<rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Daily Dave (dailydave) Mailing List</title>
<link>http://seclists.org/#dailydave</link>
<atom:link href="http://seclists.org/rss/dailydave.rss" rel="self" type="application/rss+xml" />
<description>This technical discussion list covers vulnerability research, exploit development, and security events/gossip.  It was started by ImmunitySec founder Dave Aitel and many security luminaries particpate.  Many posts simply advertise Immunity products, but you can&#39;t really fault Dave for being self-promotional on a list named DailyDave.</description>
<language>en-us</language><ttl>60</ttl>
<item><title>Citrix, PHP, SyScan,</title><description>Posted by Dave Aitel on Jul 3&lt;p&gt;


&lt;p&gt;
The sign of a good hacker is often that they make it look really stinkin&#39;
&lt;br /&gt;
easy. Like today at SyScan 09 (Singapore) Brett Moore went from &amp;quot;remote
&lt;br /&gt;
anonymous&amp;quot; to &amp;quot;domain admin&amp;quot; in about 5 clicks using various Citrixy things
&lt;br /&gt;
(live demos are fun!). As he says &amp;quot;You can...</description>
<link>http://seclists.org/dailydave/2009/q3/0001.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q3/0001.html</guid>
<pubDate>Fri, 3 Jul 2009 07:06:06 -0400</pubDate></item>
<item><title>Re:  So shellcode work is phun</title><description>Posted by Dave Aitel on Jun 30&lt;p&gt;


&lt;p&gt;
So today, in class, at the very end of the day, one of the students go his
&lt;br /&gt;
bindshell working. And he was connecting to it happily and quite pleased
&lt;br /&gt;
with himself and checking out his admin cmd.exe in taskmanager until we
&lt;br /&gt;
pointed out that he should probably bind to localhost instead of 0.0.0.0,...</description>
<link>http://seclists.org/dailydave/2009/q2/0145.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0145.html</guid>
<pubDate>Tue, 30 Jun 2009 11:28:00 -0400</pubDate></item>
<item><title>Re:  So shellcode work is phun</title><description>Posted by Chris Eagle on Jun 29&lt;p&gt;


&lt;p&gt;
Perhaps relevant:
&lt;br /&gt;
&lt;p&gt;http://www.harmonysecurity.com/blog/2009/06/retrieving-kernel32s-base-address.html
&lt;br /&gt;
&lt;p&gt;Chris
&lt;br /&gt;
&lt;p&gt;Jared DeMott wrote:
&lt;br /&gt;
&amp;gt; Dear Dave,
&lt;br /&gt;
&amp;gt; 
&lt;br /&gt;
&amp;gt; Just for phun, I sat down to test a simple popup calc shellcode on
&lt;br /&gt;
&amp;gt; Windows 7 RC today and it pooped.  I verified that it worked on...</description>
<link>http://seclists.org/dailydave/2009/q2/0144.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0144.html</guid>
<pubDate>Mon, 29 Jun 2009 00:42:09 -0700</pubDate></item>
<item><title>Google has a Cloud and You have a Fog part 2 :gt</title><description>Posted by Dave Aitel on Jun 29&lt;p&gt;


&lt;p&gt;
Great blog on the subject of scalability from the ops manager at Google.
&lt;br /&gt;
http://vijaygill.wordpress.com/
&lt;br /&gt;
&lt;p&gt;Article on recent talk (well worth reading):
&lt;br /&gt;
Basically, Vijay Gill is like &amp;quot;Yeah, you&#39;re doing it wrong&amp;quot; to the guys who
&lt;br /&gt;
run the infrastructure for Microsoft and Yahoo. You can&#39;t...</description>
<link>http://seclists.org/dailydave/2009/q2/0143.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0143.html</guid>
<pubDate>Mon, 29 Jun 2009 03:11:19 -0400</pubDate></item>
<item><title>SOURCE Barcelona Speaker Line-Up</title><description>Posted by Christien Rioux on Jun 28&lt;p&gt;


&lt;p&gt;
&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;SOURCE Barcelona 2009 Announcement
&lt;br /&gt;...</description>
<link>http://seclists.org/dailydave/2009/q2/0142.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0142.html</guid>
<pubDate>Sun, 28 Jun 2009 20:32:12 -0400</pubDate></item>
<item><title>Shakacon III - Presentations Posted to site</title><description>Posted by Shakacon on Jun 27&lt;p&gt;


&lt;p&gt;
Aloha from Hawaii and the Shakacon 2009 Crew:
&lt;br /&gt;
&lt;p&gt;All speaker presentations have been posted to http://www.shakacon.org.
&lt;br /&gt;
Enjoy!
&lt;br /&gt;
&lt;p&gt;Selected audio to be posted in the next Month or so.
&lt;br /&gt;
&lt;p&gt;Shakacon the Home of:
&lt;br /&gt;
-Sun
&lt;br /&gt;
-Surf
&lt;br /&gt;
-C Shells
&lt;br /&gt;
&lt;p&gt;See you next year!
&lt;br /&gt;
&lt;p&gt;This message contains confidential information...</description>
<link>http://seclists.org/dailydave/2009/q2/0141.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0141.html</guid>
<pubDate>Sat, 27 Jun 2009 14:07:08 -1000</pubDate></item>
<item><title>Metasploit Track at Blackhat</title><description>Posted by val smith on Jun 22&lt;p&gt;


&lt;p&gt;
Just thought some of you might be interested, after tons of work and
&lt;br /&gt;
coordination it&#39;s official, we will have a full day Metasploit track
&lt;br /&gt;
at Black Hat this year.
&lt;br /&gt;
http://www.blackhat.com/html/bh-usa-09/bh-usa-09-schedule.html. Dino,
&lt;br /&gt;
cg, egypt, I)ruid, myself and several others will be...</description>
<link>http://seclists.org/dailydave/2009/q2/0140.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0140.html</guid>
<pubDate>Mon, 22 Jun 2009 22:34:15 -0600</pubDate></item>
<item><title>So shellcode work is phun</title><description>Posted by Jared DeMott on Jun 26&lt;p&gt;


&lt;p&gt;
Dear Dave,
&lt;br /&gt;
&lt;p&gt;Just for phun, I sat down to test a simple popup calc shellcode on
&lt;br /&gt;
Windows 7 RC today and it pooped.  I verified that it worked on XP and
&lt;br /&gt;
Vista, and thought darn ... now I&#39;m going to have to see why it failed
&lt;br /&gt;
on Windows 7 and email H D Moore.  Anyone else seen this or am I on
&lt;br /&gt;...</description>
<link>http://seclists.org/dailydave/2009/q2/0139.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0139.html</guid>
<pubDate>Fri, 26 Jun 2009 14:16:43 -0400</pubDate></item>
<item><title>web browser cloud computing (Opera with upnp)</title><description>Posted by RQDQ on Jun 16&lt;p&gt;


&lt;p&gt;
The norwegians are up to something...
&lt;br /&gt;
Opera launched this today:
&lt;br /&gt;
&lt;p&gt;http://www.opera.com/press/releases/2009/06/16/
&lt;br /&gt;
&lt;p&gt;Which is short terms sums up to be:
&lt;br /&gt;
&lt;p&gt;- &amp;quot;Webserver&amp;quot; in the web browser
&lt;br /&gt;
- Launch listening applications (like chat) and share info, files, 
&lt;br /&gt;
data through the browser
&lt;br /&gt;
-...</description>
<link>http://seclists.org/dailydave/2009/q2/0138.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0138.html</guid>
<pubDate>Tue, 16 Jun 2009 20:22:20 +0200</pubDate></item>
<item><title>Scalability - youre doing it wrong! (Or why Ants dont talk)</title><description>Posted by Dave Aitel on Jun 16&lt;p&gt;


&lt;p&gt;
A while back someone I knew was trying to solve some sort of crypto-related
&lt;br /&gt;
problem. He ended up saying &amp;quot;I can do it quickly and easily if it&#39;s under 40
&lt;br /&gt;
bits&amp;quot; at which point another mathematician friend of mine rolled her eyes
&lt;br /&gt;
and said &amp;quot;If it&#39;s that small, just exhaust.&amp;quot;
&lt;br /&gt;
&lt;p&gt;...</description>
<link>http://seclists.org/dailydave/2009/q2/0137.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0137.html</guid>
<pubDate>Tue, 16 Jun 2009 10:19:18 -0400</pubDate></item>
<item><title>Re:  [Full-disclosure] Apple QuickTime 0day</title><description>Posted by Jared DeMott on Jun 15&lt;p&gt;


&lt;p&gt;
Excellent.  Doesn&#39;t trigger on Mac.  I just did a talk on QuickTime
&lt;br /&gt;
hacking at ShakaCon III -- which btw -- can I just say &amp;quot;best place for a
&lt;br /&gt;
&amp;nbsp;con ever!&amp;quot;.  My slides are at www.vdalabs.com.  The slides might give
&lt;br /&gt;
you some insight into the types of exceptions you&#39;re hoping for....</description>
<link>http://seclists.org/dailydave/2009/q2/0136.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0136.html</guid>
<pubDate>Mon, 15 Jun 2009 16:36:41 -0400</pubDate></item>
<item><title>Re:  XSS10000</title><description>Posted by Nate Lawson on Jun 12&lt;p&gt;


&lt;p&gt;
Rauc wrote:
&lt;br /&gt;
&amp;gt;&amp;gt; I have to admit this is in the top 10 &amp;quot;hacking contest&amp;quot; fails of all
&lt;br /&gt;
&amp;gt;&amp;gt; time. 
&lt;br /&gt;
&amp;gt; 
&lt;br /&gt;
&amp;gt; I am not sure that this is really a fail. For only $10k, he managed to
&lt;br /&gt;
&amp;gt; get a penetration test that involved numbers of hackers. Sure the
&lt;br /&gt;
&amp;gt; product failed to...</description>
<link>http://seclists.org/dailydave/2009/q2/0135.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0135.html</guid>
<pubDate>Fri, 12 Jun 2009 14:32:09 -0700</pubDate></item>
<item><title>Re:  Web Security Is Hard</title><description>Posted by Nate Lawson on Jun 12&lt;p&gt;


&lt;p&gt;
Jamie Riden wrote:
&lt;br /&gt;
&amp;gt; OK, might as well run this by everyone.
&lt;br /&gt;
&amp;gt; 
&lt;br /&gt;
&amp;gt; IV ++ AES/CBC/PKCS7 padding - encrypted block ++ SHA1-HMAC of secret data
&lt;br /&gt;
&amp;gt; 
&lt;br /&gt;
&amp;gt; if the HMAC doesn&#39;t come out same as computed for decrypt we just
&lt;br /&gt;
&amp;gt; abort. What&#39;s wrong with the above? (assuming we get our...</description>
<link>http://seclists.org/dailydave/2009/q2/0134.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0134.html</guid>
<pubDate>Fri, 12 Jun 2009 14:29:04 -0700</pubDate></item>
<item><title>CFP: ComputationWorld 2009, November 15-20, 2009 - Athens, Greece</title><description>Posted by Jaime Lloret Mauri on Jun 11&lt;p&gt;


&lt;p&gt;
INVITATION
&lt;br /&gt;
&lt;p&gt;Please consider to contribute and encourage your team members and fellow
&lt;br /&gt;
scientists to contribute to the following federated events.
&lt;br /&gt;
&lt;p&gt;Thanks for forwarding the information on this Call for Submissions to
&lt;br /&gt;
those potentially interested to submit.
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;===== Call for Submissions =======
&lt;br /&gt;
&lt;p&gt;...</description>
<link>http://seclists.org/dailydave/2009/q2/0133.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0133.html</guid>
<pubDate>Thu, 11 Jun 2009 23:59:15 +0200</pubDate></item>
<item><title>CFP: ComputationWorld 2009, November 15-20, 2009 - Athens, Greece</title><description>Posted by Jaime Lloret Mauri on Jun 11&lt;p&gt;


&lt;p&gt;
INVITATION
&lt;br /&gt;
&lt;p&gt;Please consider to contribute and encourage your team members and fellow
&lt;br /&gt;
scientists to contribute to the following federated events.
&lt;br /&gt;
&lt;p&gt;Thanks for forwarding the information on this Call for Submissions to
&lt;br /&gt;
those potentially interested to submit.
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;===== Call for Submissions =======
&lt;br /&gt;
&lt;p&gt;...</description>
<link>http://seclists.org/dailydave/2009/q2/0132.html</link><guid isPermaLink="true">http://seclists.org/dailydave/2009/q2/0132.html</guid>
<pubDate>Thu, 11 Jun 2009 23:53:40 +0200</pubDate></item>
</channel></rss>