Nullbyte database contains exploits, 0day exploits, viruses, shellcodes, tools


#Remote(Remotely triggered vulnerabilities in applications)
06/01/2005 Norton Antivirus < 2005 Remote Stack Overflow Exploit D Rafel Ivgi HTML
16/05/2004 Emule 0.42e Remote Denial Of Service Exploit D Rafel Ivgi PERL
13/07/2008 Simple DNS Plus <= 5.0/4.1 Remote Denial of Service Exploit D Exodus PERL
22/01/2005 Golden FTP Server <= 2.02b Remote Buffer Overflow Exploit D Barabas PERL
12/11/2004 IPSwitch IMail 8.13 (DELETE) Remote Stack Overflow Exploit D Zatlander PERL
28/08/2008 Friendly Technologies (fwRemoteCfg.dll) ActiveX Command Exec Exploit D spdr HTML

#Local(Locally triggered vulnerabilities, file handling, privilege escalation etc)
29/06/2009 VideoLAN VLC Media Player 0.9.9 smb:// URI Stack BOF PoC D Trancer RUBY
01/09/2009 dTunes 2.72 (Filename Processing) Local Format String PoC D TheLeader PERL
20/10/2009 PHP 5.0.3 imagettfbbox() Local Denial of Service D Pr0T3cT10n PHP
20/10/2009 PHP 5.0.3 sqlite_popen() Local Denial of Service D Pr0T3cT10n PHP
20/10/2009 PHP 5.2.3 strtok() Local Denial of Service D Pr0T3cT10n PHP
11/10/2009 PHP 4.4.6 com_set() Local Denial of Service D Pr0T3cT10n PHP

#Web Apps(Anything related to code injection, sql injection, cookie stealing etc)
02/09/2008 Blog:cms (DIR_PLUGINS) 4.2.0 Remote File Inclusion Vulnerability D Sn4k3 EN
02/10/2008 OpenX 2.6 (ac.php bannerid) Remote Blind SQL Injection D d00m3r4ng PHP
16/06/2009 Joomla Simple Shop Galore Component 3.x (catid) SQL Injection D eXeCuTeR EN
08/10/2009 vBulletin vBplaza Mod(Transfer) Cross Site Scripting D SxCx EN
23/06/2008 HoMaP-CMS 0.1 (index.php go) SQL Injection Vulnerability D Pr0T3cT10n EN
20/11/2009 Web4Photo (1foto.php i) Remote SQL Injection Exploit D -=M.o.B=- PHP

#Shellcode(Tiny, beautiful shellcode - Use wisely)
27/03/2009 WinExec 17 bytes (XP SP3 HEB x86) D TheLeader ASM
27/03/2009 Cdrom open (XP SP3 HEB x86) D TheLeader ASM
26/03/2009 Sleep 13 bytes (XP SP3 HEB x86) D TheLeader ASM
27/03/2009 ExitProcess 7 bytes (XP SP3 HEB x86) D TheLeader ASM

#Tools(Tools to automate and ease up the job)
11/09/2009 A simple spider D L[s]D PHP
07/01/2009 Blind SQL Injection Exploit Tool D F3N1X PHP
24/09/2009 Simple SYN/land/local DoS attack D l3D PYTHON
21/09/2009 Simple irc flooder D l3D PYTHON
20/11/2009 RFI Scanner D Pr0xY PHP
17/09/2009 MySQL Injection helper v2.0.3 D Pr0xY PERL

#Viruses(Viruses, Malware, Spyware, Worms, Rootkits - all go here)
17/09/2009 Basic torjan with java for linux D Pr0xY JAVA

#Papers(Papers, Articles, eBooks etc)
09/10/2009 Stack-based Overflows D eXeCuTeR EN
28/09/2009 Cross Site Request Forgery [ CSRF ] D Pr0xY EN
01/12/2009 Cross Site Scripting Paper - XSS Xposed D Rafel Ivgi EN
30/10/2009 XFS - Cross site scripting(XSS) From SQL Injection D Pr0T3cT10n EN