<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Security Blog &#187; General Hacking</title>
	<atom:link href="http://www.insecure.ro/category/general-hacking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.insecure.ro</link>
	<description>It's all about Security - Security Blog -</description>
	<lastBuildDate>Mon, 24 May 2010 08:30:50 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.0</generator>
		<item>
		<title>Jarlsberg &#8211; Web Application Exploits and Defenses</title>
		<link>http://www.insecure.ro/news/jarlsberg-web-application-exploits-and-defenses/</link>
		<comments>http://www.insecure.ro/news/jarlsberg-web-application-exploits-and-defenses/#comments</comments>
		<pubDate>Sun, 09 May 2010 21:05:55 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[General News]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Security Software]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[Exploits]]></category>
		<category><![CDATA[hackers]]></category>
		<category><![CDATA[hacking games]]></category>
		<category><![CDATA[how to hack]]></category>
		<category><![CDATA[learn to hack]]></category>
		<category><![CDATA[security tool]]></category>
		<category><![CDATA[vulnerabilitati]]></category>
		<category><![CDATA[vulnerbilities]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=329</guid>
		<description><![CDATA[Jarlsber A aparut un nou tool, creat chiar de &#8216;marele&#8217; Google. Ce ofera acest tool?! Learn how hackers find security vulnerabilities! Learn how hackers exploit web applications! Learn how to stop them! This codelab shows how web application vulnerabilities can be exploited and how to defend against these attacks. The best way to learn things [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Jarlsber</strong></p>
<p>A aparut un nou tool, creat chiar de &#8216;marele&#8217; Google.<br />
Ce ofera acest tool?!</p>
<p><code><em>Learn how hackers find security vulnerabilities!<br />
Learn how hackers exploit web applications!<br />
Learn how to stop them! </p>
<p>This codelab shows how web application vulnerabilities can be exploited and how to defend against these attacks. The best way to learn things is by doing, so you'll get a chance to do some real penetration testing, actually exploiting a real application. Specifically, you'll learn the following: </p>
<p>How an application can be attacked using common web security vulnerabilities, like cross-site scripting vulnerabilities (XSS) and cross-site request forgery (XSRF).<br />
How to find, fix, and avoid these common vulnerabilities and other bugs that have a security impact, such as denial-of-service, information disclosure, or remote code execution. </p>
<p>To get the most out of this lab, you should have some familiarity with how a web application works (e.g., general knowledge of HTML, templates, cookies, AJAX, etc.).</code></em></p>
<p>O sa il incerc si eu, dupa licenta, ca deocamdata nu am timp. Daca ati reusit sa il testati voi, va rog dati-va cu parerea, sa stiu daca merita sa il incerc.<br />
Apropo,  <strong>NU</strong> sunt fan Google. </p>
<p><strong>Website: <a href="http://jarlsberg.appspot.com/">http://jarlsberg.appspot.com/</a><br />
Download: <a href="http://jarlsberg.appspot.com/jarlsberg-code.zip">http://jarlsberg.appspot.com/jarlsberg-code.zip</a><br />
</strong></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/news/jarlsberg-web-application-exploits-and-defenses/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>De ce sunt sparte Retelele si cum ?</title>
		<link>http://www.insecure.ro/general-hacking/de-ce-sunt-sparte-retelele-si-cum/</link>
		<comments>http://www.insecure.ro/general-hacking/de-ce-sunt-sparte-retelele-si-cum/#comments</comments>
		<pubDate>Sat, 08 May 2010 12:14:48 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[hacking networks]]></category>
		<category><![CDATA[how to hack networks]]></category>
		<category><![CDATA[security networks]]></category>
		<category><![CDATA[spart retele]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=322</guid>
		<description><![CDATA[De ce ? Am reusit sa identific 5 motive &#8220;mari&#8221; pentru care hackerii sparg retele in ziua de azi: 1. Retele contin sistem ce au in dotare date sensibiel(parole, carti de credit, informatii confidentiale etc). 2. Asigura facilitati de comunicare pentru a muta datele furate prin lume(pot muta carti de credit prin mai multe retele). [...]]]></description>
			<content:encoded><![CDATA[<p><strong>De ce ?</strong> </p>
<p>Am reusit sa identific 5 motive &#8220;mari&#8221; pentru care <strong>hackerii</strong> sparg retele in ziua de azi:</p>
<p>1. Retele contin sistem ce au in dotare date sensibiel(parole, carti de credit, informatii confidentiale etc).<br />
2. Asigura facilitati de comunicare pentru a muta datele furate prin lume(pot muta carti de credit prin mai multe retele).<br />
3. Sistemele din retea sunt folosite pentru a cripta datele furate, inainte de a fi mutate prin lume.<br />
4. Sistemele din retea sunt folosite pentru a stoca datele furate.<br />
5. Sistemele sunt folosite pentru creare de troieni, si pentru a dat drumul la viermi.</p>
<p><strong>Cum ? </strong></p>
<p>1. Research general<br />
2. <strong>Social engineering</strong>(pretext calls, forum-uri etc)<br />
3. <strong>Scanning</strong><br />
4. User ID si <strong>password breaking</strong><br />
5. <strong>Exploit</strong>-uri de sistem<br />
6. Interceptarea comunicatiilor (<strong>man-in-the-middle attacks</strong>)<br />
7. Furt, mita si santaj</p>
<p>Mai stiti si alte motive sau moduri ?! </p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/general-hacking/de-ce-sunt-sparte-retelele-si-cum/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>How to Steal a Botnet and What Can Happen When You Do</title>
		<link>http://www.insecure.ro/general-hacking/how-to-steal-a-botnet-and-what-can-happen-when-you-do/</link>
		<comments>http://www.insecure.ro/general-hacking/how-to-steal-a-botnet-and-what-can-happen-when-you-do/#comments</comments>
		<pubDate>Sat, 23 Jan 2010 21:24:55 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[botnets]]></category>
		<category><![CDATA[hacking botnet]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=312</guid>
		<description><![CDATA[Un video foarte buna www.youtube.com/watch?v=2GdqoQJa6r4]]></description>
			<content:encoded><![CDATA[<p>Un video foarte buna<br />
<span class="youtube">
<object width="425" height="355">
<param name="movie" value="http://www.youtube.com/v/2GdqoQJa6r4&amp;rel=1&amp;color1=d6d6d6&amp;color2=f0f0f0&amp;border=0&amp;fs=1&amp;hl=en&amp;autoplay=0&amp;showinfo=0&amp;iv_load_policy=3&amp;showsearch=0&#038;feature=player_embedded" />
<param name="allowFullScreen" value="true" />
<embed wmode="transparent" src="http://www.youtube.com/v/2GdqoQJa6r4&amp;rel=1&amp;color1=d6d6d6&amp;color2=f0f0f0&amp;border=0&amp;fs=1&amp;hl=en&amp;autoplay=0&amp;showinfo=0&amp;iv_load_policy=3&amp;showsearch=0&#038;feature=player_embedded" type="application/x-shockwave-flash" allowfullscreen="true" width="425" height="355"></embed>
<param name="wmode" value="transparent" />
</object>
</span><p><a href="http://www.youtube.com/watch?v=2GdqoQJa6r4">www.youtube.com/watch?v=2GdqoQJa6r4</a></p></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/general-hacking/how-to-steal-a-botnet-and-what-can-happen-when-you-do/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hacking Video – Series – 6</title>
		<link>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-5-2/</link>
		<comments>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-5-2/#comments</comments>
		<pubDate>Mon, 04 Jan 2010 15:53:13 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Social Engineering]]></category>
		<category><![CDATA[Web Hacking]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[hacking video]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=306</guid>
		<description><![CDATA[]]></description>
			<content:encoded><![CDATA[<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,0,0" width="498" height="309" id="eplayer" align="middle"><param name="allowScriptAccess" value="sameDomain" /><param name="allowFullScreen" value="true" /><param name="movie" value="http://stophcommerce.com/eplayer.swf?code=06" /><param name="quality" value="high" /><param name="bgcolor" value="#000000" /><embed src="http://stophcommerce.com/eplayer.swf?code=06" quality="high" bgcolor="#000000" width="498" height="309" name="eplayer" align="middle" allowScriptAccess="sameDomain" allowFullScreen="true" type="application/x-shockwave-flash" pluginspage="http://www.adobe.com/go/getflashplayer" ></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-5-2/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Hacking Video – Series – 5</title>
		<link>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-5/</link>
		<comments>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-5/#comments</comments>
		<pubDate>Mon, 04 Jan 2010 15:52:13 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Social Engineering]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[hacking video]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=302</guid>
		<description><![CDATA[]]></description>
			<content:encoded><![CDATA[<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,0,0" width="498" height="309" id="eplayer" align="middle"><param name="allowScriptAccess" value="sameDomain" /><param name="allowFullScreen" value="true" /><param name="movie" value="http://stophcommerce.com/eplayer.swf?code=05" /><param name="quality" value="high" /><param name="bgcolor" value="#000000" /><embed src="http://stophcommerce.com/eplayer.swf?code=05" quality="high" bgcolor="#000000" width="498" height="309" name="eplayer" align="middle" allowScriptAccess="sameDomain" allowFullScreen="true" type="application/x-shockwave-flash" pluginspage="http://www.adobe.com/go/getflashplayer" ></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-5/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hacking Video – Series – 4</title>
		<link>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-4/</link>
		<comments>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-4/#comments</comments>
		<pubDate>Mon, 04 Jan 2010 15:49:08 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Social Engineering]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[hacking video]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=298</guid>
		<description><![CDATA[]]></description>
			<content:encoded><![CDATA[<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,0,0" width="498" height="309" id="eplayer" align="middle"><param name="allowScriptAccess" value="sameDomain" /><param name="allowFullScreen" value="true" /><param name="movie" value="http://stophcommerce.com/eplayer.swf?code=04" /><param name="quality" value="high" /><param name="bgcolor" value="#000000" /><embed src="http://stophcommerce.com/eplayer.swf?code=04" quality="high" bgcolor="#000000" width="498" height="309" name="eplayer" align="middle" allowScriptAccess="sameDomain" allowFullScreen="true" type="application/x-shockwave-flash" pluginspage="http://www.adobe.com/go/getflashplayer" ></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/social-engineering/hacking-video-%e2%80%93-series-%e2%80%93-4/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Hacking Video &#8211; Series &#8211; 1</title>
		<link>http://www.insecure.ro/general-hacking/hackinv-video/</link>
		<comments>http://www.insecure.ro/general-hacking/hackinv-video/#comments</comments>
		<pubDate>Fri, 01 Jan 2010 21:58:03 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Wireless Hacking]]></category>
		<category><![CDATA[hacking]]></category>
		<category><![CDATA[hacking video]]></category>
		<category><![CDATA[hcommerce]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=291</guid>
		<description><![CDATA[Am gasit pe undeva o serie despre &#8216;hacking&#8217;. Mi s-a parut interesanta si am spus sa incep sa le postez pe rand.]]></description>
			<content:encoded><![CDATA[<p>Am gasit pe undeva o serie despre &#8216;hacking&#8217;. Mi s-a parut interesanta si am spus sa incep sa le postez pe rand. </p>
<p><object classid="clsid:d27cdb6e-ae6d-11cf-96b8-444553540000" codebase="http://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab#version=9,0,0,0" width="498" height="309" id="eplayer" align="middle"><param name="allowScriptAccess" value="sameDomain" /><param name="allowFullScreen" value="true" /><param name="movie" value="http://stophcommerce.com/eplayer.swf?code=01" /><param name="quality" value="high" /><param name="bgcolor" value="#000000" /><embed src="http://stophcommerce.com/eplayer.swf?code=01" quality="high" bgcolor="#000000" width="498" height="309" name="eplayer" align="middle" allowScriptAccess="sameDomain" allowFullScreen="true" type="application/x-shockwave-flash" pluginspage="http://www.adobe.com/go/getflashplayer" ></embed></object></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/general-hacking/hackinv-video/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Metasploit 3.3 a fost LANSAT!</title>
		<link>http://www.insecure.ro/news/metasploit-3-3-a-fost-lansat/</link>
		<comments>http://www.insecure.ro/news/metasploit-3-3-a-fost-lansat/#comments</comments>
		<pubDate>Sat, 05 Dec 2009 13:39:43 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[Exploits]]></category>
		<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[General News]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Linux Hacking]]></category>
		<category><![CDATA[Security Software]]></category>
		<category><![CDATA[Windows Hacking]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=236</guid>
		<description><![CDATA[S-a lansat versiunea 3.3 Metasploit!(2009-11-30) Ce este Metasploit ? Metasploit este o unealta open source de testare a vulnerabilitatii unui Server/PC. Are exploit-uri predefinite, si este o unealta de vis pentru orice &#8216;script-kiddie&#8217;. Mai jos am pus o descriere in engleza. The Metasploit Framework is a development platform for creating security tools and exploits. The [...]]]></description>
			<content:encoded><![CDATA[<p>S-a lansat versiunea 3.3 <strong>Metasploit</strong>!(2009-11-30)<br />
<strong>Ce este Metasploit ?</strong></p>
<p>Metasploit este o unealta open source de testare a vulnerabilitatii unui Server/PC. Are exploit-uri predefinite, si este o unealta de vis pentru orice &#8216;script-kiddie&#8217;. </p>
<p>Mai jos am pus o descriere in engleza.</p>
<p><em>The Metasploit Framework is a development platform for creating security tools and exploits. The framework is used by network security professionals to perform penetration tests, system administrators to verify patch installations, product vendors to perform regression testing, and security researchers world-wide. The framework is written in the Ruby programming language and includes components written in C and assembler.</em></p>
<p>Metasploit v3.3 il puteti gasi aici:</p>
<p>Windows – <strong><a href="http://www.metasploit.com/releases/framework-3.3.exe">Metasploit-3.3.exe</a></strong><br />
Linux – <strong><a href="http://www.metasploit.com/releases/framework-3.3.tar.bz2">Metasploit-3.3.tar.bz2</a></strong></p>
<p>Detalii cu functionalitati: <strong><a href="http://www.metasploit.com/redmine/projects/framework/wiki/Release_Notes_33">Metasploit Release Notes</a></strong><br />
Homepage: <strong><a href="http://www.metasploit.com/">Metasploit.com</a></strong><br />
<a href='http://secure.hostgator.com/cgi-bin/affiliates/clickthru.cgi?id=NullCode' target='_blank'><img src='http://www.hostgator.com/affiliates/banners/468x60e.gif' /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/news/metasploit-3-3-a-fost-lansat/feed/</wfw:commentRss>
		<slash:comments>2</slash:comments>
		</item>
		<item>
		<title>Cain &amp; Abel</title>
		<link>http://www.insecure.ro/news/cain-abel/</link>
		<comments>http://www.insecure.ro/news/cain-abel/#comments</comments>
		<pubDate>Thu, 12 Nov 2009 19:24:06 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[General News]]></category>
		<category><![CDATA[Hacking Tools]]></category>
		<category><![CDATA[Network Hacking]]></category>
		<category><![CDATA[Password Cracking]]></category>
		<category><![CDATA[Security Software]]></category>
		<category><![CDATA[Windows Hacking]]></category>
		<category><![CDATA[cain & abel]]></category>
		<category><![CDATA[cain & abel hacking]]></category>
		<category><![CDATA[cracking parole]]></category>
		<category><![CDATA[hacking parole]]></category>
		<category><![CDATA[password hacking]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=231</guid>
		<description><![CDATA[Ce este Cain &#038; Abel ? Am pus aici o descriere completa luata de pe oxit.it Cain &#038; Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of several kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Ce este Cain &#038; Abel ?</strong></p>
<p>Am pus aici o descriere completa luata de pe oxit.it<br />
<code><br />
Cain &#038; Abel is a password recovery tool for Microsoft Operating Systems. It allows easy recovery of several kind of passwords by sniffing the network, cracking encrypted passwords using Dictionary, Brute-Force and Cryptanalysis attacks, recording VoIP conversations, decoding scrambled passwords, recovering wireless network keys, revealing password boxes, uncovering cached passwords and analyzing routing protocols. </p>
<p>The program does not exploit any software vulnerabilities or bugs that could not be fixed with little effort. It covers some security aspects/weakness intrinsic of protocol's standards, authentication methods and caching mechanisms; its main purpose is the simplified recovery of passwords and credentials from various sources, however it also ships some "non standard" utilities for Microsoft Windows users.</p>
<p>Cain &#038; Abel has been developed in the hope that it will be useful for network administrators, teachers, security consultants/professionals, forensic staff, security software vendors, professional penetration testers and everyone else that plans to use it for ethical reasons. The author will not help or support any illegal activity done with this program.</code></p>
<p><strong>De ce am adus aminte de Cain &#038; Abel ?</strong></p>
<p>Pai a aparut versiunea noua de Cain &#038; Abel !<br />
<strong><br />
Ce s-a schimbat:  </strong></p>
<p><code>[!] Added Windows Firewall status detection on startup.<br />
[!] Added UAC compatibility in Windows Vista/Seven.<br />
[!] Winpcap library upgrade to version 4.1.1.</code></p>
<p>Download here: <strong><a href="http://www.oxid.it/downloads/ca_setup.exe" target = _blank>Cain &#038; Abel </a></strong><br />
Homepage : <strong><a href="http://www.oxid.it/cain.html" target = _blank>here</a></strong><br />
Tutoriale Cain &#038; Abel (youtube) : <strong><a href="http://www.youtube.com/results?search_type=search_playlists&#038;search_query=cain+%26+abel+tutorial&#038;uni=1" target = _blank>Link</a><br />
</strong><br />
<a href='http://secure.hostgator.com/cgi-bin/affiliates/clickthru.cgi?id=NullCode' target='_blank'><img src='http://www.hostgator.com/affiliates/banners/468x60e.gif' /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/news/cain-abel/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
		<item>
		<title>Flawfinder – Tool de Audit al Codului Sursa</title>
		<link>http://www.insecure.ro/general-hacking/flawfinder-%e2%80%93-tool-de-audit-al-codului-sursa/</link>
		<comments>http://www.insecure.ro/general-hacking/flawfinder-%e2%80%93-tool-de-audit-al-codului-sursa/#comments</comments>
		<pubDate>Sat, 26 Sep 2009 09:13:37 +0000</pubDate>
		<dc:creator>inSecure</dc:creator>
				<category><![CDATA[General Hacking]]></category>
		<category><![CDATA[Security Software]]></category>
		<category><![CDATA[flawfinder]]></category>

		<guid isPermaLink="false">http://www.insecure.ro/?p=214</guid>
		<description><![CDATA[Flawfinder este un program ce examnieaza un cod sursa si genereaza rapoarte.Acestea sunt categorisite dupa nivelul de risc. Este usor de folosit, tot ce trebuie sa faci dupa instalare este: flawfinder directorul_cu_codul_sursa Cum functioneaza? Flawfinder works by using a built-in database of C/C++ functions with well-known problems, such as buffer overflow risks (e.g., strcpy(), strcat(), [...]]]></description>
			<content:encoded><![CDATA[<p><strong>Flawfinder</strong> este un program ce examnieaza un cod sursa si genereaza rapoarte.Acestea sunt categorisite dupa nivelul de risc.<br />
Este usor de folosit, tot ce trebuie sa faci dupa instalare este:</p>
<p><em><code><strong>flawfinder</strong> directorul_cu_codul_sursa</code></em></p>
<p><strong>Cum functioneaza?</strong></p>
<blockquote><p>Flawfinder works by using a built-in database of C/C++ functions with well-known problems, such as buffer overflow risks (e.g., strcpy(), strcat(), gets(), sprintf(), and the scanf() family), format string problems ([v][f]printf(), [v]snprintf(), and syslog()), race conditions (such as access(), chown(), chgrp(), chmod(), tmpfile(), tmpnam(), tempnam(), and mktemp()), potential shell metacharacter dangers (most of the exec() family, system(), popen()), and poor random number acquisition (such as random()). The good thing is that you don’t have to create this database – it comes with the tool.<br />
Flawfinder then takes the source code text, and matches the source code text against those names, while ignoring text inside comments and strings (except for flawfinder directives). Flawfinder also knows about gettext (a common library for internationalized programs), and will treat constant strings passed through gettext as though they were constant strings; this reduces the number of false hits in internationalized programs. .</p></blockquote>
<p>Link-ul de download:<br />
<strong><a href="http://www.dwheeler.com/flawfinder/flawfinder-1.27.tar.gz">flawfinder-1.27.tar.gz</a></strong><br />
<a href='http://secure.hostgator.com/cgi-bin/affiliates/clickthru.cgi?id=NullCode' target='_blank'><img src='http://www.hostgator.com/affiliates/banners/468x60e.gif' /></a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.insecure.ro/general-hacking/flawfinder-%e2%80%93-tool-de-audit-al-codului-sursa/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
