total hits to rfxn.com, month to date.

More >
apf, projects

Linux Malware Detect v1.3.6: Loose Ends

May 24th

Posted in Development

No comments

In LMD 1.3.3 there was allot of changes, 29 to be exact, that made LMD much more robust and especially the monitoring component, much more usable. If that release was about making good things better, then this release is about bringing loose ends together. I spent a couple of days running LMD through its paces along with having many people help me test it and during that process, we brought allot of little things to the surface that needed fixing or revising.

In total, there has been 31 changes, fixes or new additions to LMD since that 1.3.3 release on the More >

bugs, linux, lmd, malware, projects

Let The Rewrites Begin: New Life For PRM

May 24th

Posted in Development

No comments

In my last post, I reflected on the last 7-8 years of projects here at rfxn.com, in doing so I also dug up some statistics on project downloads. I not only did this for my own curiosity but to prioritize the mile long to do list I have for the projects, based on downloads. One of the revealing things was just exactly what people are downloading, in particular that projects like LES , PRM & SIM are still very popular download destinations on the site.

Although a new incarnation of APF & BFD are on the agenda, I thought I would More >

apf, bsd, linux, prm, projects

The Test Of Time: 7 Years & Counting…

May 17th

Posted in My Blog

2 comments

Today I woke up and was in a weird mood, I started to take stock of some thing while at the same time cleaning out the rfxn.com projects and downloads repo (thats a whole other story in itself). In doing so, I realized just how long I have been doing this, it sometimes gets past me just how much time has gone by since my first projects went up.

In November of 2002 I put out the first public version of System Integrity Monitor over at the then rackshack community forums, at a time when Cobalt Raq’s and bargain basement More >

apf, projects

Linux Malware Detect v1.3.3: Making good things better

May 15th

Posted in Development

1 comment

This morning I have put out LMD v1.3.3, this is on the back of two other successive releases in recent days that improved LMD in many areas, along with correcting some bugs that were graciously reported by those helping to break-in the project. I have also listened to feedback and revised a number of features along with completely redoing how the inotify monitoring operates, to provide a much more robust model for real-time file monitoring.

I am also happy to say that people are embracing the use of the -c|–checkout option to send me malware that is not currently detected, which More >

lmd, malware, projects, upgrade
« First...«34567»...Last »
    • Recent comments
    • Popular posts
    • Archives
    • Tags
    AIDE aoe apache apf arin atf backup bfd bogon bsd bugs centos data data recovery disclosure facebook ids incremental ips linux lmd malware network nginx prm projects r1soft raid rsync snort ssh upgrade vulnerability
    • November 2011 (1)
    • October 2011 (1)
    • April 2011 (3)
    • March 2011 (4)
    • February 2011 (1)
    • November 2010 (4)
    • September 2010 (1)
    • August 2010 (3)
    • July 2010 (4)
    • June 2010 (3)
    • May 2010 (12)
    • October 2009 (3)
    • June 2009 (1)
    • April 2009 (1)
    • March 2009 (2)
    • Upgrade CentOS 4.8 to 5.x (32bit) (39)
    • Linux Malware Detectection (11)
    • Nginx: Caching Proxy (7)
    • LMD: One Year Later (7)
    • Happy Birthday APF: 8 Years Strong (7)
    • Linux Malware Detect: 2 Years Strong (7)
    • Data Integrity: AIDE for Host Based Intrusion Detection (5)
    • ATA Over Ethernet: As an Alternative (5)
    • BFD 1.4: Important Security Fix (4)
    • Better Late Than Never: Linux Malware Detect 1.3 (3)
    • Ryan M.: LMD provides a number of facilities for ignoring false positives including an ignore_paths file...
    • John: Need Help Please - Web hosting account suspended due to false positives from seo.classes.php I...
    • Peter M Abraham: How would a rule look like that checks if a given IP address is still bound to a given interface?...
    • Peter M Abraham: On some servers where their DNS is shaky at start up, APF basically locks up the machine because...
    • Ryan M.: I apologize, rfxn.com was recently moved to a new server and is currently undergoing a backend...
    • Eyal: Thanks for this excellent product! I found a threat that wasn't detected by maldet. I tried to...
    • Christian: Hi Ryan, thanks for working hard on the script :) I'm on Debian Squeeze (64bit) and am...
    • yngens: Hi Ryan and All! Trying PRM for the first time, but already excited by the possibilities it is...
  • Donation Roll



    1/1/2012 SBZ Systems $10
    12/13/2011 Peter Abraham $150
    11/16/2011 2MHost $100
    11/10/2011 Ned Dana $100
    11/04/2011 Green Olive Tree $75
    More...
  • Downloads

     Looking for one of our tools to download?  Check out the Projects page.

     Quick Links: APF | BFD | SIM | IRSYNC | LMD

     Downloads (to date): 943862
     Downloads (month): 1565
  • RSS LMD Malware Updates

    • gzbase64.inject.unclassed.336.MD5
      Mon, 30 Jan 2012 07:02:46 UTC
    • php.ircbot.lolwut.5002.MD5
      Mon, 30 Jan 2012 07:02:44 UTC
    • php.id.albania.4099.MD5
      Mon, 30 Jan 2012 07:02:42 UTC
    • php.ircbot.lolwut.5136.MD5
      Mon, 30 Jan 2012 07:02:39 UTC
    • php.ircbot.lolwut.5180.MD5
      Mon, 30 Jan 2012 07:02:38 UTC
    • php.cmdshell.c100.2270.MD5
      Mon, 30 Jan 2012 07:02:38 UTC
    • php.clamav.shell-8.2102.MD5
      Mon, 30 Jan 2012 07:02:33 UTC
    • php.ircbot.pbot.5889.MD5
      Mon, 30 Jan 2012 07:02:29 UTC
    • php.ircbot.lolwut.4976.MD5
      Mon, 30 Jan 2012 07:02:29 UTC
    • php.ircbot.lolwut.4942.MD5
      Mon, 30 Jan 2012 07:02:28 UTC
Mystique theme by digitalnature | Powered by WordPress
RSS Feeds XHTML 1.1 Top