Re: [Full-disclosure] n3td3v warns sans is being brought into disrepute by pauldotcom

2008-11-09 Thread Daniel Marsh
On Mon, Nov 10, 2008 at 12:29 AM, n3td3v <[EMAIL PROTECTED]> wrote:

> This isn't n3tcr4p, this is a wide issue shared by many people
> including a british telecom engineer.
>
> http://lists.grok.org.uk/pipermail/full-disclosure/2008-October/065252.html
>
> n3td3v will not be 'getting the fuck out of here' i'll be here for ten
> years or more. im here for the long term.
>
> On Sun, Nov 9, 2008 at 2:10 AM, waveroad waveroad <[EMAIL PROTECTED]>
> wrote:
> > No one care about n3tcr4p
> >
> > Get the fuck out of here.
> >
> >
> >
> >
> >
> >
> >
> >
> >
> >
> >
> >
> >
> > 2008/11/8, Biz Marqee <[EMAIL PROTECTED]>:
> >>
> >> Dont worry about n3td3v, hes probably been up all night abusing drugs
> and
> >> cant find his return key... that or hes typing one handed trying to fend
> off
> >> his fathers sex attacks.
> >>
> >> On Sun, Nov 9, 2008 at 10:26 AM, nnp <[EMAIL PROTECTED]> wrote:
> >>>
> >>> Idiot says something about group I haven't heard of.
> >>>
> >>> Learn to use line breaks arsehole!
> >>>
> >>> On Sat, Nov 8, 2008 at 6:47 PM, n3td3v <[EMAIL PROTECTED]> wrote:
> >>> > pauldotcom are gangsters masquerading as security professionals, this
> >>> > is the opinion of n3td3v. they have a bad name not only because of
> >>> > n3td3v but its widely thought by others that pauldotcom are
> >>> > questionable entities, this is why n3td3v believes that its a bad
> >>> > thing that sans are associated with them, and in time could start to
> >>> > bring down the respected name of the sans institute. there are
> already
> >>> > misdemeanors who have managed to get into sans through the internet
> >>> > storm center door who are in support of pauldotcom enterprises.
> n3td3v
> >>> > predicts the longer sans are associated with pauldotcom the greater
> >>> > they eat away at the credibility and respect that sans built up
> before
> >>> > pauldotcom came onto the scene. there are good people at sans and
> this
> >>> > is why n3td3v is concerned that the good people at sans are being
> >>> > bought into disrepute because of pauldotcom and entities who have
> >>> > crept into sans through the sans handlers gateway. n3td3v suggests
> >>> > both sides consider their positions before moving forward and having
> >>> > future association with one another. there have been multiple reports
> >>> > on the full-disclosure list that pauldotcom hasn't been upto scratch,
> >>> > its time for sans to start to take feedback seriously that is being
> >>> > presented to them and consider dropping pauldotcom as a partner of
> the
> >>> > sans brand.
> >>> >
> >>> > ___
> >>> > Full-Disclosure - We believe in it.
> >>> > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> >>> > Hosted and sponsored by Secunia - http://secunia.com/
> >>> >
> >>>
> >>>
> >>>
> >>> --
> >>> http://www.unprotectedhex.com
> >>> http://www.smashthestack.org
> >>>
> >>> ___
> >>> Full-Disclosure - We believe in it.
> >>> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> >>> Hosted and sponsored by Secunia - http://secunia.com/
> >>
> >>
> >> ___
> >> Full-Disclosure - We believe in it.
> >> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> >> Hosted and sponsored by Secunia - http://secunia.com/
> >
> >
> > ___
> > Full-Disclosure - We believe in it.
> > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > Hosted and sponsored by Secunia - http://secunia.com/
> >
>
> ___
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>
Your face, it's diseased.

You're a dickhead.

You can't cure what you are or how you look.

But you can commit suicide.

Try it.


-- 

http://buymeahouse.stiw.org/
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] security industry software license

2008-10-21 Thread Daniel Marsh
You do care
That is why you replied

On 10/21/08, n3td3v <[EMAIL PROTECTED]> wrote:
> On Mon, Oct 20, 2008 at 2:45 PM,  <[EMAIL PROTECTED]> wrote:
>> Either I'm on your list, or I'm not.  Make up your mind.
>>
>
> I don't care anymore, I really don't care.
>
> ___
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>

-- 
Sent from Gmail for mobile | mobile.google.com


http://buymeahouse.stiw.org/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Geeks

2008-05-19 Thread Daniel Marsh
On Tue, May 20, 2008 at 10:06 AM, Paul Schmehl <[EMAIL PROTECTED]> wrote:

> --On May 19, 2008 3:50:37 PM -0400 Elazar Broad <[EMAIL PROTECTED]>
> wrote:
>
> > Yea, and there are plenty that can't even set up their own home
> > network...
> >
>
> If that's true, I'm sure you can name a few.
>
> Or are you all hot air like two thirds of the bozos that constantly post
> to this list?
>
> Paul Schmehl ([EMAIL PROTECTED])
> Senior Information Security Analyst
>

As Jeff Wilder said before, it's a management certification.
As someone else has said, CISSP provides a baseline for others to make
assessment of your knowledge.

Two people, both achieved CISSP certification, one took 15 years of work in
the industry, and failed the exam once. The other graduated from uni and
passed the exam on the first try.

Their knowledge is not the same, the guy that graduated from university and
passed simply has a photographic memory.

It's to provide a baseline, it's like saying that everyone that graduates
from high school is of the same intelligence as everyone else who graduated
that year... it's a baseline.

Warning, my fud below...
A director at another company I was talking with told me a story how he and
a friend had to sit an exam the next day, the Director had studied all the
material thoroughly, the other guy didn't, and didn't even study one of the
core subjects of the exam criteria.
The other guy studied the material the night before (the material he didn't
study earlier) for two hours and passed. The Director failed by 7 points.

The Director asked his friend how he passed when he didn't study the
material and just read it the night before... his friends reply "I have a
photographic memory, in 3 months I won't remember a thing".
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Is this an attack?

2007-10-14 Thread Daniel Marsh
On 10/15/07, Kelly Robinson <[EMAIL PROTECTED]> wrote:
>
> In the Control Field of a TCP segment I noticed the following values:
>
> URG 0
> ACK 0
> PSH 0
> RST 0
> SYN 1
> FIN 1
>
> I assume the checksum is OK, is this an attack packet? If not, why not? If
> so, what is the attacker probably trying to achieve?
>

SYN/FIN portscan.
Someone simply portscanning you or a huge range of hosts looking for a
particular service.
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] New term "RDV" is born

2007-09-28 Thread Daniel Marsh
On 9/28/07, Jimby Sharp <[EMAIL PROTECTED]> wrote:
>
> I am a system administrator and I find this list full of noise due to
> people like you.
>
> On 9/28/07, Knud Erik Højgaard <[EMAIL PROTECTED]> wrote:
> > I am a system administrator and I find this list full of noise due to
> > people like you.
> > --
> >
> > On 9/28/07, Jimby Sharp <[EMAIL PROTECTED]> wrote:
> > > Stop your stupid bullshit. If you have no work to do, create your own
> > > mailing list and post your bullshit there. We have better things to do
> > > than think about stupid names.
> > >
> > > If the media thinks that hackers are always evil, it is because of
> > > stupid people like you, who have nothing good to contribute or discuss
> > > but create confusion and propaganda over nothing.
> > >
> > > I am a system administrator and I find this list full of noise due to
> > > people like you. Could someone please ban this insane person called
> > > worriedsecurity?
> > >
> > > On 9/28/07, worried security <[EMAIL PROTECTED]> wrote:
> > > > On 9/27/07, T Biehn <[EMAIL PROTECTED]> wrote:
> > > > > Genius!
> > > >
> > > >
> > > > Billy: Wow, thats a cool 0-day.
> > > >
> > > > Joe: You mean an RDV.
> > > >
> > > > Billy: What?
> > > >
> > > > Joe: Only the bad guys call it 0-day now, haven't you heard?
> > > >
> > > > Billy: Nope.
> > > >
> > > > Joe: Yeah Gadi Evron and friends didn't like the term 0-day anymore,
> because
> > > > it sounds too evil elite hacker and not whitehat enough, so n3td3v
> came up
> > > > with "RDV".
> > > >
> > > > Billy: So who is n3td3v?
> > > >
> > > > Joe: A guy in the underground who keeps getting blamed for being
> some dude
> > > > called Gobbles.
> > > >
> > > > Billy: Oh right, i'm a whitehat, so I better start replacing 0-day
> with RDV
> > > > now. I want to be politically correct and don't want to be mistaken
> as a
> > > > blackhat, because only blackhats call it 0-day now.
> > > >
> > > > Joe: Yes, not everyone likes n3td3v, but its kind of catchy, so
> people kept
> > > > with "RDV".
> > > >
> > > > Billy: Yeah, thats sweet.
> > > >
> > > > Joe: Exactly. Us whitehats have got to stick together and distance
> ourselves
> > > > from catchphrases thought up by the evil blackhat community.
> > > >
> > > > Billy: Whitehats rule! Down with the blackhats.
> > > >
> > > > Joe: Whitehat supremacy, way to go!
> > > >
> > > > ___
> > > > Full-Disclosure - We believe in it.
> > > > Charter:
> > > > http://lists.grok.org.uk/full-disclosure-charter.html
> > > > Hosted and sponsored by Secunia - http://secunia.com/
> > > >
> > >
> > > ___
> > > Full-Disclosure - We believe in it.
> > > Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> > > Hosted and sponsored by Secunia - http://secunia.com/
> > >
> >
>
> ___
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>

I am a system administrator and I find this list full of noise due to
people like you.
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] CISSP

2007-06-18 Thread Daniel Marsh

On 6/19/07, Bozo Bad <[EMAIL PROTECTED]> wrote:


http://www.cissp.com/store/search.asp?s=%3Cscript%3Ealert(%22Look,mamma,
I'm a CISSP!%22)%3C/script%3E
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



That's a beautiful thing.
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] A Story about my Childhood: Destionation Whitehat

2007-05-17 Thread Daniel Marsh

On 5/17/07, Open Phugu <[EMAIL PROTECTED]> wrote:


On 5/16/07, Ross Brown <[EMAIL PROTECTED]> wrote:
> Aliso Viejo, CA - This is a story about my childhood, my sister and
removed load of crap
> With love, Ross Brown, 42 year resident of Aliso Viejo, California,
ex-eEye CEO.
>
> ___
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/

Wow. Please, can someone explain to me what the hell this has to do
with computer security?

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



Well, that e-mail did fit in with the title of this mailing list... I think
it was truly some full disclosure on Ross's behalf.
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/