<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:atom="http://www.w3.org/2005/Atom">
  <channel>
    <title>SecDocs Feed for author Alexander Sotirov</title>
    <link>http://secdocs.lonerunners.net</link>
    <atom:link type="application/rss+xml" href="http://secdocs.lonerunners.net/rss/author/83-alexander-sotirov" rel="self"/>
    <description>Latest security documents RSS feed for author Alexander Sotirov</description>
    <language>en-us</language>
    <item>
      <title>[Slides] Hotpatching and the Rise of Third-Party Patches</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/49-reverse-engineering"&gt;reverse engineering&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/95-black-hat-usa-2006"&gt;Black Hat USA 2006&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Wed, 11 Jan 2012 06:40:32 +0100</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/4716-hotpatching-and-the-rise-of-third-party-patches</link>
      <guid>http://secdocs.lonerunners.net/documents/details/4716-hotpatching-and-the-rise-of-third-party-patches</guid>
    </item>
    <item>
      <title>[Paper] Heap Feng Shui in JavaScript</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/273-javascript"&gt;Javascript&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/69-black-hat-eu-2007"&gt;Black Hat EU 2007&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Thu, 21 Jul 2011 00:04:28 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/3883-heap-feng-shui-in-javascript</link>
      <guid>http://secdocs.lonerunners.net/documents/details/3883-heap-feng-shui-in-javascript</guid>
    </item>
    <item>
      <title>[Slides] Heap Feng Shui in JavaScript</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/273-javascript"&gt;Javascript&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/69-black-hat-eu-2007"&gt;Black Hat EU 2007&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Wed, 20 Jul 2011 23:58:00 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/3882-heap-feng-shui-in-javascript</link>
      <guid>http://secdocs.lonerunners.net/documents/details/3882-heap-feng-shui-in-javascript</guid>
    </item>
    <item>
      <title>[Paper] Heap Feng Shui in JavaScript</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/152-browser"&gt;browser&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/273-javascript"&gt;Javascript&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/68-black-hat-usa-2007"&gt;Black Hat USA 2007&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Sun, 19 Jun 2011 21:24:10 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/3829-heap-feng-shui-in-javascript</link>
      <guid>http://secdocs.lonerunners.net/documents/details/3829-heap-feng-shui-in-javascript</guid>
    </item>
    <item>
      <title>[Slides] Heap Feng Shui in JavaScript</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/152-browser"&gt;browser&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/273-javascript"&gt;Javascript&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/68-black-hat-usa-2007"&gt;Black Hat USA 2007&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Sun, 19 Jun 2011 21:23:38 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/3828-heap-feng-shui-in-javascript</link>
      <guid>http://secdocs.lonerunners.net/documents/details/3828-heap-feng-shui-in-javascript</guid>
    </item>
    <item>
      <title>[Video] How To Impress Girls With Browser Memory Protection Bypasses</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/authors/details/460-mark-dowd"&gt;Mark Dowd&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/50-memory"&gt;memory&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/83-exploiting"&gt;exploiting&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/152-browser"&gt;browser&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/42-black-hat-usa-2008"&gt;Black Hat USA 2008&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Mon, 02 Aug 2010 06:12:14 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/2765-how-to-impress-girls-with-browser-memory-protection-bypasses</link>
      <guid>http://secdocs.lonerunners.net/documents/details/2765-how-to-impress-girls-with-browser-memory-protection-bypasses</guid>
    </item>
    <item>
      <title>[Slides] How To Impress Girls With Browser Memory Protection Bypasses</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/authors/details/460-mark-dowd"&gt;Mark Dowd&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/50-memory"&gt;memory&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/83-exploiting"&gt;exploiting&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/152-browser"&gt;browser&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/42-black-hat-usa-2008"&gt;Black Hat USA 2008&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Mon, 02 Aug 2010 06:12:11 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/2764-how-to-impress-girls-with-browser-memory-protection-bypasses</link>
      <guid>http://secdocs.lonerunners.net/documents/details/2764-how-to-impress-girls-with-browser-memory-protection-bypasses</guid>
    </item>
    <item>
      <title>[Paper] How To Impress Girls With Browser Memory Protection Bypasses</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/authors/details/460-mark-dowd"&gt;Mark Dowd&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/50-memory"&gt;memory&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/83-exploiting"&gt;exploiting&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/152-browser"&gt;browser&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/42-black-hat-usa-2008"&gt;Black Hat USA 2008&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Sun, 01 Aug 2010 06:11:40 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/2763-how-to-impress-girls-with-browser-memory-protection-bypasses</link>
      <guid>http://secdocs.lonerunners.net/documents/details/2763-how-to-impress-girls-with-browser-memory-protection-bypasses</guid>
    </item>
    <item>
      <title>[Audio] How To Impress Girls With Browser Memory Protection Bypasses</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/authors/details/460-mark-dowd"&gt;Mark Dowd&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/50-memory"&gt;memory&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/83-exploiting"&gt;exploiting&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/152-browser"&gt;browser&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/42-black-hat-usa-2008"&gt;Black Hat USA 2008&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Sun, 01 Aug 2010 06:11:39 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/2762-how-to-impress-girls-with-browser-memory-protection-bypasses</link>
      <guid>http://secdocs.lonerunners.net/documents/details/2762-how-to-impress-girls-with-browser-memory-protection-bypasses</guid>
    </item>
    <item>
      <title>[Slides] Is Exploitation Over? Bypassing Memory Protections in Windows 7</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/27-buffer-overflow"&gt;buffer overflow&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/45-windows"&gt;Windows&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/50-memory"&gt;memory&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/83-exploiting"&gt;exploiting&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/315-windows-7"&gt;Windows 7&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Mon, 14 Dec 2009 11:45:00 +0100</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/1759-is-exploitation-over-bypassing-memory-protections-in-windows-7</link>
      <guid>http://secdocs.lonerunners.net/documents/details/1759-is-exploitation-over-bypassing-memory-protections-in-windows-7</guid>
    </item>
    <item>
      <title>[Slides] Breaking the security myths of Extended Validation SSL Certificates</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/authors/details/502-mike-zusman"&gt;Mike Zusman&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/93-x509"&gt;X.509&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/246-ssl"&gt;SSL&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/30-black-hat-usa-2009"&gt;Black Hat USA 2009&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Tue, 22 Sep 2009 02:22:00 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/1312-breaking-the-security-myths-of-extended-validation-ssl-certificates</link>
      <guid>http://secdocs.lonerunners.net/documents/details/1312-breaking-the-security-myths-of-extended-validation-ssl-certificates</guid>
    </item>
    <item>
      <title>[Paper] Breaking the security myths of Extended Validation SSL Certificates</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/authors/details/502-mike-zusman"&gt;Mike Zusman&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/93-x509"&gt;X.509&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/246-ssl"&gt;SSL&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/30-black-hat-usa-2009"&gt;Black Hat USA 2009&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Tue, 22 Sep 2009 02:20:00 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/1311-breaking-the-security-myths-of-extended-validation-ssl-certificates</link>
      <guid>http://secdocs.lonerunners.net/documents/details/1311-breaking-the-security-myths-of-extended-validation-ssl-certificates</guid>
    </item>
    <item>
      <title>[Slides] Blackbox Reversing Of XSS Filters</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/5-security"&gt;security&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/162-xss"&gt;XSS&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/22-recon-2008"&gt;REcon 2008&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Abstract&lt;/b&gt;: Many of us limit ourselves to what we already know and don't look for new challanges. I've spent a long time reversing x86 code, but there are a lot of other interesting targets out there. Cross site scripting vulnerabilities and web security in general are perceived to not be interesting enough for hardcode reversers, but this talk aims to dispel this notion.  We all know that web apps are the future, but where do we, reversers, fit in this brave new world? I will present the challanges of blackbox reversing and the beauty of reconstructing complicated algorithms based on nothing but some well chosen inputs and outputs. I will demonstrate the tools I've written to make this easier and perhaps drop a few 0days as well :-)</description>
      <pubDate>Wed, 22 Apr 2009 03:18:00 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/778-blackbox-reversing-of-xss-filters</link>
      <guid>http://secdocs.lonerunners.net/documents/details/778-blackbox-reversing-of-xss-filters</guid>
    </item>
    <item>
      <title>[Video] Blackbox Reversing Of XSS Filters</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/5-security"&gt;security&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/162-xss"&gt;XSS&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/22-recon-2008"&gt;REcon 2008&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Abstract&lt;/b&gt;: Many of us limit ourselves to what we already know and don't look for new challanges. I've spent a long time reversing x86 code, but there are a lot of other interesting targets out there. Cross site scripting vulnerabilities and web security in general are perceived to not be interesting enough for hardcode reversers, but this talk aims to dispel this notion.  We all know that web apps are the future, but where do we, reversers, fit in this brave new world? I will present the challanges of blackbox reversing and the beauty of reconstructing complicated algorithms based on nothing but some well chosen inputs and outputs. I will demonstrate the tools I've written to make this easier and perhaps drop a few 0days as well :-)</description>
      <pubDate>Wed, 22 Apr 2009 03:18:00 +0200</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/779-blackbox-reversing-of-xss-filters</link>
      <guid>http://secdocs.lonerunners.net/documents/details/779-blackbox-reversing-of-xss-filters</guid>
    </item>
    <item>
      <title>[Slides] MD5 considered harmful today</title>
      <description>&lt;b&gt;Authors&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/authors/details/83-alexander-sotirov"&gt;Alexander Sotirov&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Tags&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/tags/details/51-vulnerability"&gt;vulnerability&lt;/a&gt; &lt;a href="http://secdocs.lonerunners.net/tags/details/246-ssl"&gt;SSL&lt;/a&gt; &lt;br/&gt;&lt;b&gt;Event&lt;/b&gt;: &lt;a href="http://secdocs.lonerunners.net/events/details/12-chaos-communication-congress-25th-25c3-2008"&gt;Chaos Communication Congress 25th (25C3) 2008&lt;/a&gt; &lt;br/&gt;</description>
      <pubDate>Wed, 28 Jan 2009 14:24:00 +0100</pubDate>
      <link>http://secdocs.lonerunners.net/documents/details/373-md5-considered-harmful-today</link>
      <guid>http://secdocs.lonerunners.net/documents/details/373-md5-considered-harmful-today</guid>
    </item>
  </channel>
</rss>

