DVL 1.5 has now left planning status. Bug Fixing started!

DVL 1.5 has now left planning status. Bug Fixing started! Some new additions: Lazarus IDE, ArgoUML, BlueJ, Firefox Plugins updated. The DVL Wargame makes progresses as well!

 
DVL 1.5 now in planning status
DVL 1.5 has now the status "planning". Beside this we work on the concept for 2008. More information, more training and better videos (those which are 100% related to DVL). Stay tuned!
 
IT Security Training





Lost Password?
No account yet? Register

VMWare Player

Get the free VMWare Player!
Damn Vulnerable Linux is prepared to run under VMWare player!

Who's Online

We have 1 member online
  • Witny23

Statistics

Members: 10517
News: 95
Web Links: 0
Visitors: 512990
Welcome to Damn Vulnerable Linux, your free IT security training environment provided by IITAC - International Institute - Your place for IT Security Training & Auditing!
 

Google Hacks Volume III
More google hacks, you asked, you got em! I'll be adding more vids at informationleak.net so be sure to check there!
Date: 2007-08-25 21:14:43 - Added by: Schneider
Views: 572 - Votes: 0 - Rating: 0
 
Google Hacks Volume I
Some cool google search strings that bring up things you may never had expected! Theres more vids like this on informationleak.com or net
Date: 2007-08-25 21:14:13 - Added by: Schneider
Views: 628 - Votes: 0 - Rating: 0
 
Google Hacks Volume I
Some cool google search strings that bring up things you may never had expected! Theres more vids like this on informationleak.com or net
Date: 2007-08-25 21:13:37 - Added by: Schneider
Views: 757 - Votes: 0 - Rating: 0
 
Fly-by malware installation demo
Demonstration of a Windows XP system visiting a website that installs a slew of malware using a zero day vulnerability in Internet Explorer. The user at no point is provided with any hints that he is getting hacked.
Date: 2007-08-25 21:09:11 - Added by: Schneider
Views: 368 - Votes: 0 - Rating: 0
 
Shmoo 1860 - Billy Hoffman - JavaScript Malware For A Grey Goo Tomorrow
Recorded at the www.ShmooCon.org HACKING AND COMPUTER SECURITY CONFERENCE, March 24, 2007 in Washington, D.C. Content produced by www.MediaArchives.com --- JavaScript Malware for a Grey Goo Tomorrow, with Billy Hoffman. Aren't Cross Site Scripting vulnerabilities lame? All they can do is display annoying popups that say 'xss' in them. Oh, and hijack your HTTP sessions... and detect every website you have visited... and port scan and fingerprint your internal network... and reconfigure your routers... and brute force usernames and passwords... and capture all the words you search Google for. And I almost forgot, they can self propagate too. Wait, maybe XSS isn't so lame after all. This presentation will examine all the nasty things JavaScript can do that most people don't know about. What's that? The masses desire the sweet taste of 0-day? No problem. I'll demo and release Jikto, a complete web application vulnerability scanner written entirely in JavaScript. Jikto silently crawls and audits any public website and sends the results to a 3rd party. Jikto can be embedded into any website or XSS payload turning website visitors into accomplices that will scan and attack webservers on the Internet. Billy Hoffman is lead researcher at SPI Dynamics. He first became interested in web security on November 5th, 1955 when he was standing on the edge of a toilet hanging a clock. The porcelain was wet, he slipped, and hit his head on the edge of the sink. When he came to he had a picture in his head of destroying the Internet with JavaScript. Billy is currently writing a book on Ajax security for Addison Wesley. 18609 7
Date: 2007-08-25 21:05:41 - Added by: Schneider
Views: 135 - Votes: 0 - Rating: 0
 
malware analysis
A Journey to the Center of the Rustock.B Rootkit
Date: 2007-08-25 21:04:26 - Added by: Schneider
Views: 261 - Votes: 0 - Rating: 0
 
Internet Malware prevention with the Technology Security Experts from eMazzanti Technologies and WatchGuard
Boarder Gateway Security analysts review internet malware in a provocative overview of the threats that face business today. This overview will provide insight into the threats that exist on the internet and How-To protect your firm before the danger emerges. Contact eMazzanti at 201.360.4400 or visit www.emazzanti.net to learn more.
Date: 2007-08-25 21:03:07 - Added by: Schneider
Views: 216 - Votes: 0 - Rating: 0
 
Malware Analysis: Drive-by Download
Network security analyst Corey Nachreiner, CISSP, shows what happens when you're browsing the Web and a "drive-by download" attack hits you. Produced by LiveSecurity for WatchGuard Technologies.
Date: 2007-08-25 20:59:59 - Added by: Schneider
Views: 340 - Votes: 0 - Rating: 0
 
Malware Analysis: Rootkits, Part 3
Corey Nachreiner, network security analyst and CISSP, concludes his explanation of what rootkits do. Part 3 of 3. In this episode, Corey and his Magic White Board show how kernel mode rootkits work. Also covered: recommended tools and techniques for detecting and removing rootkits. Directed by D. Scott Pinzon, CISSP. Produced by LiveSecurity for WatchGuard Technologies.
Date: 2007-08-25 20:59:34 - Added by: Schneider
Views: 313 - Votes: 0 - Rating: 0
 
Malware Analysis: Rootkits, Part 1
Network security analyst Corey Nachreiner, CISSP, explains what a "rootkit" is and does, using Hacker Defender as an example. Part 1 of 3. In this part, Corey configures the rootkit and shows how it looks from the attacker's view and from the victim's view. Directed by D. Scott Pinzon, CISSP. Produced by LiveSecurity for WatchGuard Technologies.
Date: 2007-08-25 20:57:53 - Added by: Schneider
Views: 574 - Votes: 1 - Rating: 5
 

DVL Project Tracker

DVL 1.5 (Infectious Desease)

100 %

References

  • IITAC - International Institute (Certification and Training)
  • University of Bielefeld, Germany, Technical Faculty
  • Leibnitz University of Hannover, Germany (Secure Software Development Lecture)
  • University of Applied Sciences and Arts Hannover, Germany (Secure Software Development Lecture)
  • East Tennessee State University, U.S (Ethical Hacking Class)
  • University of the Basque Country, Spain (Computer Security Class)
  • University of Florida, U.S. (Student Infosec Team)
  • Institute Superieur Maritim, Algeria

License


License for Damn Vulnerable Linux distribution

Creative Commons License
This work is licensed under a Creative Commons Attribution-Noncommercial-Share Alike 3.0 License.


License for training material including all texts, audios and videos

Creative Commons License
This work is licensed under a Creative Commons NonCommercial Sampling Plus 1.0 License.