电脑疯子技术论坛|电脑极客社区

微信扫一扫 分享朋友圈

已有 750 人浏览分享

[Reprinted]Introduction

[复制链接]
750 0
本帖最后由 bek 于 2011-3-23 07:23 编辑
  1.                              ==Phrack Inc.==

  2.                 Volume 0x0e, Issue 0x43, Phile #0x01 of 0x10

  3. |=----------------------------------------------------------------------=|
  4. |=--------------------------=[ Introduction ]=--------------------------=|
  5. |=----------------------------------------------------------------------=|
  6. |=----------------------=[ By The Phrack Staff ]=-----------------------=|
  7. |=----------------------------------------------------------------------=|
  8. |=----------------------=[  November 17, 2010  ]=-----------------------=|
  9. |=----------------------------------------------------------------------=|


  10.         "The greatest trick the Devil ever pulled was convincing
  11.          the world he didn't exist"
  12.                                   --- Verbal Kint


  13.         It's 1.00 a.m., nobody hits this secondary road. Heck, I'm almost
  14. sure half of it doesn't have a line to remind you that you should share it
  15. with upcoming cars. It's raining, but not too hard. I'm going home.

  16.         It's Tuesday. What the hell am I doing out here, half an hour from
  17. home, slowly driving under the rain? It's 1.05 a.m., I know this road, I
  18. know this feeling, I recognize the shivering. I let it flow. Turn off the
  19. music, I want silence.

  20.         It's 2.00 a.m., nobody hits this machine at this time of the day.
  21. Logs track me, but I'll clean them. I know this road, I know this feeling,
  22. I recognize the shivering. Turn on the music, the game is on. I'm sure
  23. someone else is around here, someone else has seen this # before.

  24.         "I'll fuck you if you don't fuck me first, sir". Fair enough, this
  25. is the rule. I'll go to sleep afterwards. I'm meeting some friends and I've
  26. to take a train tomorrow. I'll sleep on the couch of someone I've never
  27. seen before, yet I know him well.

  28.         It's 1.00 a.m., 10 years later. It's a GPG email from the guy that
  29. once offered me a couch. Then another time. I can count the times I've seen
  30. him in person on two hands, but I would overflow a 'short' counting the
  31. words we exchanged. We meet again, thought you disappeared. Things change,
  32. indeed. Life gave us something to lose and we are holding on it. We lost
  33. people, money, opportunities, that's why we hold on. Once a hacker, forever
  34. a hacker, right? Let's finish this code. Let's visit this city.

  35.         It's 2.00 a.m., today. Nothing in this story, in this Intro, is
  36. real. I wasn't there, this is not me. This is just a stream of ASCII
  37. characters. Someone out there pulled a great trick and convinced the world
  38. that security was a cool business. Someone is pulling even greater tricks
  39. and makes money out of his ignorance living on others slightly bigger
  40. ignorance. Somewhere, a crackdown on some kids proves to be necessary to
  41. keep the 'mistery' alive, to keep the bandwagon going. Someone spies on
  42. former fellow friends, 'cause that's worth millions. Everybody is happy and
  43. we slowly fade away. Away, towards a new Underground.

  44.         "I'll fuck you if you don't fuck me first, sir".

  45. If you are shivering, if you have been there, if you feel it, you know what
  46. I mean. PHRACK may die. Groups may die. Things as we know today may die.
  47. The great trick might actually seem to work -- goodbye Underground, welcome
  48. Security Industry. Not too fast.

  49.         "Once a hacker, forever a hacker, right?"

  50.         The Game is on.


  51.                       -----( Phrack Issue #67 )-----


  52. It's with incredible pleasure that we present you our newly released issue:

  53. ______  _     _ ______  _______ _______ _     _      _ _   _______ ______
  54. (_____ \(_)   (_|_____ \(_______|_______|_)   | |   _| U |_(_______|______)
  55. _____) )_______ _____) )_______ _       _____| |  (_     _)______       _  
  56. |  ____/|  ___  |  __  /|  ___  | |     |  _   _)   _| O |_|  ___ \     / )
  57. | |     | |   | | |  \ \| |   | | |_____| |  \ \   (_     _) |___) )   / /  
  58. |_|     |_|   |_|_|   |_|_|   |_|\______)_|   \_)    |_n_| |______/   (_/   

  59.                  - By the community, for the community. -


  60. But wait ... the release date ... it sounds familiar ... OMFG!!!


  61.                                  \\\ ,
  62.                                   \ `|
  63.                                    ) (   .-""-.
  64.                                    | |  /_  {  '.
  65.                                    | | (/ `\   } )
  66.                                    | |  ^/ ^`}   {
  67.                                    \  \ \=  ( {   )
  68.                                     \  \ '-, {   {{
  69.                                      \  \_.'  ) }  )
  70.                                       \.-'   (     (
  71.                                       /'-.'_. ) (  }
  72.                                       \_(    {   _/\
  73.                                        ) '--' `-;\  \
  74.                                    _.-'       /  / /
  75.                             <\/>_.'         .'  / /
  76.                         <\/></\>/.  '      /<\// /
  77.                         </\>  _ |\`- _ . -/|<// (
  78.                      <\/>    - _- `  _.-'`_/- |  \
  79.                      </\>        -  - -  -     \\\
  80.                       }`<\/>                <\/>`{
  81.                       { </\>-<\/>_<\/>_<\/>-</\> }
  82.                       }      </\> </\> </\>      {
  83.                    <\/>.                         <\/>
  84.                    </\>                          </\>
  85.                     {`<\/>                     <\/>`}
  86.                     } </\>-<\/>_<\/>_<\/>_<\/>-</\> {
  87.                     {      </\> </\> </\> </\>      }
  88.                     }                               }
  89.                     {           H A P P Y           {
  90.                     }                               }
  91.                     {             25th              {
  92.                  <\/>                               <\/>
  93.                  </\>        B I R T H D A Y        </\>
  94.                    `<\/>                          <\/>'
  95.                 jgs </\>-<\/>_<\/>_<\/>_<\/>_<\/>-</\>
  96.                          </\> </\> </\> </\> </\>


  97. Yes. That's right friends. This 67th issue is the celebration of Phrack's
  98. 25th birthday. Happy birthday Phrack!


  99.                     -----( Coming from the past )-----

  100. [hide]Once upon a midnight dreary, while I pondered, weak and weary, over many a
  101. quaint and curious volume of forgotten lore...

  102. Hello Cyberpals. It's your old friend Mike Schiffman AKA route AKA daemon9.
  103. *Cyberhug!* It sure has been a long time! Well I'll be! You guys all look
  104. the same, young and eager and hungry... Me? I'm still here, just older and
  105. grayer and bit less conspicuous. Ok, I'll say it -- I'm downright honored
  106. that you crazy rascals still remember me.

  107. It sure has been many a fortnight that I've been in this business. I mean,
  108. back in 1994, when I started poking around the scene in I was just a little
  109. dork who use to work out a lot and bleach my hair white. Sure I was
  110. probably the first muscle-bound white-haired guy with giant computer chip
  111. tattoo on his back who had this tireless thirst for computers and hacking
  112. and writing all sorts of Usenet posts and papers -- but there would legions
  113. more to come...

  114. Now in 2010 I'm a much bigger and more experienced dork. It's more than 16
  115. years later. I have many more tattoos and the hair is getting white all by
  116. itself. And I reminisce... I look back and reflect on those days. Some of
  117. the stuff I use to do... My comp.security Usenet posts. "The Infinity
  118. Concept" e-zine, the precursor to my Phrack editorial days. My netcom.com
  119. .plan file. The PGP Attack FAQ.

  120. I remember getting owned. I remember the first time my phones got done up
  121. and you miscreants forwarded my calls to bridge and told people I had died
  122. of AIDS. I remember my girlfriend at the time being scared shitless of what
  123. was next. I remember my dox getting dumped to #phrack. I remember u4ea
  124. threatening to insert my SSN into the NCIC. I remember Bane and u4ea
  125. calling my house repeatedly. I also remember pictures of u4ea
  126. cross-dressing. I remember Bane getting backhanded by Synapse at Defcon 4.
  127. I remember Special Agent Peter Trahon and his partner who looked and
  128. sounded like Sargent Slaughter from GI JOE both from the San Francisco FBI
  129. Computer Crime task force picking me in a late model Crown Victoria and
  130. taking me to Max's Opera Cafe in Walnut Creek, CA and shaking me down for
  131. dirt on other cyber-dorks they were investigating... I remember teardrop.
  132. I remember Loki. I remember TQBF telling me that I had better be real
  133. careful in releasing the technique/code of ICMP covert channel tunneling as
  134. I was "stepping on active people's toes"... I remember hooking an old
  135. landline phone up to my neighbor's wiring to call him and discuss it... I
  136. remember Carolyn Meinel... And her daughter Virginia at Defcon 5. I
  137. remember Eric Bloodaxe tapping me to be a Phrack editor a long with Voyager
  138. and Redragon. I remember overshadowing them and bringing my own editorial
  139. team onboard... I remember how awesome it was to be a Phrack Editor.

  140. I remember how awesome Phrack was. How amazing it still is. Kudos to the
  141. current editorial team for keeping it alive, and here's to another 25
  142. years. Come find me then, and prophile me.

  143.                                                 XOXO Scene,

  144.                                         MS AKA Route AKA daemon9


  145.                   -----( What you were waiting for )-----

  146. Telling you that we're proud to release this issue would be an euphemism
  147. for many reasons including, and that is the most important, the pleasure
  148. you will have while reading it. Oh and by the way, we apologize for the
  149. wait ...

  150. 08:21 |     --->| su [~su@201.6.x.y] #phrack
  151. 08:23 |     --->| arr[][] [arr@fledge.z.org] #phrack
  152. 08:29 |      su | halfdead, are you having trouble in man gcc this time? is
  153.                   that why phrack's issue is so late?
  154. 08:30 |    Dreg | wtf
  155. 08:30 | @bab00n | hoho

  156. Double. No. Triple private joke. You may have waited a long time but at
  157. least we made it before ZF #06 ;>

  158. $ cat p67/index.txt

  159. <--------------------------( Table of Contents )-------------------------->

  160. 0x01  Introduction ....................................... Phrack Staff

  161. 0x02  Phrack Prophile on punk ............................ Phrack Staff

  162. 0x03  Phrack World News .................................. EL ZILCHO

  163. 0x04  Loopback (is back) ................................. Phrack Staff

  164. 0x05  How to make it in Prison ........................... TAp

  165. 0x06  Kernel instrumentation using kprobes ............... ElfMaster

  166. 0x07  ProFTPD with mod_sql pre-authentication ............ FelineMenace

  167. 0x08  The House Of Lore: Reloaded ........................ blackngel

  168. 0x09  A Eulogy for Format Strings ........................ Captain Planet

  169. 0x0a  Dynamic Program Analysis and Software Exploitation . BSDaemon

  170. 0x0b  Exploiting memory corruptions in Fortran programs .. Magma
  171.        under UNIX/VMS

  172. 0x0c  PHRACKERZ: Two Tales ............................... Antipeace
  173.                                                                 &
  174.                                                             The Analog Kid

  175. 0x0d  Scraps of notes on remote stack overflow ........... pi3
  176.        exploitation

  177. 0x0e  Notes Concerning the Security, Design and .......... The Philosopher
  178.        Administration of Siemens DCO-CS Digital
  179.        Switching Systems                                                

  180. 0x0f  Hacking the mind for fun and profit ................ lvxferis

  181. 0x10  International Scenes ............................... various

  182. <------------------------------------------------------------------------->

  183. Have you ever noticed how some issues seemed to have a thematic? Consider
  184. for example p66. There are 4 papers dealing with heap exploitation. Now
  185. take p63. 5 papers are about (anti)reverse engineering and binary
  186. manipulation techniques and p62 clearly has a Windows color. Weird, isn't
  187. it? Coincidence? Bias in the uniform distribution of hacking playgrounds?
  188. I'll let you draw your own conclusions.

  189. For this issue, with no doubts, the focus is on userland exploitation. Did
  190. you really think that you had seen everything? Well how about debugging
  191. some heap? While FelineMenace gives you tricks using an usual practical
  192. case (hint: don't miss the source code), blackngel explains in detail the
  193. House Of Lore technique. Having troubles with fortify? Go read Captain
  194. Planet's excellent paper on format bugs as well as pi3's notes about
  195. cookies. It might be handy.

  196. Exploiting bugs is cool but finding them is de facto mandatory. That's when
  197. BSDaemon's paper comes to play. Read it and learn about how to instrument
  198. programs. Now what about a new playground? Discover the joy of Fortran
  199. hacking with Magma. Oh btw he may just have lost it you know...

  200. Missing kernel fun? Why not reading ElfMaster's paper. You'll certainly
  201. learn a bit of useful things, truly. Missing the good old phreaking days?
  202. Thank The Philosopher for his contribution (you made us crazy man !@#) and
  203. go learning about old school DCO-CS hacking.

  204. The best for the end. We have the luck to have no more than 4 non technical
  205. papers for this issue. You don't care? Fucking idiot, go away.

  206. Though we already thanked them, let us highlight EL ZILCHO, TAp, Antipeace,
  207. The Analog Kid, lvxferis & the anonymous contributors of the "International
  208. Scenes" phile. Phrack is without a doubt one of the most technical source
  209. of knowledge of the whole hacking scene thanks to its writers. But the
  210. most important aspect is not the technical one. Nowadays there are lots of
  211. impressive sources of information (blogs, books, conferences) freely
  212. available on Internet. However they all lack a soul. Phrack has a spirit
  213. and that's its true power.

  214. Now as a demonstration of the so-called spirit, we have the brilliant work
  215. of EL ZILCHO. Tired of the crap published on zdnet? Then have a taste of
  216. the Phrack World News. Eager to learn about life experiences? TAp is your
  217. man with one of the most fascinating papers of this issue. You should also
  218. consider alternative literature with lvxferis' paper. Ahah.

  219. Oh and if you're just passing by, attracted by the hacking culture but not
  220. yet ready/able to embrace it then Phrackerz paper is for you. It should
  221. bring you answers.

  222.                                     -- The Phrack Staff

  223. Ps: Oops sorry to forget o_O. It came to our attention after Pipacs'
  224. profile publication in p66 that whitehats profile were the most wanted one.
  225. Unfortunately Theo was already on holidays [1] when we needed to start the
  226. interview. Sorry guyz ;> Have fun anyway with punk!

  227. [1] http://kerneltrap.org/mailarchive/openbsd-misc/2010/8/13/6186


  228.                     -----( GreetZ for issue #67 )-----

  229. As always and because our staff would have done nothing but shit without
  230. them, we'd like to thank (in no particular order)...

  231.     - route/daemon9:      still able to make a kickass intro ;)
  232.     - The Analog Kid:     the spirited kid   
  233.     - nullcon guyz:       nice people, visit their great country!
  234.     - EL ZILCHO:          fuck1ng great job!
  235.     - TAp:                peace bro :>
  236.     - ElfMaster:          yet another kernel hax0r ;)
  237.     - lvxferis:           who is this guy???
  238.     - FelineMenace:       the LOLCats team counterattacks ;-)
  239.     - spacewalker:        supportive & gifted belgian bro
  240.     - blackngel:          malloc's worse enemy
  241.     - Captain Planet:     fmt bugs' worse enemy (lake of inspiration
  242.                                                  detected)
  243.     - argp & huku:        kudos for kickass answers in no time
  244.     - BSDaemon:           oi. Tudo bom?
  245.     - punk:               the whitehat k1ll3r
  246.     - the VX scene:       thanks for the support & various exchanges over
  247.                           past months. Special thanks to izee, herm1t and
  248.                           EOF writers.
  249.     - Magma:              take your pills gramps
  250.     - The Philosopher:    well done
  251.     - antipeace:          ~_o
  252.     - pi3:                Hi bulba! (oops wrong one)
  253.     - spy:                our IRC bot
  254.     - halfdead:           su said you contributed on IRC ;)

  255.     - the circle:         kudos for your past work.

  256. ...for their contributions and support. Touching isn't it? But so true :-)


  257.                   -----( Phrack Magazine's policy )-----

  258. phrack:~# head -20 /usr/include/std-disclaimer.h
  259. /*
  260. *  All information in Phrack Magazine is, to the best of the ability of
  261. *  the editors and contributors, truthful and accurate.  When possible,
  262. *  all facts are checked, all code is compiled.  However, we are not
  263. *  omniscient (hell, we don't even get paid).  It is entirely possible
  264. *  something contained within this publication is incorrect in some way.
  265. *  If this is the case, please drop us some email so that we can correct
  266. *  it in a future issue.
  267. *
  268. *
  269. *  Also, keep in mind that Phrack Magazine accepts no responsibility for
  270. *  the entirely stupid (or illegal) things people may do with the
  271. *  information contained herein.  Phrack is a compendium of knowledge,
  272. *  wisdom, wit, and sass.  We neither advocate, condone nor participate
  273. *  in any sort of illicit behavior.  But we will sit back and watch.
  274. *
  275. *
  276. *  Lastly, it bears mentioning that the opinions that may be expressed in
  277. *  the articles of Phrack Magazine are intellectual property of their
  278. *  authors.
  279. *  These opinions do not necessarily represent those of the Phrack Staff.
  280. */

  281.                   -----( Contact Phrack Magazine )-----


  282.             <  Editors           : staff[at]phrack{dot}org   >
  283.             >  Submissions       : staff[at]phrack{dot}org   <
  284.             <  Commentary        : loopback[@]phrack{dot}org >
  285.             >  Phrack World News : pwned[at]phrack{dot}org   <


  286.     Submissions may be encrypted with the following PGP key:
  287.     (Hint: Always use the PGP key from the latest issue)
复制代码

您需要登录后才可以回帖 登录 | 注册

本版积分规则

1

关注

23

粉丝

2901

主题
精彩推荐
热门资讯
网友晒图
图文推荐

Powered by Pcgho! X3.4

© 2008-2022 Pcgho Inc.