[========= B U F F E R   S Y R I N G E ========= 1 . 0 =============]

Digital Monkey (dmonkey@arctik.com) 
b0f http://b0f.freebsd.lublin.pl/


A buffer overflow is a really serious security problem and if one 
your servers has it, it could be exploited or be subjected to an 
attack that could lead to your box being comprimised. Buffer Syringe 
is a tool for checking servers/daemons (e.g. ftp) for buffer 
overflow(s) (holes) on given parameter(s).



Buffer Syringe has a configuration file where you place in the
parameters needed to run the program.

The Parameters (config.ini):

HOST - e.g. 127.0.0.1
PORT - e.g. 21 (ftp)
PARAM - The parameter to be checked e.g. USER (ftp, pop3) 
BUFCHAR - The character to be used with the above parameter e.g. A (0x41)
BUFSIZE - Size of the character to be used with the above parameter
	  e.g. 100 (USER AAA... [up to 100 A's])

*note that you can add more parameters (up to 100+), just put in another 
 PARAM <parameter>, BUFCHAR <char> and BUFSIZE <size>. Take note also that
 if you specify another PARAM, you must also specify a BUFCHAR and a
 BUFSIZE for it e.g.:
		PARAM PASS
		BUFCHAR B
		BUFSIZE 1000


LOGIN - if the value is set to 1, then it logs in with the specified
	valid username and password (for checking parameters accessable
	only after logging in).

USERNAME - username for login (e.g. anonymous for ftp)
PASSWORD - password for login (e.g. user@host.com)

*note also that every parameter name must be typed in upper case.

A simulation:

Config.ini:
HOST www.somehost.com
PORT 21

PARAM MKD
BUFCHAR A
BUFSIZE 1000

PARAM CWD
BUFCHAR B
BUFSIZE 1000

LOGIN 1
USERNAME demo
PASSWORD demopass

================================
Buffer Syringe running with the above config file:

Buffer Syringe 1.0
by: Digital Monkey (b0f)

>Connecting to [ www.somehost.com ] on port [ 21 ]...connected
220 ProFTPD 1.2.0pre9 Server (User FTP service) [www.somehost.com]
>LOGGING IN
>SENDING USERNAME...done
331 Password required for demo.
>SENDING PASSWORD...done
230 User demo logged in.
>SENDING PARAMETER #1 [1000 buffers]...done
550 AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAA
AAAAAAAAAAAAAAAAAAAAAAAAAAAA: File name too long

>SENDING PARAMETER #2 [1000 buffers]...done
550 BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBBB
BBBBBBBBBBBBBBBBBBBBBBBBBBBB: No such file or directory

Server terminated normally.
Press any key to exit...

_________________________________
_________________________________

Buffer Syringe also has session logging, logs every session to
"rlog.txt".
_________________________________
_________________________________


[===================================================================]
