Re: [Full-Disclosure] IE is just as safe as FireFox

2004-11-18 Thread Georgi Guninski
On Wed, Nov 17, 2004 at 09:22:33PM -0500, joe wrote: Pro-Choice Let me choose if I even want a browser loaded thanks! what the fuck is this? we can chose such things on our os, who must let you choose? -- where do you want bill gates to go today?

RE: FW: [Full-Disclosure] Shadowcrew Grand Jury Indictment

2004-11-18 Thread Michael Simpson
a couple of things/adding to the noise I am from the UK and its clear to me that you don't understand the concept of freedom of information ! i am also from the uk and we have the most complete censorship of any democracy so it's clear that **WE** don't understand freedom of information also

Re: FW: [Full-Disclosure] Shadowcrew Grand Jury Indictment

2004-11-18 Thread Barrie Dempster
On Wed, 2004-11-17 at 23:19 +, n3td3v wrote: snip Imagine a child abuse site which also kept a score board of the biggest amount of child porn photo posters. Yet again we move onto malicious hacker online crimes, it seems to be different for zone-h to keep scores of the biggest malicious

[Full-Disclosure] Re: New whitepaper: Writing IA32 Restricted Instruction Set Shellcode Decoder Loops

2004-11-18 Thread Michael Vergoz
Hi, Nice paper. Some code examples should be great (i think). A question : what about false-disassembly into shellcode ? like : mov eax, eax [...] jmp false db 0xAA [...] false: mov eax, 1 int 0x80 [...] mv On 17 nov. 04, at 23:00, Peter Willis wrote: Hey, cool paper. Speaking of phrack, if in the

[Full-Disclosure] Re: Airport x-ray software creating images of phantom weapons?

2004-11-18 Thread Joel Merrick
On Tue, 2004-11-16 at 05:08 +, Jason Coombs wrote: My flight into Midway airport, Chicago, just sat on the runway for nearly two hours tonight because of a potential security breach in the terminal, described here:

[Full-Disclosure] FreeBSD Security Advisory FreeBSD-SA-04:16.fetch

2004-11-18 Thread FreeBSD Security Advisories
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 = FreeBSD-SA-04:16.fetch Security Advisory The FreeBSD Project Topic:

RE: FW: [Full-Disclosure] Shadowcrew Grand Jury Indictment

2004-11-18 Thread Cassidy Macfarlane
I'm sorry - I have re-read this email, trying to understand your position, however, I cannot avoid seeing this as a troll. Chld abusers, whether on- or off-line, cannot be compared to 'hackers', regardless of their hat colour preference. I do not believe there is anyone on this list who would

[Full-Disclosure] Re: RX171104 Cscope v15.5 and minors - symlink vulnerability - advisory, exploit and patch.

2004-11-18 Thread Hans-Bernhard Broeker
On Thu, 18 Nov 2004, rexolab wrote: VulnDiscovery: 2003/05/21 Release Date : 2004/11/17 Surely you're joking, Mr. Gangstuck. You can't seriously be telling us you sat on this for no less than 18 months, without telling anybody about it. Actually, I somewhat doubt you even

[Full-Disclosure] Openshh 3.x remote root exploit???

2004-11-18 Thread brian debottari
Title: Openshh 3.x remote root exploit??? I have been hearing rumors that there is something out for openssh 3.x, if so have any of you heard about it? Also I have this retarded kid who keeps messageing saying he is using nc netcat listening to my www boxs open ssh port for passwords. Any idea

[Full-Disclosure] [TURBOLINUX SECURITY INFO] 18/Nov/2004

2004-11-18 Thread Turbolinux
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 This is an announcement only email list for the x86 architecture. Turbolinux Security Announcement 18/Nov/2004 The following

Re: [Full-Disclosure] Re: New whitepaper: Writing IA32 Restricted Instruction Set Shellcode Decoder Loops

2004-11-18 Thread Berend-Jan Wever
Code examples ? Check out the Shellcode encoders source codes on my webpage. Cheers, SkyLined PS. please send any discussions on the paper in pm to [EMAIL PROTECTED] or #SkyLined on EFNet - Original Message - From: Michael Vergoz [EMAIL PROTECTED] To: Peter Willis [EMAIL PROTECTED]

[Full-Disclosure] Re: RX171104 Cscope v15.5 and minors - symlink vulnerability - advisory, exploit and patch.

2004-11-18 Thread rexolab
We are very serious in this matter as we already have discoused with you. We don't see why do you think we are joking ? We have found this vulnerability there's already eighteen month but we have find it in 15-4 release of cscope. The 15-5 version has the same problem Release date of

[Full-Disclosure] IE is just as safe as FireFox

2004-11-18 Thread Raoul Nakhmanson-Kulish
Hello, Stuart Fox (DSL AK)! Can the Firefox settings be controlled centrally? Yes, and more flexible than IE versions zoo at user computers. Download a Firefox ZIP (not Firefox_Setup_1.0.exe but Firefox 1.0.zip), unpack it to R/O share on file server, edit JS configuration files in .\defaults\pref

Re: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

2004-11-18 Thread Bart . Lansing
[EMAIL PROTECTED] wrote on 11/17/2004 02:55:08 PM: Hello list, Mission Impossible theme sounded weird (too weird) and so on... Tell me: why should these link be active after the UNITED STATES SECRET SERVICE Operation ? http://www.shadowcrew.com/phpBB2/login.php

[Full-Disclosure] [USN-29-1] samba vulnerability

2004-11-18 Thread Martin Pitt
=== Ubuntu Security Notice USN-29-1 November 18, 2004 samba vulnerability CAN-2004-0882 === A security issue affects the following Ubuntu releases: Ubuntu 4.10 (Warty

Re: [Full-Disclosure] IE is just as safe as FireFox

2004-11-18 Thread Borja Marcos
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Why is it that Microsoft's code has less quality even though all code that's written is instantly audited? (Each line of code is checked before it's 'passed' in to the code tree.) Design, design and design. Also, design. Writing programs isn't a

RE: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

2004-11-18 Thread Todd Towles
That is like asking...why docops pick up the phone atthe homeof a drug dealer? What do you think? They are getting the word out that if you were a part of this site..that you have not been forgotten. From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of [EMAIL

Re: [Full-Disclosure] IE is just as safe as FireFox

2004-11-18 Thread Raoul Nakhmanson-Kulish
Hello, Danny! So when you run the Firefox setup/installer, do you direct the installation to \\server\firefox, and then once installed, you modify only the two files Stuart Fox mentions? Read my first message in this topic. I don't run Firefox installer at all, on both workstation and server. I

Re: [in] Re: [Full-Disclosure] IE is just as safe as FireFox

2004-11-18 Thread Borja Marcos
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 However Mozilla in Linux is integrated at some level...so they are just the same as I.E. Could you please define integrated? English isn't my primary language... Borja. - --- Borja

Re: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

2004-11-18 Thread n3td3v
Ok, so it was the secret service who put a new homepage up, but have the secret service done this before with other sites, or is this the first time? I wish they wouldn't do it in future, its looks too we own you kid behaviour. Thanks,n3td3v ___

RE: [Full-Disclosure] For your pleasure

2004-11-18 Thread Todd Towles
Here is the English version via babelfish and tinyurl. In other words, the employee of Microsoft author of these sound files would have used a pirated version of the software SoundForge. http://tinyurl.com/5849c -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]

RE: [Full-Disclosure] WiFi question

2004-11-18 Thread Paul Schmehl
--On Wednesday, November 17, 2004 12:41:44 PM -0500 Lachniet, Mark [EMAIL PROTECTED] wrote: Could also be RF interference. One of my coworkers tracked down a particularly interesting problem with motion sensor lights. Turns out the motion sensors worked at the 240mhz range, which has resonance

RE: [Full-Disclosure] WiFi question

2004-11-18 Thread Lachniet, Mark
Okay, enough people commented on this that I had to dig out my documentation. FWIW, this is what my co-worked documented. My previous summary was not totally accurate. This was discovered by one of my co-workers, not myself. -snip From: [EMAIL PROTECTED] (name withheld to protect

Re: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

2004-11-18 Thread KF_lists
W theres sand in my vagina... I think I'll unsubscribe myself. STFU and subscribe to the moderated version. http://lists.seifried.org/mailman/listinfo/security As Skylined put it... if ya can't take the heat... get the fark out of the kitchen. And while you are at it cook something up

[Full-Disclosure] RE: For your pleasure

2004-11-18 Thread Paul Szabo
Original (source of) story in German at http://www.pcwelt.de/news/software/104785/ and their own English translation at http://www.pcwelt.de/know-how/sicherheit/104830/index.html : Gotcha: Did Microsoft use Warez for Windows XP? We examined some WAV files ... ... the files were

RE: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

2004-11-18 Thread raza
Guys you know what ? This mailing list and the dribble some people chat on it is p*SSing me off big time. This used to be a good list and some arse holes are bring the bullshit uprightness , politics and US government rules the world .. view to this otherwise excellent Security Info's. I had

RE: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

2004-11-18 Thread Todd Towles
But they do own them..lol Seriously.. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of n3td3v Sent: Thursday, November 18, 2004 10:03 AM To: [EMAIL PROTECTED] Subject: Re: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret

Re: FW: [Full-Disclosure] Shadowcrew Grand Jury Indictment

2004-11-18 Thread Rob klein Gunnewiek
n3td3v: go troll somewhere else, there are probably more idiots like you who love bullshit like that -- Rob klein Gunnewiek ___ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html

RE: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

2004-11-18 Thread raza
The only thing you shud be served is a big...fu** off...lame person -Original Message- From: KF_lists [mailto:[EMAIL PROTECTED] Sent: 18 November 2004 20:00 To: raza Cc: 'n3td3v'; [EMAIL PROTECTED] Subject: Re: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

Re: [Full-Disclosure] Administrivia: Fool Disclosure

2004-11-18 Thread dveditz
Frank Knobbe wrote: Which leads to the question, which is a safe graphics file format? BMP perhaps? No: http://lists.netsys.com/pipermail/full-disclosure/2004-September/026187.html ___ Full-Disclosure - We believe in it. Charter:

Re: [Full-Disclosure] Administrivia: Fool Disclosure

2004-11-18 Thread KF_lists
all your graphic files are belong to us. -KF [EMAIL PROTECTED] wrote: Frank Knobbe wrote: Which leads to the question, which is a safe graphics file format? BMP perhaps? No: http://lists.netsys.com/pipermail/full-disclosure/2004-September/026187.html

Re: [Full-Disclosure] You have sent the attached unsolicited e-mail to an otherwise GOOD security email list.

2004-11-18 Thread bkfsec
Michael Evanchik wrote: I have no problem with this list. I use a tool to passively filter this list the same that I do for the spam problem that has taken over planet earth In your email client there is a button that will take care of this for you. Look for something in the respects of

[Full-Disclosure] [ GLSA 200411-27 ] Fcron: Multiple vulnerabilities

2004-11-18 Thread Luke Macken
- - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Gentoo Linux Security Advisory GLSA 200411-27 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - http://security.gentoo.org/ - - - - -

[Full-Disclosure] MDKSA-2004:136 - Updated samba packages fix remote vulnerability

2004-11-18 Thread Mandrake Linux Security Team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandrakelinux Security Update Advisory ___ Package name: samba Advisory ID:

[Full-Disclosure] University Researchers Challenge Bush Win In Florida

2004-11-18 Thread Jason Coombs
University Researchers Challenge Bush Win In Florida According to researchers at the University of California, Berkeley, counties with electronic voting machines were significantly more likely to show increased support for President Bush compared to counties with paper ballots or optical scan

[Full-Disclosure] Gmail anomaly

2004-11-18 Thread ifconfig_xl0
This is not a security risk but a weirdness worth noting. I reported it as a bug to gmail but im not sure if its a bug on their part it may be firefox not doing something right. If you open two gmail accounts in two different firebird/fox browsers the first account logged into after a refresh

[Full-Disclosure] [USN-30-1] Linux kernel vulnerabilities

2004-11-18 Thread Martin Pitt
=== Ubuntu Security Notice USN-30-1 November 18, 2004 linux-source-2.6.8.1 vulnerabilities CAN-2004-0883, CAN-2004-0949, and others === A security issue affects the following

[Full-Disclosure] Compressed files overflow

2004-11-18 Thread Miguel Tarascó Acuña
Microsoft Windows Vulnerability in Compressed (zipped) Folders (MS04-034) attached is a POC of this vulnerability.. How to get new offsets: 1) attach debugger (i.e ollydbg) to explorer.exe 2) open the zip file as a folder and add or move some files to it 3) search in the explorer.exe

Re: [in] Re: [Full-Disclosure] IE is just as safe as FireFox

2004-11-18 Thread GuidoZ
In case no one else helped you with this, allow me to try. =) Could you please define integrated? English isn't my primary language... Integrated is similar to saying is part of or united. For future reference (and more info), Google can also be extremely handy in such a case. Doing a Google

Re: [Full-Disclosure] Gmail anomaly

2004-11-18 Thread Micheal Espinola Jr
Yep, something is awry with Firefox's cookie management. it pisses me off. I disconnect from a site (close the browser), but the next time I open FF, all my cookies are acting as if they are still live. The Maxthon add-on for IE does the same thing Its annoying as hell when you are testing

Re: [Full-Disclosure] Re: controversial shadowcrew site hacked by secret service?

2004-11-18 Thread GuidoZ
I'm not trying to take sides, although KF has made a very good point. I see a handful of people complaining about the list. Face the facts: it's unmoderated. That was a known fact when we all signed up and shouldn't be overlooked now. Allow me to elaborate a bit. Obviously it's your choice to