Bookmarks for Ulf Lindqvist

Exploits and vulnerabilities on the Web

as compiled and annotated by Ulf Lindqvist, in cooperation with Doug Moran and Phil Porras.
All links verified on May 19, 1998.

Collections of vulnerability info and exploits

rootshell.com
The major source of exploits
see kur it-ee
Lots of stuff, most from rootshell.com
showdown.org
Lots of info and exploits, not very organized however
Infilsec - Vulnerabilities
Vulnerability database with exploits
The Ping o' Death Page
Description and exploits for the "Ping of Death" vulnerability
Spikemans Denial Of Service Site
Network denial-of-service exploits
Evil code
Exploits to use on Linux to attack other systems
[8LGM]
Unix vulnerabilities and exploits
Bugtraq mailing list archives
Unix vulnerabilities and exploits
Archives of BUGTRAQ@NETSPACE.ORG
Another copy of Bugtraq
NTBugtraq
Bugtraq for Win NT
The alt.2600/#hack FAQ Introduction
This is the alt.2600 hacking FAQ with some basic exploit info
L0pht Heavy Industries
Password cracker for Win NT, but also info and exploits for other OS's
Computer Security - Hacking and Hackers - AntiOnline
Various hacker info, news and exploits
Black hat page of NMRC
Various exploits
Fyodor's Exploit world
Exploits for various systems
Phrack Webpage
Phrack Magazine with articles containing info and exploits
Reptile's Linux Security page
Linux exploits
Matt's Unix Security Page
Unix security articles, exploits and tools

Collections of vulnerabilities (no exploits)

X-Force Search
Vulnerability database at ISS with nice interface
WWW Browser Security & Privacy Flaws
Only browser-related vulnerabilities
AppenA
The list of vulnerabilities detected by ISS SAFEsuite

Other link collections

Bokler's Guide to "CRACKER" Software
Mainly crypto cracking exploits, but also links to other exploit sites
The Fringe of the Web
An updated guide to underground sites
Hey Flanders, nice "Security" page!
Both local stuff (exploits etc) and annotated links
En Garde Systems, Inc. - SecureZone
Links sorted by subject (Yahoo-style collection)

Generic tools

IP-Watcher Home Page
IP-Watcher is a commercial tool for monitoring and manipulating connections
t00L t1m3 w1Th Ice-9
Basic hacker tools, some classics like xkey, rootkit and ypx