Re: [Full-disclosure] so this is FD...

2008-06-30 Thread Tonnerre Lombard
Salut, Lucio Crusca, On Fri, 27 Jun 2008 08:46:19 +, Lucio Crusca wrote: > I've been reading bugtraq in several short periods of my life, from Please note that the idea behind full-disclosure and bugtraq is quite a bit different, so you cannot really compare the two. Basically it boils down t

Re: [Full-disclosure] "what have you released..."

2008-06-30 Thread Mary and Glenn Everhart
ull-disclosure] Save Gary Mckinnon > To: full-disclosure@lists.grok.org.uk > Message-ID: > <[EMAIL PROTECTED]> > Content-Type: text/plain; charset="iso-8859-1" > > Gary Mckinnon is going to be locked away for 64 years for doing a default > password scan of the

Re: [Full-disclosure] Save Gary Mckinnon

2008-06-30 Thread Ureleet
apparently you have no idea what gary mckinnon did. you need to read some more articles. On Sun, Jun 29, 2008 at 10:04 PM, n3td3v <[EMAIL PROTECTED]> wrote: > Gary Mckinnon is going to be locked away for 64 years for doing a default > password scan of the U.S military. > > We need to save this gu

[Full-disclosure] I've Seen the Future, and It Has a Kill Switch

2008-06-30 Thread Ivan .
http://www.wired.com/politics/security/commentary/securitymatters/2008/06/securitymatters_0626 ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] Endless loop in Soldner 33724

2008-06-30 Thread Luigi Auriemma
### Luigi Auriemma Application: SÖLDNER - Secret Wars http://www.secretwars.net http://soldner.jowood.com Versions: <= 33724 Platforms:Windows Bug: endle

[Full-disclosure] Recent SSH Scan IP's

2008-06-30 Thread James Lay
For those that care...it¹s just a list of the recent SSH scan storm that¹s been happening the last couple days..pulled fresh from the log files today. Enjoy if it¹s useful to you, pretend this never happened if not. James 122.52.185.49 124.30.157.4 134.34.57.150 140.114.75.12 147.99.127.82 157.22

[Full-disclosure] [USN-617-2] Samba regression

2008-06-30 Thread Jamie Strandboge
=== Ubuntu Security Notice USN-617-2 June 30, 2008 samba regression CVE-2008-1105, https://bugs.launchpad.net/bugs/241448 === A security issue affects the following Ubuntu

[Full-disclosure] Fa Name version 1.0 Multiple XSS Attack Vulnerabilities

2008-06-30 Thread securityresearch
netVigilance Security Advisory #43 Fa Name version 1.0 Multiple XSS Attack Vulnerabilities Description: Fa Name (http://webscripts.softpedia.com/script/Content-Management/Fa-Name-41229.html) is useful portal (CMS) for .name websites. You can have a simple portal but useful one for you domain na

[Full-disclosure] Fa Name version 1.0 SQL Injection Vulnerability

2008-06-30 Thread securityresearch
netVigilance Security Advisory #42 Fa Name version 1.0 SQL Injection Vulnerability Description: Fa Name (http://webscripts.softpedia.com/script/Content-Management/Fa-Name-41229.html) is useful portal (CMS) for .name websites. You can have a simple portal but useful one for you domain names and

[Full-disclosure] Fa Name version 1.0 Path Disclosure Vulnerability

2008-06-30 Thread securityresearch
netVigilance Security Advisory #41 Fa Name version 1.0 Path Disclosure Vulnerability Description: Fa Name (http://webscripts.softpedia.com/script/Content-Management/Fa-Name-41229.html) is useful portal (CMS) for .name websites. You can have a simple portal but useful one for you domain names an

[Full-disclosure] myBloggie version 2.1.6 Multiple Path Disclosure Vulnerabilities

2008-06-30 Thread securityresearch
*netVigilance Security Advisory #39* *myBloggie version 2.1.6 Multiple Path Disclosure Vulnerabilities* *Description:* myBloggie is considered one of the most simple, user-friendliest yet packed with features Weblog system available to date. Built using

[Full-disclosure] myBloggie version 2.1.6 Multiple SQL Injection Vulnerability

2008-06-30 Thread securityresearch
netVigilance Security Advisory #40 myBloggie version 2.1.6 Multiple SQL Injection Vulnerability Description: myBloggie (http://mywebland.com/mybloggie/) is considered one of the most simple, user-friendliest yet packed with features Weblog system available to date. Built using PHP & mySQL, web m

Re: [Full-disclosure] Let's make a spy-proof communications infrastructure

2008-06-30 Thread Valdis . Kletnieks
On Sun, 29 Jun 2008 22:25:06 BST, n3td3v said: > The biggest government hack of all time? Some faggot weirdo called Gary > Mckinnon probing the Pentagon and other government networks with a text file > of manufacturer default passwords, and he is about to be extradited to the > U.S.A for it and be