this page is about an individual who calls himself poplix
    p lives in venice (italy) and he loves playing with computers. in particular he likes programming, networking and security.
        you can contact him by writing an email: poplix papuasia 0rg pgp


  [ projects ]   [ advisories ]   [ suggestions ]  

thoughts and proposals
12-12-2007 - new tool released
I wrote this tool to discover the router address of an ethernet with no dhcp support...

09-22-2007 - APPLE SUCKS
Safari 3 is out and it's still revealing keychained passwords cause Apple doesn't consider this a vulnerability. So I'd like to outline some ways to steal such informations. In the following examples we'll steal gmail password:
- If you have phisical acces to the system you can use this applescript
- If you can execute AppleScripts on target machine you can use this script

09-22-2007 - STACK FETISHISM
There is another way to waste time: the manual conversion of some poetry to pushl calls.
Here is an example of an italian poetry converted to an assembly program. I felt more relaxed after that.

05-14-2007 - THE HUMAN SENSES
Traditionally the senses are considered to be five in number: sight, hearing, smell, taste, and touch.
I'm wondering why the equilibrium is not considered a sense. Like the other five senses the equilibrium has an organ (the labyrinth) that produces different outputs depending on the external ambient conditions and the state of the subject. The equilibrium let us feel the external pressure, the speed, the acceleration, and the position of our barycenter and i like to consider it an active part of our perception system.

comments are welcome
...
..zzz

projects ecc..
here is a collection of recent, old and very old projects.
 
tripp is a utility to rewrite incoming and outgoing IP packets.
Since it can rewrite both headers and payload, it can be used to configure the tcp/ip stack behavior in order to perform various tasks mainly intended for network tests, simulations and development. [...]
DIM (Dirty Instant Messenger) is a php-based instant messenger that can be easly embedded in websites. It uses MySQL to store accountes and messages and a modern browser to render its interface.
gwcheck.c is a simple program that checks if a host in an ethernet network is a gateway to internet.
The check is done by sending a tcp syn to an internet host with the mac address of the host to check. It can take a single ip address or a file containing a list of addresses that can be easly generated with nmap arp-ping scan.
It may be considered a gateway scanner...
arpflood.c is a small ethernet arp flooder.
it has been written as proof of concept for CVE-2006-6538
p0fspoof.txt A short paper discussing how to use the openbsd-pf's builtin passive os fingerprinter and a simple spoofing tool to hide open tcp ports.
authsyn.tgz a syn packet replayer that rewrites tcp/ip headers to match against p0f signatures and bypass the openbsd-pf's os fingerprinter rules.
written as proof of concept for p0fspoof.txt
payload-rewrite_exploit.txt small whitepaper discussing how to use payload rewriting to exploit remote buffer overflow vulnerabilities
udp-scan-ipid-predict.txt just another abuse of the well-known ip-id prediction vulnerability to discover filtered udp ports.
it's a (relatively) old nmap-devel post. a proof of concept is attached to the document.
fk_html a perl script that act as a proxy server for pop3 connections and it's able to remove html and scripts from messages and add ssl support for non-ssl clients.
this program is obsolete and it's listed here for historical reasons only. it should not be used!
srnap.c is a napster scanner. it has been written when i was a very young guy and it's listed here cause it's the first program i released. it should not be used as it can contain an enormous amount of security issues

some advisories
i'm not a bug hunter but i like to try to audit some products before using'em.
strage but true, i had a piece of success
 
04-15-2008 Parallels Virtuozzo Containers VZPP Interface Change Pass CSRF Vulnerability     [NO-CVE]
               Parallels Virtuozzo Containers VZPP Interface File Manger CSRF Vulnerability     [NO-CVE]
12-22-2007 Pdflib long filename multiple bufferoverflows     [ CVE-2007-6561 ]
05-14-2007 Apple Safari Unspecified Local Vulnerability     [ CVE-2007-2580 ]
               Apple Safari on MacOSX may reveal user's saved passwords
               bugtraq discussion about this thread
02-19-2007 Apple iTunes XML Parsing Remote Denial of Service Vulnerability     [ CVE-2007-1008 ]
               code execution seems confirmed by symantec... (this is an article about this vuln)
02-02-2007 Chicken of the VNC Remote DoS Vulnerability     [ CVE-2007-0756 ]
12-11-2006 D-Link DWL-2000AP+ ARP Handling Multiple Remote DoS Vulnerabilities     [ CVE-2006-6538 ]
11-02-2006 Iodine DNS Response Stack Buffer Overflow Vulnerability     [ CVE-2006-5781 ]
10-29-2006 Easy NotesManager Multiple SQL Injection Vulnerabilities     [ CVE-2006-5662 ]

suggestions
securityfocus.com, packetstormsecurity.org, milw0rm.org, freshmeat.net, papuasia.org
openvpn
The Music Of The Primes
stdio.h
.....to be continued