[Full-disclosure] [DoS] - Real-debrid.fr Torrent2ddl

2013-06-21 Thread Xpo Xpo
Real-debrid's a popular french website offering a debrid service for a lot of online hosting services, almost one hundred... It also proposes another service https://real-debrid.fr/torrents allowing you to upload torrent contents to a ddl hosting service (like Uptobox, Mega, ...), only available

Re: [Full-disclosure] Happy Birthday FreeBSD! Now you are 20 years old and your security is the same as 20 years ago... :)

2013-06-21 Thread Georgi Guninski
On Thu, Jun 20, 2013 at 03:57:20PM -0700, Kurt Buff wrote: On Thu, Jun 20, 2013 at 3:41 PM, valdis.kletni...@vt.edu wrote: On Thu, 20 Jun 2013 06:56:16 -0500, Mark Felder said: But does your exploit compile with clang? I'm gonna have to call Poe's Law on this one. I can't tell if

Re: [Full-disclosure] Happy Birthday FreeBSD! Now you are 20 years old and your security is the same as 20 years ago... :)

2013-06-21 Thread Jeffrey Walton
On Fri, Jun 21, 2013 at 7:48 AM, Georgi Guninski gunin...@guninski.com wrote: On Thu, Jun 20, 2013 at 03:57:20PM -0700, Kurt Buff wrote: ... i won moderate amount of beer from bets on when will freebsd ditch gcc from base?. fanatics took the bait and get mad at the observation freebsd

[Full-disclosure] DC4420 - London DEFCON - June meet - Lightning Talks!!! - Tuesday 25th June 2013

2013-06-21 Thread Tony Naggs
If you have prepared a Lightning Talk already, thanks we are looking forward to seeing you! Otherwise, you've got one last weekend ahead of you to dig out that project you *know* you've been dying to talk about but haven't quite got the rough edges off... This month we're doing our annual

[Full-disclosure] How to lock up a VirtualBox host machine with a guest using tracepath over virtio-net network interface

2013-06-21 Thread Thomas Dreibholz
Hi, I have discovered a problem with the VirtualBox virtio-net network driver that leads to a lockup of the host machine's kernel and the need for a hard reset to make it working again. The bug had been reported to the VirtualBox bug tracker 8 days ago

Re: [Full-disclosure] Happy Birthday FreeBSD! Now you are 20 years old and your security is the same as 20 years ago... :)

2013-06-21 Thread Hunger
:)) and with pcc too :) On Thu, Jun 20, 2013 at 1:56 PM, Mark Felder f...@feld.me wrote: On Wed, 19 Jun 2013 16:32:59 -0500, Hunger hun...@hunger.hu wrote: $ uname -a FreeBSD fbsd91x64 9.1-RELEASE FreeBSD 9.1-RELEASE #0 r243825: Tue Dec 4 09:23:10 UTC 2012

[Full-disclosure] [Newbie] How to search in all full-disclosure@lists.grok.org.uk

2013-06-21 Thread JOSE DAMICO
Hi, Is there a way to make full search by keyword in all full-disclosure@lists.grok.org.uk archive of messages? Best Regards, Yap ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and

[Full-disclosure] Exploit: McAfee ePolicy 0wner (ePowner) – Preview

2013-06-21 Thread Jérôme Nokin
Exploit demonstration against McAfee ePolicy Orchestrator version 4.6.5 and earlier using : - CVE-2013-0140 – Pre-authenticated SQL injection - CVE-2013-0141 – Pre-authenticated directory path traversal Main Features: - Remote command execution on the ePo server - Remote command execution on

Re: [Full-disclosure] [WEB SECURITY] DDoS attacks via other sites execution tool

2013-06-21 Thread Superman
This project has been temporarily blocked for exceeding its bandwidth threshold On Thu, Jun 20, 2013 at 8:25 AM, psy r...@lordepsylon.net wrote: Video example: http://ufonet.sourceforge.net/ufonet/UFONet-v0.1b.ogv Curiously, I posted a tool written in python the same day. It is called:

Re: [Full-disclosure] [Newbie] How to search in all full-disclosure@lists.grok.org.uk

2013-06-21 Thread Ryan Dewhurst
Maybe with Google: site:seclists.org inurl:fulldisclosure wordpress On Fri, Jun 21, 2013 at 4:38 PM, JOSE DAMICO jd.comm...@gmail.com wrote: Hi, Is there a way to make full search by keyword in all full-disclosure@lists.grok.org.uk archive of messages? Best Regards, Yap

Re: [Full-disclosure] [Newbie] How to search in all full-disclosure@lists.grok.org.uk

2013-06-21 Thread Carlos Pantelides
José: Is there a way to make full search by keyword in all   full-disclosure@lists.grok.org.uk archive of messages? site:http://lists.grok.org.uk full-disclosure KEYWORD   Carlos Pantelides @dev4sechttp://seguridad-agile.blogspot.com/___

Re: [Full-disclosure] DDoS attacks via other sites execution tool

2013-06-21 Thread Julius Kivimäki
So you made a perl script to make GET requests on a list of URLs? Brilliant. 2013/6/18 MustLive mustl...@websecurity.com.ua Hello participants of Mailing List. If you haven't read my article (written in 2010 and last week I wrote about it to WASC list) Advantages of attacks on sites with

Re: [Full-disclosure] How to lock up a VirtualBox host machine with a guest using tracepath over virtio-net network interface

2013-06-21 Thread Valdis . Kletnieks
On Fri, 21 Jun 2013 16:33:35 +0200, Thomas Dreibholz said: - The host system is a 64-bit Linux (tested with Ubuntu 12.04 LTS and Kubuntu What does 'uname -r' on the host return? This is almost certainly a bug in either the host network stack or the VirtualBox modules (probably one of the

Re: [Full-disclosure] [Newbie] How to search in all full-disclosure@lists.grok.org.uk

2013-06-21 Thread Jeffrey Walton
On Fri, Jun 21, 2013 at 10:38 AM, JOSE DAMICO jd.comm...@gmail.com wrote: Hi, Is there a way to make full search by keyword in all full-disclosure@lists.grok.org.uk archive of messages? In Google: search terms site:seclists.org/fulldisclosure Jeff

[Full-disclosure] DAVOSET v.1.0.6

2013-06-21 Thread MustLive
Hello participants of Mailing List. After releasing previous version of DAVOSET (http://lists.webappsec.org/pipermail/websecurity_lists.webappsec.org/2013-June/008850.html), I've released DAVOSET v.1.0.6 - DDoS attacks via other sites execution tool (http://websecurity.com.ua/davoset/), on

Re: [Full-disclosure] Exploit: McAfee ePolicy 0wner (ePowner) – Preview

2013-06-21 Thread Hurgel Bumpf
Better remove McAfee http://www.youtube.com/watch?v=bKgf5PaBzyg have a nice weekend! Coman the Bavarian Von: Jérôme Nokin jerome.no...@gmail.com An: full-disclosure@lists.grok.org.uk Gesendet: 8:55 Freitag, 21.Juni 2013 Betreff: [Full-disclosure] Exploit: