[SJF Logo]
Steve Friedl's Weblog

December 08, 2002
RPAT and BackStealth research

I've had a couple of background research projects for some time, and until I decided what to do with them I had them on private pages, but I'm sure I'll not really get to explore them much in the near future so I've put them on a main Research Page.

RPAT (Realtime Proxy Abuse Triangulation) is a method of tracking down people abusing proxy servers. I think this is a clever technique, and I'm fairly sure that it's completely original. Source code included.

BackStealth is a method for malware to bypass local software firewalls, and I extended the work of the original author. Source code included.

Posted by Steve at December 08, 2002 02:02 PM | TrackBack
Comments
Post a comment
Name:


Email Address:


URL:


Comments:


Remember info?