Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:




fulldisclosure logo Full Disclosure mailing list archives

Re: [++++SPAM++++] Fwd: threat to corporate security
From: n3td3v <n3td3v () gmail com>
Date: Tue, 10 Apr 2007 16:46:25 +0100

On 4/10/07, Marco Ermini <markoer () markoer org> wrote:
Savvy enough ("large"... sic! :-)) corporations rarely let the out of
office go out of the company's email servers. But you should *know*
how such (large?!?) corporations work from *inside* to have a clue -
instead that pretending to talk about thing that you don't know from
the outside...

Do not play with n3td3v's intelligence, we've already harvested
mailboxes for Yahoo Inc, we've got internal operational data for Yahoo
Inc. Employees are doing more than saying they are out of office or
the dates they are coming back, they are openly talking about other
stuff as well.

We will release collect.txt if we need to prove the full scale of the issue.

Look below for an example:

---------- Forwarded message ----------
From: scottr () yahoo-inc com <scottr () yahoo-inc com>
Date: Apr 8, 2007 4:53 AM
Subject: Out of office until 4/16(auto-response): [yahoo security
policy should be more flexible]
To: n3td3v () gmail com


I'm out of the office until 4/16.
While I'm out, please contact paranoids ()  
For sensitive legal issues please contact wstef ()  

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


  By Date           By Thread  

Current thread:
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]