Re: [Full-disclosure] Introducing TGP...

2010-06-15 Thread rembrandt
foir years... rmb -- rembrandt rembra...@jpberlin.de ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] [TOOL]TMAC for Linux-beta

2010-06-09 Thread rembrandt
/setmac_0.1.tar.gz/ Kind regards, Rembrandt ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] multiple vendor - PF NULL pointer dereference

2009-05-01 Thread rembrandt
-- _ _ _ _ ___ _ _ _ / / / / / / / _/_ __/ / / / / /_/ / __/ / // / / / / /_/ / / __ / /___/ // / / / / __ / /_/ /_/_/_/___/ /_/ /_/ /_/ Helith - 0815 Author : Rembrandt Date : 2009-04-30 Found: 2009-04-09 Affected Software: PF (OpenBSD Packet

[Full-disclosure] OpenBSD 4.3 up to OpenBSD-current: PF null pointer dereference kernel panic

2009-04-13 Thread rembrandt
regards, Rembrandt ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] Suspected default hardcoded root account in D-Link embedded Linux for the DAP1353 router

2009-03-22 Thread rembrandt
Passwd1 adminpasswd Kind regards, Rembrandt ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Suspected default hardcoded root account in D-Link embedded Linux for the DAP1353 router

2009-03-22 Thread rembrandt
, Rembrandt ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] Security contacts at Netgear and/or D-Link? (DoS, pos. default PWs and other issues)

2009-02-06 Thread rembrandt
together with the OSVDB to enter at least some valid contact data. Somebody interested into Router issues (and no it's no xss...)? The vendor itself seam to not to care about their customers or security... Kind regards, Rembrandt pgpJAS4jxELWR.pgp Description: PGP signature

[Full-disclosure] screen 4.03 password bypass vuln - UPDATE (for you sec dudes...)

2008-06-18 Thread rembrandt
, Rembrandt

Re: [Full-disclosure] Netgear SSL312 XSS vulnerability

2007-10-18 Thread rembrandt
don't answer any mail let me mention that in here And dear list: It's nothing about the XSS but about the NDA he brocke to release it... I'm sure if he wants to take his postings as reference this should get mentioned either Kind regards, Rembrandt (+ the friends you had) p.s. Greets go

[Full-disclosure] screen 4.0.3 local Authentication Bypass

2007-06-03 Thread rembrandt
Please take a look at the Attachement dear List moderator. :) Kind regards, Rembrandt

Re: [Full-disclosure] OpenSSH - System Account Enumeration if S/Key is used

2007-04-24 Thread rembrandt
On Tue, 24 Apr 2007 11:10:27 +0200 Stanislaw Klekot [EMAIL PROTECTED] wrote: On Sat, Apr 21, 2007 at 02:27:17AM +0200, rembrandt wrote: As you can see clearly OpenSSH discloses the existence of system accounts. A possible solution for this problem would be to print a fake S/Key-Request

Re: [Full-disclosure] JIKTO Full Disclosure

2007-04-04 Thread rembrandt
=] Well from my point of view it`s higly questionable that they keep the source so secret. In fact I´ve ssen Backdoors using JScript to spy out the user already in 2005. Somebody knows if they plan to release (everything) Jikto some day? Kind regards, Rembrandt

Re: [Full-disclosure] Idle scan rediscovered!!!

2006-05-05 Thread rembrandt
smurf was dead but MS 2003 Svr proofed us all wrong. (It was smurf..or? does not matter anyway..) ;) Rembrandt ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http

Re: [Full-disclosure] FrSIRT Puts Exploits up for Sale

2006-03-16 Thread rembrandt
the judgement will be clear.. and Frist will have another problem... So autors don´t have to care where the company is from. All the stuff - Add some As far as I know Laws change.. but something never changes.. Rembrandt ___ Full-Disclosure - We

Re: [Full-disclosure] Internet Explorer 0day

2006-03-15 Thread rembrandt
before that. Just to point it out clearly: http://www.openbsd.org/39.htm nc(1) now supports HTTP Proxy authentication, making it very useful as a ssh ProxyCommand. Kind regards, Rembrandt ___ Full-Disclosure - We believe in it. Charter: http

Re: [Full-disclosure] A CALL FOR FULL-DISCLOSURE TO BECOME A MODERATED LIST

2005-12-15 Thread Rembrandt
spam too much should get kicked of. But as I said.. if you smoke a pipe you'll get some ideas: You could delete e-Mails from such idiots. Or you could train bmf. ;-) Kind regards, Rembrandt - -- God did a bless on me, So accapt the dark side in you. Hate leads me to victory, so give me a war

Re: [Full-disclosure] A CALL FOR FULL-DISCLOSURE TO BECOME A MODERATED LIST

2005-12-15 Thread Rembrandt
others or even insult them. So with a gentleman-angreement we may could solve this. :) Kind regards, Rembrandt - -- God did a bless on me, So accapt the dark side in you. Hate leads me to victory, so give me a war. -BEGIN PGP SIGNATURE- Version: GnuPG v1.4.1 (OpenBSD

Re: [Full-disclosure] Spoof tricks Tips ?

2005-12-05 Thread Rembrandt
and everytime a break between them) would also help because then you can do a Full-Connect Scan to avoid the Detection of SYN-Scans. Just some ideas :-) Kind regards, Rembrandt -- God did a bless on me, So accapt the dark side in you. Hate leads me to victory, so give me a war. pgpznecJFctvP.pgp

Re: [Full-disclosure] Examples with Nemesis to test DoS DDoS?

2005-12-05 Thread Rembrandt
and e.g. -sF to use FIN-Packets. But that's just to stress the Stack a littlebit. Another usefull tool would be hping where you could create packets by yourself. Tools like isic and sing are maybe also helpfull for you. Kind regards, Rembrandt -- God did a bless on me, So accapt the dark side in you

Re: [Full-disclosure] Not the real n3td3v

2005-11-15 Thread Rembrandt
they do It's interesting how many people answer to such mails. Isn't it? ;-) Kind regards, Rembrandt ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] [FLSA-2005:158801] Updated bzip2 packages fix security issues

2005-11-14 Thread Rembrandt
not the only one. Kind regards, Rembrandt ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] [FLSA-2005:158801] Updated bzip2 packages fix security issues

2005-11-14 Thread Rembrandt
where patches could be announced. But maybe I'm too optimistic. Angreed :-) Kind regards, Rembrandt ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] [FLSA-2005:158801] Updated bzip2 packages fix security issues

2005-11-14 Thread Rembrandt
On Tue, 15 Nov 2005 02:32:32 + John Cartwright [EMAIL PROTECTED] wrote: On Tue, Nov 15, 2005 at 03:24:29AM +0100, Rembrandt wrote: Could you please stop mailing your Bug-Fix-Reports aka Package xyz updated to the Full*-Mailinglist? Hi Vendors are actively encouraged to provide