* You are viewing the archive for the ‘Linux’ Category

Apache Range header vulnerability script

I wrote an upgraded variant of the Apache killer script propagated on Full Disclosure capable of HTTPS requests. Also, other than its descendant, it can follow a server’s initial response for redirection which the original script interprets as the server not being vulnerable.

Script is available here: Apache Vulnerability Check (185)

This script merely checks for vulnarabilities but will not exploit them.

SSH authentication using a client certificate

Strong passwords are a necessity when it comes to securing almost anything. This article shows how you can go that extra mile to securing access to an OpenSSH enabled server using not passwords but by flashing a badge… Continue Reading

Intel 82579V Gigabit Ethernet Driver for Debian Squeeze

To those trying to install the new Debian Squeeze distribution and being owners of an Intel 82579V Gigabit Ethernet adaptor to which appropriate driver files are missing from the installation disks (I tried netinst and KDE-disk1), I present a compiled kernel module for AMD64. Continue Reading