687 messages starting Feb 01 11 and ending Mar 01 11 Date index | Thread index | Author index
Zikula CMS 1.2.4 <= Cross Site Request Forgery (CSRF) Vulnerability YGN Ethical Hacker Group [Tool Update Announcement] inspathx - Path Disclosure Finder YGN Ethical Hacker Group [USN-1053-1] Subversion vulnerabilities Marc Deslauriers Book Review: Computer Incident Response and Product Security by Damir Rajnovic Shawn Merdinger Travel letter #2; What we do for knowledge mad . men Cisco Security Advisory: Multiple Cisco WebEx Player Vulnerabilities Cisco Systems Product Security Incident Response Team [USN-1055-1] OpenJDK vulnerabilities Steve Beattie [USN-1054-1] Linux kernel vulnerabilities Kees Cook
PAPER: Attacking Server Side XML Parsers HI-TECH . Re: PAPER: Attacking Server Side XML Parsers Chris Evans New malware exchange service Anton Ziukin ZDI-11-038: Apple Quicktime Sprite Transformation Remote Code Execution Vulnerability Fly, Kate Re: sourceforge entry point seems still active. exploit dev Cisco Security Advisory: Default Credentials for Root Account on Tandberg E, EX and C Series Endpoints Cisco Systems Product Security Incident Response Team egypt telecom seems back online exploit dev TROOPERS11 Florian Horsch An enemy of the infosec community needs to be brought to justice gregorydevans [USN-1056-1] OpenOffice.org vulnerabilities Kees Cook
Re: An enemy of the infosec community needs to be brought to justice Christian Sciberras Re: An enemy of the infosec community needs to be brought to justice Cal Leeming [Simplicity Media Ltd] Re: An enemy of the infosec community needs to be brought to justice bk Re: An enemy of the infosec community needs to be brought to justice Cal Leeming [Simplicity Media Ltd] Re: An enemy of the infosec community needs to be brought to justice coderman Re: An enemy of the infosec community needs to be brought to justice Hack Talk Re: An enemy of the infosec community needs to bebrought to justice Benji Re: Full-Disclosure Digest, Vol 72, Issue 6 Andreas Kersche Re: An enemy of the infosec community needs to bebrought to justice Hack Talk [USN-1057-1] Linux kernel vulnerabilities Kees Cook Vulnerabilities in Firebook MustLive [ MDVSA-2011:020 ] pango security [SECURITY] [DSA-2157-1] PostgreSQL security update Florian Weimer Re: An enemy of the infosec community needs to be brought to justice Wesley Kerfoot ZDI-11-039: BMC PATROL Agent Service Daemon BGS_MULTIPLE_READS Remote Code Execution Vulnerability ZDI Disclosures Deadline Extension: ICCGI 2011 || June 19-24, 2011 - Luxembourg Alejandro Cánovas Solbes Re: An enemy of the infosec community needs to be brought to justice Hack Talk
Re: An enemy of the infosec community needs to be brought to justice Justin Elze Re: An enemy of the infosec community needs to be brought to justice Cal Leeming [Simplicity Media Ltd] Re: An enemy of the infosec community needs to be brought to justice Hack Talk Re: An enemy of the infosec community needs to bebrought to justice Benji [USN-1058-1] PostgreSQL vulnerability Steve Beattie [ MDVSA-2011:020 ] pango security [ MDVSA-2011:020 ] pango security [ MDVSA-2011:020 ] pango security [ MDVSA-2011:020 ] pango security [ MDVSA-2011:020 ] pango security [ MDVSA-2011:020 ] pango security [ MDVSA-2011:020 ] pango security [ MDVSA-2011:020 ] pango security [ MDVSA-2011:020 ] pango security (TAD-2011-001) Vulnerability in HTC Peep: Twitter Credentials Disclosure Raul Siles Best Buy and Privacy? Thor (Hammer of God) Re: Best Buy and Privacy? Wesley Kerfoot Re: Best Buy and Privacy? Michael Neal Vasquez microsoft attacking program? Security Mongrel Re: Best Buy and Privacy? Jeffrey Walton Re: Best Buy and Privacy? Tyler Borland Re: Best Buy and Privacy? Григорий БратиÑлава Re: Best Buy and Privacy? Valdis . Kletnieks Re: Best Buy and Privacy? [lesh] Ivan Nikolic Re: Best Buy and Privacy? Григорий БратиÑлава Re: Best Buy and Privacy? Paul Heinlein Re: Best Buy and Privacy? Thor (Hammer of God) encrypt the bash history Zerial. Re: encrypt the bash history Valdis . Kletnieks Re: encrypt the bash history Zerial. Re: microsoft attacking program? McGhee, Eddie Re: encrypt the bash history Erik Falor Re: encrypt the bash history Valdis . Kletnieks Re: Best Buy and Privacy? Christian Sciberras Re: Best Buy and Privacy? Meadow Re: Best Buy and Privacy? Shawn Merdinger Re: Multiple vulnerabilities in SimpGB MustLive Re: Multiple vulnerabilities in SimpGB Eyeballing Weev
TWSL2011-002: Vulnerabilities in Comcast DOCSIS 3.0 Business Gateways (SMCD3G-CCR) Trustwave Advisories [SECURITY] CVE-2010-3718 Apache Tomcat Local bypass of security manger file permissions Mark Thomas [SECURITY] CVE-2010-3718 Apache Tomcat Local bypass of security manger file permissions Mark Thomas [SECURITY] Oracle JVM bug causes denial of service in Apache Tomcat Mark Thomas [SECURITY] CVE-2011-0534 Apache Tomcat DoS vulnerability Mark Thomas [SECURITY] CVE-2011-0013 Apache Tomcat Manager XSS vulnerability Mark Thomas Re: Multiple vulnerabilities in SimpGB laurent gaffie Re: Best Buy and Privacy? Col Fred B. Schneider testimony on Cybersecurity Credentials Shawn Merdinger Upcoming ZDI advisories? Shawn Merdinger FreeBSD <= 5.4-RELEASE ftpd (Version 6.00LS) sendfile kernel mem-leak Exploit HI-TECH . Re: Fred B. Schneider testimony on Cybersecurity Credentials coderman Re: Fred B. Schneider testimony on Cybersecurity Credentials Shawn Merdinger
Re: Fred B. Schneider testimony on Cybersecurity Credentials coderman Re: Fred B. Schneider testimony on Cybersecurity Credentials Shawn Merdinger Re: Multiple vulnerabilities in SimpGB Michele Orru Re: encrypt the bash history Zerial. Re: encrypt the bash history Rodrigo Rubira Branco (BSDaemon) Re: encrypt the bash history Peter Maxwell Re: encrypt the bash history Emanuel dos Reis Rodrigues vswitches: physical networks obsolete? phocean Re: vswitches: physical networks obsolete? Luigi Rosa Re: vswitches: physical networks obsolete? phocean Re: vswitches: physical networks obsolete? phocean Re: vswitches: physical networks obsolete? Luigi Rosa Re: vswitches: physical networks obsolete? phocean Re: vswitches: physical networks obsolete? Albert R. Campa Re: encrypt the bash history Zach C. Re: vswitches: physical networks obsolete? phocean
"IO wait chains" in Linux?? Cal Leeming [Simplicity Media Ltd] Re: encrypt the bash history Cal Leeming [Simplicity Media Ltd] Re: Multiple vulnerabilities in SimpGB Cal Leeming [Simplicity Media Ltd] [ MDVSA-2011:021 ] postgresql security Re: Best Buy and Privacy? CSIRTTAC Re: In Pro Domo storm Re: encrypt the bash history Daniël W . Crompton Re: Best Buy and Privacy? Cal Leeming [Simplicity Media Ltd] [ MDVSA-2011:021 ] postgresql security [ MDVSA-2011:021 ] postgresql security Learn to Fuzz with SPIKE Adam Behnke [ MDVSA-2011:022 ] dhcp security Re: "IO wait chains" in Linux?? Valdis . Kletnieks Re: "IO wait chains" in Linux?? Cal Leeming [Simplicity Media Ltd] [USN-1059-1] Dovecot vulnerabilities Marc Deslauriers Re: vswitches: physical networks obsolete? Elazar Broad R7-0038: Check Point Endpoint Security Server Information Disclosure HD Moore R7-0039: Accellion File Transfer Appliance Multiple Vulnerabilities HD Moore Re: "IO wait chains" in Linux?? Valdis . Kletnieks DC4420 - London DEFCON - February meet - Tuesday 22nd February 2011 Major Malfunction "USB autorun attacks against Linux" Leon Kaiser Zero-Day Magento EE Cache Poisoning Attack Jon Frisby Re: "USB autorun attacks against Linux" Christian Sciberras Re: Multiple vulnerabilities in SimpGB MustLive Re: Multiple vulnerabilities in SimpGB Eyeballing Weev ZDI-11-040: Microsoft Office Excel 2003 Invalid Object Type Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-041: Microsoft Office Excel Office Art Object Parsing Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-043: Microsoft Excel 2007 Office Drawing Layer Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-042: Microsoft Office Excel Axis Properties Record Parsing Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-047: IBM Lotus Domino LDAP Bind Request Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-048: IBM Lotus Domino iCalendar Meeting Request Parsing Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-044: Microsoft PowerPoint 2007 OfficeArt Atom Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-045: IBM Lotus Domino IMAP/POP3 Non-Printable Character Expansion Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-050: IBM Informix Dynamic Server SET ENVIRONMENT Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-046: IBM Lotus Domino Calendar Request Attachment Name Parsing Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-049: IBM Lotus Domino SMTP Multiple Filename Arguments Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-051: IBM Lotus Notes cai URI Handler Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-053: Lotus Domino Server diiop getEnvironmentString Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-052: Lotus Domino Server diiop Client Request Operation Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-054: Hewlett-Packard Data Protector Client EXEC_CMD omni_chk_ds.sh Remote Code Execution Vulnerability ZDI Disclosures Re: "IO wait chains" in Linux?? coderman ZDI-11-056: Hewlett-Packard Data Protector Client EXEC_SETUP Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-058: SCO Openserver IMAP Daemon Long Verb Parsing Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-055: Hewlett-Packard Data Protector Client EXEC_CMD Perl Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-057: Hewlett-Packard Data Protector Cell Manager Service Authentication Bypass Vulnerability ZDI Disclosures ZDI-11-059: CA ETrust Secure Content Manager Common Services Transport Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-060: Novell eDirectory Malformed NCP Request Denial of Service Vulnerability ZDI Disclosures ZDI-11-061: EMC Replication Manager Client irccd.exe Remote Code Execution Vulnerability ZDI Disclosures Re: Mr. Lemming coderman jaillords.com hacked, login/password/email list Bob Smith
Re: Mr. Lemming Cal Leeming [Simplicity Media Ltd] Re: jaillords.com hacked, login/password/email list Cal Leeming [Simplicity Media Ltd] Re: Mr. Lemming coderman Re: jaillords.com hacked, login/password/email list A Z Re: Mr. Lemming Cal Leeming [Simplicity Media Ltd] Re: "IO wait chains" in Linux?? coderman Re: "IO wait chains" in Linux?? Cal Leeming [Simplicity Media Ltd] fs rootkit performance footprint [was Re: "IO wait chains" in Linux??] coderman VMSA-2011-0002 Cisco Nexus 1000V VEM updates address denial of service in VMware ESX/ESXi VMware Security Team (no subject) Alejandro Cánovas Solbes CfP: IMMM 2011 || July 17-22, 2011 - Bournemouth, UK Alejandro Cánovas Solbes rPSA-2011-0010-1 kernel rPath Update Announcements Tricky exploit - a penetration test puzzle Ronen Z Re: Multiple vulnerabilities in SimpGB John Belushae Tricky exploit - a penetration test puzzle Ronen Z Re: Mr. Lemming Valdis . Kletnieks Re: jaillords.com hacked, login/password/email list Paul Schmehl Re: jaillords.com hacked, login/password/email list Hack Talk Re: encrypt the bash history Champ Clark III [Softwink] "SbD Wargame 2011 write-up" by int3pids Roman Medina-Heigl Hernandez Data Encryption Systems - DESLock+ - Local Kernel Code Execution/Denial of Service Digit Security Research [ MDVSA-2011:023 ] proftpd security ZDI-11-062: Multiple Vendor Calendar Manager RPC Service Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-063: Microsoft Visio 2007 LZW Stream Decompression Exception Vulnerability ZDI Disclosures ZDI-11-064: Microsoft Windows WmiTraceMessageVa Local Kernel Vulnerability ZDI Disclosures is FD moderated or not? (hint: ask n3td3v) Georgi Guninski CVE-2010-4435 - Multiple Vendor Calendar Manager Remote Code Execution Rodrigo Rubira Branco (BSDaemon) ZDI-11-065: Adobe Reader Controlled memset Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-066: Adobe Acrobat Reader U3D Texture .iff RLE Decompression Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-067: Adobe Acrobat Reader U3D Texture rgba RLE Decompression Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-068: Adobe Acrobat Reader U3D Texture bmp RLE Decompression Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-069: Adobe Acrobat Reader U3D Texture psd RLE Decompression Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-070: Adobe Acrobat Reader U3D Texture .fli RLE Decompression Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-071: Adobe Reader BMP RLE_8 Decompression Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-072: Adobe Reader BMP ColorData Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-073: Adobe Reader ICC Parsing Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-074: Adobe Reader u3d Parent Node Count Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-075: Adobe Acrobat Reader rt3d.dll Multimedia Playing Arbitrary Memory Overwite Remote Code Execution Vulnerability ZDI Disclosures Re: ZDI-11-072: Adobe Reader BMP ColorData Remote Code Execution Vulnerability root ZDI-11-076: RealNetworks Real Player Predictable Temporary File Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-077: Adobe Acrobat Reader U3D Texture Parser ILBM Remote Code Execution Vulnerability ZDI Disclosures Re: jaillords.com hacked, login/password/email list ghost ZDI-11-078: Adobe Shockwave Player FFFFFF88 Record Count Element Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-079: Adobe Shockwave Player 0xFFFFFF45 Record Count Element Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-080: Adobe Shockwave CSWV Chunk Substructure Offset Value Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-081: Adobe Flash Player Point Object Remote Code Execution Vulnerability ZDI Disclosures Re: Mr. Lemming Cal Leeming [Simplicity Media Ltd] xss attacks through utf7-BOM string injection IEhrepus Re: is FD moderated or not? (hint: ask n3td3v) David Klein CGI:IRC XSS issue (CVE-2011-0050) David Leadbeater Re: is FD moderated or not? (hint: ask n3td3v) huj huj huj Re: is FD moderated or not? (hint: ask n3td3v) huj huj huj Re: is FD moderated or not? (hint: ask n3td3v) huj huj huj trivial SQL injection in LIGATT Security's LocatePC software auto79576760 Re: is FD moderated or not? (hint: ask n3td3v) huj huj huj Re: is FD moderated or not? (hint: ask n3td3v) Christian Sciberras Re: is FD moderated or not? (hint: ask n3td3v) huj huj huj Vulnerabilities in PHPXref MustLive [HITB-Announce] HITB Magazine Issue 005 Released Hafez Kamal Re: is FD moderated or not? (hint: ask n3td3v) Georgi Guninski [ MDVSA-2011:024 ] krb5 security TPTI-11-01: Adobe Shockwave dirapi.dll IFWV Trusted Offset Remote Code Execution Vulnerability ZDI Disclosures TPTI-11-02: Adobe Shockwave TextXtra Invalid Seek Remote Code Execution Vulnerability ZDI Disclosures TPTI-11-03: Adobe Shockwave Font Xtra String Decoding Remote Code Execution Vulnerability ZDI Disclosures TPTI-11-04: Adobe Shockwave GIF Logical Screen Descriptor Parsing Remote Code Execution Vulnerability ZDI Disclosures TPTI-11-05: Adobe Shockwave PFR1 Font Chunk Parsing Remote Code Execution Vulnerability ZDI Disclosures [ MDVSA-2011:025 ] krb5 security Drupal Data Module Multiple Vulnerabilities Justin Klein Keane {Java,PHP} Server Exploits Leon Kaiser Re: {Java,PHP} Server Exploits Christian Sciberras Re: {Java,PHP} Server Exploits Christian Sciberras Re: {Java,PHP} Server Exploits Cal Leeming [Simplicity Media Ltd] Re: {Java,PHP} Server Exploits Valdis . Kletnieks Re: {Java,PHP} Server Exploits Christian Sciberras [SECURITY] [DSA-2158-1] cgiirc security update Steve Kemp
Re: {Java,PHP} Server Exploits DiKKy Heartiez Linksys WAP610N Unauthenticated Root Consle Matteo Ignaccolo Re: {Java,PHP} Server Exploits Troy Aerojam List Charter John Cartwright Re: {Java,PHP} Server Exploits Yorian Wiltjer [AntiSnatchOr] Drupal <= 6.20 insecure Captcha defaults PoC Michele Orru Re: is FD moderated or not? (hint: ask n3td3v) Christian Sciberras Re: is FD moderated or not? (hint: ask n3td3v) huj huj huj Re: is FD moderated or not? (hint: ask n3td3v) Valdis . Kletnieks [SECURITY] CVE-2011-0533: Apache Continuum cross-site scripting vulnerability Brett Porter Re: is FD moderated or not? (hint: ask n3td3v) James Rankin [SECURITY] CVE-2010-3449: Apache Continuum CSRF vulnerability Brett Porter Re: is FD moderated or not? (hint: ask n3td3v) Michael Cassano [USN-1060-1] Exim vulnerabilities Marc Deslauriers Re: is FD moderated or not? (hint: ask n3td3v) Christian Sciberras Re: is FD moderated or not? (hint: ask n3td3v) Cal Leeming [Simplicity Media Ltd] [Fwd: Re: {Java,PHP} Server Exploits] Leon Kaiser [Fwd: Re: {Java,PHP} Server Exploits] Leon Kaiser [Fwd: Re: {Java,PHP} Server Exploits] Leon Kaiser Re: is FD moderated or not? (hint: ask n3td3v) David Klein Re: is FD moderated or not? (hint: ask n3td3v) James Rankin [SECURITY] [DSA 2159-1] vlc security update Moritz Muehlenhoff CORE-2011-0103 - ZOHO ManageEngine ADSelfService multiple vulnerabilities CORE Security Technologies Advisories
Re: [Fwd: Re: {Java,PHP} Server Exploits] Valdis . Kletnieks [USN-1061-1] iTALC vulnerability Kees Cook KeySoft (BrailleNote Apex) 9.1 Fixes Gaping Security Hole Sabahattin Gucukoglu VMSA-2011-0003 Third party component updates for VMware vCenter Server, vCenter Update Manager, ESXi and ESX VMware Security team Kunena SQL Injection Vulnerability & Information Leakage Red Matter Re: is FD moderated or not? (hint: ask n3td3v) McGhee, Eddie Multiple vulnerabilities in Firebook MustLive ebay.com callback xss vul IEhrepus Pen-Testing Companies in Quebec Alexis McDuff High performance exception/traceback reporting system Cal Leeming [Simplicity Media Ltd] ASPR #2011-02-11-2: Remote Binary Planting in Adobe Flash Player ACROS Security Lists ASPR #2011-02-11-1: Remote Binary Planting in Adobe Reader ACROS Security Lists Re: High performance exception/traceback reporting system coderman Re: High performance exception/traceback reporting system coderman Re: An enemy of the infosec community needs to be brought to justice Leon Kaiser
Re: An enemy of the infosec community needs to be brought to justice Javier Bassi Re: High performance exception/traceback reporting system Cal Leeming [Simplicity Media Ltd] Pen-Testing Companies in Quebec Charles-Etienne Prévost Mac OS X ftpd 0day murderingbugs Re: is FD moderated or not? (hint: ask n3td3v) Christian Sciberras -~= Mac OS X ftpd 0day =~- HI-TECH .
Insect 2.0 - Exploiting Android runlvl Re: Pen-Testing Companies in Quebec Thor (Hammer of God) Re: High performance exception/traceback reporting system Cal Leeming [Simplicity Media Ltd] [SECURITY] [DSA 2160-1] tomcat6 security update Moritz Muehlenhoff Re: Pen-Testing Companies in Quebec Thor (Hammer of God) Re: Pen-Testing Companies in Quebec Lawrence Waterhouse [SECURITY] [DSA 2161-1] OpenJDK security update Florian Weimer
Re: Pen-Testing Companies in Quebec coderman Re: High performance exception/traceback reporting system Daniël W . Crompton Re: High performance exception/traceback reporting system Cal Leeming [Simplicity Media Ltd] Released Stream Armor v1.5 - Smart Tool to Scan & Clean Malicious Streams ! Nagareshwar Talekar [ MDVSA-2011:026 ] phpmyadmin security Re: High performance exception/traceback reporting system Daniël W . Crompton [SECURITY] [DSA 2162-1] openssl security update Nico Golde MS Windows Server 2003 AD Pre-Auth BROWSER ELECTION Remote Heap Overflow Pwned MSRC Re: iDefense Security Advisory 02.08.11: Microsoft Windows Picture and Fax Viewer Library jatin.chowdhry Security of themes for WordPress MustLive [SECURITY] [DSA 2163-1] python-django security update Nico Golde [ MDVSA-2011:027 ] openoffice.org security [SECURITY] [DSA 2161-2] OpenJDK security update Florian Weimer [USN-1063-1] QEMU vulnerability Kees Cook Re: [AntiSnatchOr] Drupal <= 6.20 insecure Captcha defaults PoC MustLive Re: [AntiSnatchOr] Drupal <= 6.20 insecure Captcha defaults PoC Eyeballing Weev Re: Linksys WAP610N Unauthenticated Root Console Matteo Ignaccolo
[USN-1062-1] Kerberos vulnerabilities Steve Beattie from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown hbgary Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] [ MDVSA-2011:028 ] openssl security Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Benji Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Benji Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown huj huj huj Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Kain, Rebecca (.) Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Eyeballing Weev Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown huj huj huj Re: [AntiSnatchOr] Drupal <= 6.20 insecure Captcha defaults PoC Michele Orru Re: [AntiSnatchOr] Drupal <= 6.20 insecure Captcha defaults PoC Michele Orru Re: [AntiSnatchOr] Drupal <= 6.20 insecure Captcha defaults PoC Eyeballing Weev Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown coderman Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Kain, Rebecca (.) [USN-1064-1] OpenSSL vulnerability Steve Beattie Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Eyeballing Weev Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Eyeballing Weev Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Randal T. Rioux Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Kain, Rebecca (.) Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Kain, Rebecca (.) Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Eyeballing Weev Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] ZDI-11-083: Oracle Java Applet Clipboard Injection Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-084: Oracle Java Unsigned Applet Applet2ClassLoader Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-086: Oracle Java Webstart Trusted JNLP Extension Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-082: Oracle Java Runtime NTLM Authentication Information Leakage Vulnerability ZDI Disclosures Re: MS Windows Server 2003 AD Pre-Auth BROWSER ELECTION Remote Heap Overflow coderman [USN-1065-1] shadow vulnerability Kees Cook ZDI-11-085: Oracle Java XGetSamplePtrFromSnd Remote Code Execution Vulnerability ZDI Disclosures
Deadline extension | IMMM 2011 || July 17-22, 2011 - Bournemouth, UK Alejandro Canovas Solbes Vulnerabilities in Drupal MustLive [SECURITY] [DSA 2164-1] shadow security update Nico Golde [SECURITY] CVE-2011-0533: Apache Archiva cross-site scripting vulnerability Brett Porter [SECURITY] [DSA 2165-1] ffmpeg-debian security update Luciano Bello Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Gino Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Hyperion Hyp Ruby on Rails Vulnerability Jimmy Bandit Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown huj huj huj Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Sneakernet virus as possible source of WikiLeaks cablegate files Andriy Tereshchenko Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Cisco Security Advisory: Management Center for Cisco Security Agent Remote Code Execution Vulnerability Cisco Systems Product Security Incident Response Team Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Kain, Rebecca (.) Re: from hbgary: stuxnet, WL attack, Psyop and Anonymous trackdown Eyeballing Weev [SECURITY] [DSA 2168-1] openafs security update Moritz Muehlenhoff PHP 5.3.5 grapheme_extract() NULL Pointer Dereference Maksymilian Arciemowicz
ZDI-11-087: Novell iPrint LPD Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-088: Cisco Security Agent Management st_upload Remote Code Execution Vulnerability ZDI Disclosures [SECURITY] [DSA 2166-1] chromium-browser security update Giuseppe Iuculano [SECURITY] [DSA 2167-1] phpmyadmin security update Thijs Kinkhorst [SECURITY] [DSA 2169-1] telepathy-gabble security update Nico Golde WordPress User Photo Component Remote File Upload Vulnerability ADVtools Advisories Re: Pen-Testing Companies in Quebec Alexis McDuff Announcing NVD CVE parser for Ruby on Rails Dominik Elsbroek from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Old Timer xt:Commerce 3.X - Second Order SQL Injection Felix Launched PasswordForensics.com - New Portal for Password Security ! Nagareshwar Talekar Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: [SECURITY] [DSA 2169-1] telepathy-gabble security update Valdis . Kletnieks Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Old Timer Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†James Rankin Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†PsychoBilly Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Kain, Rebecca (.) Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†huj huj huj Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†James Rankin Re: from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Eyeballing Weev Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†James Rankin Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: MS Windows Server 2003 AD Pre-Auth BROWSER ELECTION Remote Heap Overflow Georgi Guninski Re: from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Paul Schmehl Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Vulnerability in reCAPTCHA for Drupal MustLive Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Rankin, James R Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Benji Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†phocean [USN-1066-1] Django vulnerabilities Jamie Strandboge Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Cal Leeming [Simplicity Media Ltd] Re: Vulnerability in reCAPTCHA for Drupal Zach C. Re: from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†phocean Re: Vulnerability in reCAPTCHA for Drupal Eyeballing Weev (this thread is now about porn) .†Cal Leeming [Simplicity Media Ltd] Re: (this thread is now about po rn).†Thor (Hammer of God) Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†Benji Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: Vulnerability in reCAPTCHA for Drupal Zach C. Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] [USN-1067-1] Telepathy Gabble vulnerability Jamie Strandboge Vulnerability is in response Григорий БратиÑлава ZDI-11-089: Novell ZenWorks TFTPD Remote Code Execution Vulnerability ZDI Disclosures Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: Vulnerability in reCAPTCHA for Drupal Michele Orru Re: (this thread is now about po rn).†Thor (Hammer of God) Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: Vulnerability in reCAPTCHA for Drupal Valdis . Kletnieks Re: (this thread is now about porn).†phocean Re: [Full-disclosure] (this thread is now about porn).†Valdis . Kletnieks Re: (this thread is now about porn).†Andrew Kirch Re: [Full-disclosure] (this thread is now about porn) .†Rankin, James R Re: (this thread is now about porn).†William Warren [ MDVSA-2011:029 ] kernel security Re: [Full-disclosure] (this thread is now about porn).†Rankin, James R Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Valdis . Kletnieks
[VIDEO] Insect Pro 2.0 - Exploit tool for remote control runlvl Re: [VIDEO] Insect Pro 2.0 - Exploit tool for remote control root Re: (this thread is now about porn).†phocean Re: [Full-disclosure] from hbgary: stuxnet, WL attack , Psyop and Anonymous trackdown†huj huj huj www.eVuln.com : "wsnuser" Cookie SQL Injection vulnerability in WSN Guest Aliaksandr Hartsuyeu Re: [Full-disclosure] (this thread is now about porn).†Jim Race Re: DC4420 - London DEFCON - February meet - Tuesday 22nd February 2011 Major Malfunction Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Christian Sciberras Re: [AntiSnatchOr] Drupal <= 6.20 insecure Captcha defaults PoC Jacqui Caren-home Re: Vulnerability in reCAPTCHA for Drupal Charles Morris Re: (this thread is now about porn).†0x90 Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: Vulnerability in reCAPTCHA for Drupal Conor Re: Vulnerability in reCAPTCHA for Drupal Zach C. Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Christian Sciberras Re: (this thread is now about porn).†Paul Schmehl Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Benji Re: [Full-disclosure] (this thread is now about porn).†Georgi Guninski Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] HBGary Mirrors? ck Re: HBGary Mirrors? Eyeballing Weev Re: Vulnerability in reCAPTCHA for Drupal Valdis . Kletnieks Re: HBGary Mirrors? Cal Leeming [Simplicity Media Ltd] Re: HBGary Mirrors? Kurth Bemis Re: Vulnerability in reCAPTCHA for Drupal Charles Morris Fwd: HBGary Mirrors? Cal Leeming [Simplicity Media Ltd] Re: Fwd: HBGary Mirrors? decoder Re: Fwd: HBGary Mirrors? Charles Morris Re: Fwd: HBGary Mirrors? Thor (Hammer of God) Re: Fwd: HBGary Mirrors? Cal Leeming [Simplicity Media Ltd] Re: Fwd: HBGary Mirrors? Cal Leeming [Simplicity Media Ltd] Re: HBGary Mirrors? Valdis . Kletnieks Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: HBGary Mirrors? Valdis . Kletnieks Re: HBGary Mirrors? Cal Leeming [Simplicity Media Ltd] Brute Force and Abuse of Functionality vulnerabilities in Drupal MustLive Re: Fwd: HBGary Mirrors? Cal Leeming [Simplicity Media Ltd] Re: HBGary Mirrors? Valdis . Kletnieks Re: Brute Force and Abuse of Functionality vulnerabilities in Drupal Justin Klein Keane Re: Fwd: HBGary Mirrors? Jeffrey Walton [ MDVSA-2011:030 ] tomcat5 security Deadline extension | MOBILITY 2011 || July 17-22, 2011 - Bournemouth, UK Alejandro Cánovas Solbes [ MDVSA-2011:031 ] python-django security Re: Fwd: HBGary Mirrors? Daniël W . Crompton
Re: HBGary Mirrors? William Warren University of Central Florida Multiple LFI Hack Talk Re: University of Central Florida Multiple LFI Madhur Ahuja Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: HBGary Mirrors? Javier Bassi [ article ] How to secure medical data on your iPhone Shawn Merdinger Autorun Flashdrive Worm Charles Timko Re: University of Central Florida Multiple LFI Hack Talk Re: University of Central Florida Multiple LFI Benji Re: University of Central Florida Multiple LFI Benji Re: University of Central Florida Multiple LFI Madhur Ahuja (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] Re: Autorun Flashdrive Worm Charles Timko Re: University of Central Florida Multiple LFI Shawn Merdinger Re: University of Central Florida Multiple LFI Eyeballing Weev Re: University of Central Florida Multiple LFI Hack Talk Re: University of Central Florida Multiple LFI Eyeballing Weev Re: University of Central Florida Multiple LFI Hack Talk Re: (a present for andrew wallace, wi th love from cal)†Psychobilly Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Hack Talk Re: (a present for andrew wallac e, with love from cal)†Thor (Hammer of God) Re: University of Central Florida Multiple LFI Shawn Merdinger Re: University of Central Florida Multiple LFI Hack Talk Re: University of Central Florida Multiple LFI Eyeballing Weev Re: University of Central Florida Multiple LFI Hack Talk Abuse of Functionality vulnerabilities in Drupal MustLive Re: University of Central Florida Multiple LFI Shawn Merdinger Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] Re: HBGary Mirrors? Chris M Re: Autorun Flashdrive Worm Chris M Re: University of Central Florida Multiple LFI Chris M Re: Vulnerability in reCAPTCHA for Drupal Ulisses Montenegro LFI Bug and other Friedrich Hausberger Re: Full-Disclosure Digest, Vol 72, Issue 44 Friedrich Hausberger
Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Valdis . Kletnieks Re: LFI Bug and other ghost Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] [Google Chrome Browser] Google Mail Checker Plus: JavaScript Code Execution ck Re: LFI Bug and other Cal Leeming [Simplicity Media Ltd] Re: Vulnerability in reCAPTCHA for Drupal MustLive [ MDVSA-2011:032 ] eclipse security Re: University of Central Florida Multiple LFI Caspian Kilkelly Re: [Google Chrome Browser] Google Mail Checker Plus: JavaScript Code Execution Jardel Weyrich Re: University of Central Florida Multiple LFI Hack Talk [SECURITY] [DSA 2170-1] mailman security update Thijs Kinkhorst Re: University of Central Florida Multiple LFI Chris M
New tool for penetration testing!!! runlvl Re: [Full-disclosure] (this thread is now about porn).†huj huj huj Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†huj huj huj Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (this thread is now about porn).†Cal Leeming [Simplicity Media Ltd] Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Benji Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] Re: New tool for penetration testing!!! James Lay Re: New tool for penetration testing!!! Cal Leeming [Simplicity Media Ltd] [ MDVSA-2011:033 ] awstats security Re: New tool for penetration testing!!! Urlan Re: University of Central Florida Multiple LFI Nikhil Mittal Re: University of Central Florida Multiple LFI Benji Re: Abuse of Functionality vulnerabilities in Drupal Justin Klein Keane Re: University of Central Florida Multiple LFI / Dirty Indian rant Eyeballing Weev Re: Abuse of Functionality vulnerabilities in Drupal tc Re: Abuse of Functionality vulnerabilities in Drupal Cal Leeming [Simplicity Media Ltd] Re: University of Central Florida Multiple LFI / Dirty Indian rant Cal Leeming [Simplicity Media Ltd] Re: University of Central Florida Multiple LFI / Dirty Indian rant huj huj huj Re: [Full-disclosure] (a present for andrew wallace, wi th love from cal)†Cal Leeming [Simplicity Media Ltd] Re: University of Central Florida Multiple LFI / Dirty Indian rant Eyeballing Weev Re: Abuse of Functionality vulnerabilities in Drupal Justin Klein Keane Re: University of Central Florida Multiple LFI / Dirty Indian rant phocean Denial of Service vulnerability in Megapolis.Portal Manager MustLive Other recommended lists? Cal Leeming [Simplicity Media Ltd] [SECURITY] [DSA 2171-1] asterisk security update Moritz Muehlenhoff Re: Other recommended lists? Michael Krymson Re: Other recommended lists? Cal Leeming [Simplicity Media Ltd] Re: Other recommended lists? Cal Leeming [Simplicity Media Ltd] Re: Other recommended lists? Mike Hale Re: Other recommended lists? Cal Leeming [Simplicity Media Ltd] Re: Other recommended lists? Mike Hale Re: Other recommended lists? Cal Leeming [Simplicity Media Ltd] Re: Other recommended lists? Cal Leeming [Simplicity Media Ltd] Re: Other recommended lists? Paul Schmehl Re: Other recommended lists? Cal Leeming [Simplicity Media Ltd] Re: Other recommended lists? Paul Schmehl Re: Other recommended lists? Cal Leeming [Simplicity Media Ltd] Re: Other recommended lists? Charles Morris Re: Other recommended lists? Jeffrey Walton Re: Other recommended lists? Paul Schmehl Re: Other recommended lists? Christian Sciberras [ MDVSA-2011:034 ] banshee security Re: University of Central Florida Multiple LFI Nikhil Mittal Re: Other recommended lists? Elazar Broad Re: Other recommended lists? Christian Sciberras Re: University of Central Florida Multiple LFI / Dirty Indian rant Nikhil Mittal Re: Other recommended lists? Elazar Broad Re: University of Central Florida Multiple LFI / Dirty Indian rant Eyeballing Weev Re: Other recommended lists? phocean AST-2011-002: Multiple array overflow and crash vulnerabilities in UDPTL code Asterisk Security Team Re: Other recommended lists? Pablo Ximenes www.eVuln.com : "time" SQL Injection vulnerability in WSN Guest Aliaksandr Hartsuyeu Re: Other recommended lists? Valdis . Kletnieks
CfP: Last Mile | ICCGI 2011 || June 19-24, 2011 - Luxembourg Alejandro Canovas Solbes [VIDEO] Insecurity Keylogger released! runlvl [ MDVSA-2011:035 ] tomboy security Re: [VIDEO] Insecurity Keylogger released! (runlvl) imacc - [USN-1068-1] Aptdaemon vulnerability Marc Deslauriers Vanilla Forums 2.0.17.1 ~ 2.0.17.5 <= Cross Site Scripting Vulnerability YGN Ethical Hacker Group Re: Pen-Testing Companies in Quebec corruption . addicts What the f*** is going on? Pietro de Medici Re: University of Central Florida Multiple LFI / Dirty Indian rant torrents torrents what to buy? Just1n T1mberlake AppSec USA 2011 Adam Baso Re: What the f*** is going on? Michal Zalewski Re: What the f*** is going on? root [USN-1069-1] Mailman vulnerabilities Marc Deslauriers Re: What the f*** is going on? Charles Morris [SECURITY] [DSA 2172-1] moodle security update Moritz Muehlenhoff Re: What the f*** is going on? Michal Zalewski
Re: What the f*** is going on? Chris Evans Developers should not rely on the stickiness of /tmp on Red Hat Linux Tavis Ormandy Re: What the f*** is going on? jf Re: What the f*** is going on? Michal Zalewski Re: What the f*** is going on? jf Re: What the f*** is going on? Michal Zalewski Re: What the f*** is going on? jf Re: What the f*** is going on? Michal Zalewski Re: What the f*** is going on? coderman Re: What the f*** is going on? Michal Zalewski Re: What the f*** is going on? jf Re: What the f*** is going on? jf Re: What the f*** is going on? Chris Evans Qualys Launches Open Source Web App Firewall Project sergio Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Multipoint Switch Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Recording Server Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Cisco Firewall Services Module Skinny Client Control Protocol Inspection Denial of Service Vulnerability Cisco Systems Product Security Incident Response Team Cisco Security Advisory: Multiple Vulnerabilities in Cisco TelePresence Manager Cisco Systems Product Security Incident Response Team [ MDVSA-2011:036 ] mailman security [USN-1070-1] Bind vulnerability Marc Deslauriers Released New Software - Mail Password Decryptor Nagareshwar Talekar Re: what to buy? Brandon McGinty Announcing NVD CVE parser for Ruby on Rails Dominik Elsbroek Re: What the f*** is going on? Pietro de Medici Re: Pen-Testing Companies in Quebec Pierre-Guy Lavoie [PRE-SA-2011-01] Multiple Linux kernel vulnerabilities in partition handling code of LDM and MAC partition tables Timo Warns Re: Announcing NVD CVE parser for Ruby on Rails Serkan Özkan ZDI-11-090: Novell Netware RPC XNFS xdrDecodeString Remote Code Execution Vulnerability ZDI Disclosures Re: What the f*** is going on? Michele Orru ZDI-11-091: (0day) Cisco Secure Desktop CSDWebInstaller Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-092: (0day) Cisco Secure Desktop CSDWebInstaller ActiveX Control Cleaner.cab Remote Code Execution Vulnerability ZDI Disclosures ZDI-11-093: CA Internet Security Suite HIPS XML Security Database Parser Class Remote Code Execution Vulnerability ZDI Disclosures
Re: Other recommended lists? Pete Smith XSSer v1.5 -beta- aka "Swarm Edition!" released. psy Re: What the f*** is going on? Chris Evans [ MDVSA-2011:037 ] avahi security Vulnerability in Cumulus for Drupal MustLive Re: What the f*** is going on? Paul Schmehl Re: What the f*** is going on? jf Re: What the f*** is going on? coderman [SPANISH] Curso Online y Presencial de penetration testing runlvl Re: What the f*** is going on? jf Re: What the f*** is going on? Michal Zalewski Re: What the f*** is going on? jf Re: What the f*** is going on? jf
Re: what to buy? McGhee, Eddie Exploit Acquisition Program Netragard Advisories Why should the presence of shebang (#!) freak out ANY security conscious guy? Security Conscious Re: Why should the presence of shebang (#!) freak out ANY security conscious guy? Dan Kaminsky Re: Why should the presence of shebang (#!) freak out ANY security conscious guy? Peter Maxwell glibc and alloca() Chris Evans CA20110223-01: Security Notice for CA Host-Based Intrusion Prevention System Williams, James K PHPShop 0.8.1 <= | Cross Site Scripting Vulnerability YGN Ethical Hacker Group Re: What the f*** is going on? Fredrick Diggle Re: What the f*** is going on? Valdis . Kletnieks Re: glibc and alloca() Maksymilian Arciemowicz [BMSA-2011-01] Insecure secure cookie in web.go Nam Nguyen Denial of Service vulnerability in Cewolf MustLive [USN-1071-1] Linux kernel vulnerabilities Marc Deslauriers Re: glibc and alloca() Graham Gower [USN-1072-1] Linux vulnerabilities Kees Cook [USN-1073-1] Linux kernel vulnerabilities Kees Cook
[USN-1074-1] Linux kernel vulnerabilities Kees Cook Released SpyDllRemover v4.5 - Spyware DLL Analysis & Removal Tool Nagareshwar Talekar
Re: Python ssl handling could be better... bk Regarding to the SMB bug - pathric due Re: Python ssl handling could be better... dave b [SECURITY] [DSA 2173-1] pam-pgsql security update Thijs Kinkhorst [SECURITY] [DSA 2174-1] avahi security update Thijs Kinkhorst Pragyan CMS Multiple Vulnerabilities Yuriy Khvyl looking for Network Trafic Monitoring software Gopi Nath Re: looking for Network Trafic Monitoring software Nick Boyce Re: Python ssl handling could be better... bk
Re: ZDI-11-091: (0day) Cisco Secure Desktop CSDWebInstaller Remote Code Execution Vulnerability psirt Re: ZDI-11-092: (0day) Cisco Secure Desktop CSDWebInstaller ActiveX Control Cleaner.cab Remote Code Execution Vulnerability psirt FreeBSD crontab information leakage Dan Rosenberg Re: Python ssl handling could be better... Michael Krymson Re: Python ssl handling could be better... Marsh Ray BackWPup Wordpress plugin <= 1.4.0 File content disclosure Danilo Massa [ MDVSA-2011:038 ] samba security Re: Python ssl handling could be better... bk [USN-1075-1] Samba vulnerability Marc Deslauriers [USN-1076-1] ClamAV vulnerability Marc Deslauriers [USN-1077-1] FUSE vulnerabilities Marc Deslauriers Vulnerabilities in phpMyAdmin MustLive [USN-1074-2] Linux kernel vulnerabilities Kees Cook weechat does not properly use gnutls and allow an attacker to bypass certificate verification JD Facebook URL Redirect Vulnerability Nathan Power III World War. - Broadcast Request. asmo CONFidence 2011- CfP only 6 days left, we are still waiting for your submission Andrzej Targosz buy information or exploit for ZDI-11-075/CVE-2011-0606 Софон Глазачев Re: Python ssl handling could be better... Brian Keefer Re: III World War. - Broadcast Request. Thor (Hammer of God) Re: III World War. - Broadcast Request. Christian Sciberras Re: III World War. - Broadcast Request. Michal Zalewski Re: Facebook URL Redirect Vulnerability Javier Bassi Re: III World War. - Broadcast Request. Valdis . Kletnieks Re: III World War. - Broadcast Request. Michele Orru [SECURITY] [DSA 2175-1] samba security update Moritz Muehlenhoff ZDI-11-094: (0 day) Hewlett-Packard StorageWorks File Migration Agent Remote Archive Tampering Vulnerability ZDI Disclosures
[USN-1078-1] Logwatch vulnerability Steve Beattie Re: [PSRT] Python ssl handling could be better... Barry Warsaw