R-fx Networks

 Linux Software & Blog

Follow me on TwitterRSS Feeds

  • Home
  • Development
  • HowTo
  • My Blog
  • Projects
    • Advanced Policy Firewall
    • Brute Force Detection
    • Incremental rsync
    • Linux Environment Security
    • Linux Malware Detect
    • Linux Socket Monitor
    • Network Socket Inode Validation
    • Process Resource Monitor
    • System Integrity Monitor
    • System Priority
  • About Us
    • Donation Roll
    • Site Map

Facebook Inbox Message Disclosure Vulnerability

Jun 23rd

Posted in My Blog

No comments

Title: Facebook Inbox Message Disclosure Vulnerability Published: June 24th 2010 Credit: Ryan MacDonald Severity: Information/Privacy Disclosure Vulnerable: Facebook Messaging System BigPipe Performance Pipelining Summary: A vulnerability exists in facebooks messaging system that allows an attacker to view the addressed users, subject and inbox preview text (120 characters) of message contents for recently sent/received messages (last 6) on a users account. Technical Details: BigPipe Pipeling java script code embedded into the source code of ALL PAGES under the “messages” section on facebook, preloads message data that can be arbitrarily read through malicious client side java script or other client side objects. The offending java script specifically is the More >

disclosure, facebook, vulnerability

rfxn.com In Numbers

May 27th

Posted in Development

No comments

Yup, nothing to see here except numbers…

2,018: Downloads of the newest project, Linux Malware Detect, month to date. 2,294: Signatures for Linux Malware Detect. 6,207: Downloads for all projects for the month to date. 14,176: Google results with link backs to rfxn.com or related domains (i.e: r-fx.org, rfxn.org etc..). 30,061: Active APF installations relative to unique IP’s fetching the reserved.networks file daily. 70,826: Project downloads for the last 12 months, May 2009 – April 2010. 133,931: Total visitor session to rfxn.com, month to date. 258,154: The number of web sites protected by APF (passed unique install IP’s to domainsbyip.com). 1,231,604: Total hits to rfxn.com, month to date.

More >
apf, projects

Linux Malware Detect v1.3.6: Loose Ends

May 24th

Posted in Development

No comments

In LMD 1.3.3 there was allot of changes, 29 to be exact, that made LMD much more robust and especially the monitoring component, much more usable. If that release was about making good things better, then this release is about bringing loose ends together. I spent a couple of days running LMD through its paces along with having many people help me test it and during that process, we brought allot of little things to the surface that needed fixing or revising.

In total, there has been 31 changes, fixes or new additions to LMD since that 1.3.3 release on the More >

bugs, linux, lmd, malware, projects

Let The Rewrites Begin: New Life For PRM

May 24th

Posted in Development

No comments

In my last post, I reflected on the last 7-8 years of projects here at rfxn.com, in doing so I also dug up some statistics on project downloads. I not only did this for my own curiosity but to prioritize the mile long to do list I have for the projects, based on downloads. One of the revealing things was just exactly what people are downloading, in particular that projects like LES , PRM & SIM are still very popular download destinations on the site.

Although a new incarnation of APF & BFD are on the agenda, I thought I would More >

apf, bsd, linux, prm, projects

The Test Of Time: 7 Years & Counting…

May 17th

Posted in My Blog

2 comments

Today I woke up and was in a weird mood, I started to take stock of some thing while at the same time cleaning out the rfxn.com projects and downloads repo (thats a whole other story in itself). In doing so, I realized just how long I have been doing this, it sometimes gets past me just how much time has gone by since my first projects went up.

In November of 2002 I put out the first public version of System Integrity Monitor over at the then rackshack community forums, at a time when Cobalt Raq’s and bargain basement More >

apf, projects

Linux Malware Detect v1.3.3: Making good things better

May 15th

Posted in Development

1 comment

This morning I have put out LMD v1.3.3, this is on the back of two other successive releases in recent days that improved LMD in many areas, along with correcting some bugs that were graciously reported by those helping to break-in the project. I have also listened to feedback and revised a number of features along with completely redoing how the inotify monitoring operates, to provide a much more robust model for real-time file monitoring.

I am also happy to say that people are embracing the use of the -c|–checkout option to send me malware that is not currently detected, which More >

lmd, malware, projects, upgrade
« First...«34567»...Last »
    • Recent comments
    • Popular posts
    • Archives
    • Tags
    AIDE aoe apache apf arin atf backup bfd bogon bsd bugs centos data data recovery disclosure facebook ids incremental ips linux lmd malware network nginx prm projects r1soft raid rsync snort ssh upgrade vulnerability
    • November 2011 (1)
    • October 2011 (1)
    • April 2011 (3)
    • March 2011 (4)
    • February 2011 (1)
    • November 2010 (4)
    • September 2010 (1)
    • August 2010 (3)
    • July 2010 (4)
    • June 2010 (3)
    • May 2010 (12)
    • October 2009 (3)
    • June 2009 (1)
    • April 2009 (1)
    • March 2009 (2)
    • Upgrade CentOS 4.8 to 5.x (32bit) (47)
    • Linux Malware Detectection (11)
    • Linux Malware Detect: 2 Years Strong (10)
    • Happy Birthday APF: 8 Years Strong (7)
    • Nginx: Caching Proxy (7)
    • LMD: One Year Later (7)
    • Data Integrity: AIDE for Host Based Intrusion Detection (5)
    • ATA Over Ethernet: As an Alternative (5)
    • BFD 1.4: Important Security Fix (4)
    • Better Late Than Never: Linux Malware Detect 1.3 (3)
    • Mikkie: As for the problem with Modsec 2.7, it seems this can be workaround by appending an unused Action...
    • Mikkie: Maldet has been awesome so far, and we have been using it together with Modsecurity. However,...
    • Ryan M.: maldet -c /path/to/file
    • Awais Zaib: How do i send malicious script signature to you that is not detected by maldet ?
    • Ryan M.: In the file /usr/local/maldetect/internals.conf, change the line that...
    • Glenn: I've run into a small problem like I can see many others have. When running: maldet -m...
    • james o: Thanks for an awesome malware detection solution!
    • Brandon: Hi Ryan, When running maldet in ionotify mode, it writes an empty file named "0" in the directory...
  • Donation Roll



    2/22/2013 Senol ERDOGAN $5
    2/13/2013 Steve Thompson $10
    2/12/2013 Conor Moran $50
    2/11/2013 Hennings Bitsch $30
    2/8/2013 Viewdale Holdings $50
    More...
  • RSS LMD Malware Updates

    • gzbase64.inject.unclassed.697.MD5
      Wed, 22 May 2013 18:43:19 UTC
    • php.cmdshell.mic22.4256.MD5
      Wed, 22 May 2013 18:43:19 UTC
    • gzbase64.inject.unclassed.967.MD5
      Wed, 22 May 2013 18:43:19 UTC
    • php.ircbot.pbot.7876.MD5
      Wed, 22 May 2013 18:43:18 UTC
    • php.ircbot.InsideTeam.6995.MD5
      Wed, 22 May 2013 18:43:16 UTC
    • php.exe.globals.5494.MD5
      Wed, 22 May 2013 18:43:14 UTC
    • php.dbscan.0813.5239.MD5
      Wed, 22 May 2013 18:43:13 UTC
    • php.injector.genol.6298.MD5
      Wed, 22 May 2013 18:43:13 UTC
    • php.cmdshell.mic22.4324.MD5
      Wed, 22 May 2013 18:43:13 UTC
    • php.cmdshell.mic22.4290.MD5
      Wed, 22 May 2013 18:43:11 UTC
Mystique theme by digitalnature | Powered by WordPress
RSS Feeds XHTML 1.1 Top