<?xml version="1.0" encoding="UTF-8"?>
<!-- generator="wordpress/2.2.3" -->
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	>

<channel>
	<title>Mu Dynamics Research Labs</title>
	<link>http://labs.mudynamics.com</link>
	<description></description>
	<pubDate>Tue, 15 Jul 2008 16:10:22 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.2.3</generator>
	<language>en</language>
			<item>
		<title>Zen and the art of fixing P1 bugs</title>
		<link>http://labs.mudynamics.com/2008/07/14/zen-and-the-art-of-fixing-p1-bugs/</link>
		<comments>http://labs.mudynamics.com/2008/07/14/zen-and-the-art-of-fixing-p1-bugs/#comments</comments>
		<pubDate>Tue, 15 Jul 2008 06:18:41 +0000</pubDate>
		<dc:creator>kowsik</dc:creator>
		
		<category><![CDATA[Rants]]></category>

		<guid isPermaLink="false">http://labs.mudynamics.com/2008/07/14/zen-and-the-art-of-fixing-p1-bugs/</guid>
		<description><![CDATA[Just finished reading Zen and the Art of Motorcycle Maintenance for like the 100th time. I responded to a recent post on Daily Dave and somehow it seemed to trigger some thoughts about romantic and classical perspectives on software bugs. If you&#8217;ve read the book at all, neither perspective is right or wrong, except they [...]]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/07/14/zen-and-the-art-of-fixing-p1-bugs/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Remote DoS in reSIProcate</title>
		<link>http://labs.mudynamics.com/2008/07/11/remote-dos-in-resiprocate/</link>
		<comments>http://labs.mudynamics.com/2008/07/11/remote-dos-in-resiprocate/#comments</comments>
		<pubDate>Fri, 11 Jul 2008 22:21:23 +0000</pubDate>
		<dc:creator>David Helder</dc:creator>
		
		<category><![CDATA[Advisories]]></category>

		<guid isPermaLink="false">http://labs.mudynamics.com/2008/07/11/remote-dos-in-resiprocate/</guid>
		<description><![CDATA[The Mu Dynamics Research Team released advisory “MU-200807-01” today.  Details: MU-200807-01
]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/07/11/remote-dos-in-resiprocate/feed/</wfw:commentRss>
		</item>
		<item>
		<title>IPS Evasion</title>
		<link>http://labs.mudynamics.com/2008/06/30/ips-evasion/</link>
		<comments>http://labs.mudynamics.com/2008/06/30/ips-evasion/#comments</comments>
		<pubDate>Tue, 01 Jul 2008 06:59:58 +0000</pubDate>
		<dc:creator>kowsik</dc:creator>
		
		<category><![CDATA[IPS]]></category>

		<guid isPermaLink="false">http://labs.mudynamics.com/2008/06/30/ips-evasion/</guid>
		<description><![CDATA[IPS&#8217; are just fun, aren&#8217;t they? Bunch of high-speed pattern matchers with built-in protocol decodes. Well, I built one a while back and got tired after 5 years. There&#8217;re only so many signatures you can have in a product before you run out of DFA/NFA space and you have to resort to turning off less [...]]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/06/30/ips-evasion/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Fieldomatic Complexity</title>
		<link>http://labs.mudynamics.com/2008/05/23/fieldomatic-complexity/</link>
		<comments>http://labs.mudynamics.com/2008/05/23/fieldomatic-complexity/#comments</comments>
		<pubDate>Sat, 24 May 2008 04:51:40 +0000</pubDate>
		<dc:creator>kowsik</dc:creator>
		
		<category><![CDATA[Mutations]]></category>

		<category><![CDATA[Research]]></category>

		<guid isPermaLink="false">http://labs.mudynamics.com/2008/05/23/fieldomatic-complexity/</guid>
		<description><![CDATA[If you&#8217;ve gone through my CanSecWest slides, I talk a lot about Field&#8217;s and how they are the fundamental units of protocols (network or file formats). The linkage information between the Field&#8217;s and across messages is a pretty powerful way to infer the cyclomatic complexity of the code that parses these messages. When generating test [...]]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/05/23/fieldomatic-complexity/feed/</wfw:commentRss>
		</item>
		<item>
		<title>CanSecWest slides</title>
		<link>http://labs.mudynamics.com/2008/03/28/cansecwest-slides/</link>
		<comments>http://labs.mudynamics.com/2008/03/28/cansecwest-slides/#comments</comments>
		<pubDate>Sat, 29 Mar 2008 00:10:57 +0000</pubDate>
		<dc:creator>kowsik</dc:creator>
		
		<category><![CDATA[Talk]]></category>

		<guid isPermaLink="false">http://labs.musecurity.com/2008/03/28/cansecwest-slides/</guid>
		<description><![CDATA[Sitting at the airport in Vancouver on my way back home. It&#8217;s going to be good to go back to sunny California. It&#8217;s pretty gloomy out here with occasional rain and snow. But anyways, I had a blast at the conference and thank to Dragos and Yuriko (and I&#8217;m sure countless others that I don&#8217;t [...]]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/03/28/cansecwest-slides/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Ruby XDR parser</title>
		<link>http://labs.mudynamics.com/2008/03/24/ruby-xdr-parser/</link>
		<comments>http://labs.mudynamics.com/2008/03/24/ruby-xdr-parser/#comments</comments>
		<pubDate>Tue, 25 Mar 2008 04:00:45 +0000</pubDate>
		<dc:creator>kowsik</dc:creator>
		
		<category><![CDATA[Ruby]]></category>

		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://labs.musecurity.com/2008/03/24/ruby-xdr-parser/</guid>
		<description><![CDATA[XDR, as specified in rfc-4506, forms the underpinnings of Mount, NFS, NFS4 and a host of other protocols. Broadly all of this can be grouped under Sun RPC for implementing Remote Procedure Calls.
The XDR is truly an IDL (Interface Definition Language) for a Sun RPC service. On most *nix operating systems you will find a [...]]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/03/24/ruby-xdr-parser/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Multiple buffer overflows in Asterisk</title>
		<link>http://labs.mudynamics.com/2008/03/18/multiple-buffer-overflows-in-asterisk/</link>
		<comments>http://labs.mudynamics.com/2008/03/18/multiple-buffer-overflows-in-asterisk/#comments</comments>
		<pubDate>Wed, 19 Mar 2008 01:09:02 +0000</pubDate>
		<dc:creator>David Helder</dc:creator>
		
		<category><![CDATA[Advisories]]></category>

		<guid isPermaLink="false">http://labs.musecurity.com/2008/03/18/multiple-buffer-overflows-in-asterisk/</guid>
		<description><![CDATA[The Mu Security Research Team released advisory “MU-200803-01” today.  Details: MU-200803-01
]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/03/18/multiple-buffer-overflows-in-asterisk/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Multiple Remote Arbitrary Execution Vulnerabilities in Mplayer</title>
		<link>http://labs.mudynamics.com/2008/02/14/multiple-remote-arbitrary-execution-vulnerabilities-in-mplayer/</link>
		<comments>http://labs.mudynamics.com/2008/02/14/multiple-remote-arbitrary-execution-vulnerabilities-in-mplayer/#comments</comments>
		<pubDate>Fri, 15 Feb 2008 02:16:37 +0000</pubDate>
		<dc:creator>Adam Bozanich</dc:creator>
		
		<category><![CDATA[Advisories]]></category>

		<guid isPermaLink="false">http://labs.musecurity.com/2008/02/14/multiple-remote-arbitrary-execution-vulnerabilities-in-mplayer/</guid>
		<description><![CDATA[The Mu Security Research Team released advisory “MU-200802-01” today.  Details: Mu-200802-01
]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/02/14/multiple-remote-arbitrary-execution-vulnerabilities-in-mplayer/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Ruby FSM</title>
		<link>http://labs.mudynamics.com/2008/01/23/ruby-fsm/</link>
		<comments>http://labs.mudynamics.com/2008/01/23/ruby-fsm/#comments</comments>
		<pubDate>Wed, 23 Jan 2008 18:30:30 +0000</pubDate>
		<dc:creator>kowsik</dc:creator>
		
		<category><![CDATA[Ruby]]></category>

		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://labs.musecurity.com/2008/01/23/ruby-fsm/</guid>
		<description><![CDATA[CHSM is a pretty nifty way to model finite state machines in Java or C++. It uses a DSL (Domain Specific Language) with embedded code blocks which is then compiled into the actual source. This FSM in Ruby is an attempt to model something very similar as a DSL.
]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2008/01/23/ruby-fsm/feed/</wfw:commentRss>
		</item>
		<item>
		<title>Ruby TUN/TAP interface</title>
		<link>http://labs.mudynamics.com/2007/12/04/ruby-tuntap-interface/</link>
		<comments>http://labs.mudynamics.com/2007/12/04/ruby-tuntap-interface/#comments</comments>
		<pubDate>Wed, 05 Dec 2007 06:20:28 +0000</pubDate>
		<dc:creator>kowsik</dc:creator>
		
		<category><![CDATA[Ruby]]></category>

		<category><![CDATA[Tools]]></category>

		<guid isPermaLink="false">http://labs.musecurity.com/2007/12/04/ruby-tuntap-interface/</guid>
		<description><![CDATA[The universal TUN/TAP drivers have been shipping with the Linux kernel for a while now. vtun builds on this to set up point-to-point tunnels that essentially encapsulate Ethernet frames over a TCP connection. Here&#8217;s the Ruby code to setup a tap interface so we can start receiving raw Ethernet frames that are being written to [...]]]></description>
		<wfw:commentRss>http://labs.mudynamics.com/2007/12/04/ruby-tuntap-interface/feed/</wfw:commentRss>
		</item>
	</channel>
</rss>

<!-- Dynamic Page Served (once) in 0.325 seconds -->
<!-- Cached page served by WP-Cache -->
