Re: [Full-disclosure] OS X malware family has a new member: OSX.Lamzev.A

2008-11-14 Thread Mario D
They may be under pressure from Apple to not release details.  Remember the 
MacBook wireless drama?

--- On Fri, 11/14/08, rholgstad [EMAIL PROTECTED] wrote:
From: rholgstad [EMAIL PROTECTED]
Subject: Re: [Full-disclosure] OS X malware family has a new member: 
OSX.Lamzev.A
To: Juha-Matti Laurio [EMAIL PROTECTED]
Cc: full-disclosure@lists.grok.org.uk
Date: Friday, November 14, 2008, 12:27 PM

Sweet more non-tech writeup from securiteam. I am beginning to wonder if 
securiteam is really a technical company or just a bunch of clueless 
journalists like Nate McFeters.

Juha-Matti Laurio wrote:
 New Trojan horse for Mac OS X found, the Trojan is known as OSX.Lamzev.A
by Symantec.

 A short history of Mac malware:
 Mac.Hovdy.a (June '08),
 OSX.Exploit.Launchd (June '06), and
 Leap.A (February '06).

 More at
 http://blogs.securiteam.com/?p=1160

 Juha-Matti

 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/

   

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



  ___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] DHS / US-CERT do we need them want them?

2008-10-23 Thread Mario D
Don't you live on the other side of the pond?  Why aren't you vociferating 
about UK-CERT or whatever the equivalent is?

--- On Thu, 10/23/08, n3td3v [EMAIL PROTECTED] wrote:

From: n3td3v [EMAIL PROTECTED]
Subject: [Full-disclosure] DHS / US-CERT do we need them want them?
To: full-disclosure@lists.grok.org.uk
Date: Thursday, October 23, 2008, 7:01 PM

 


  ___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Disintegrate! Gust of wind! Can we get back to saving the world already?

2008-09-23 Thread Mario D
Ok, I'll bite.  Why, my dear n3td3v, do you consider yourself elite?

--- On Tue, 9/23/08, n3td3v [EMAIL PROTECTED] wrote:

From: n3td3v [EMAIL PROTECTED]
Subject: Re: [Full-disclosure] Disintegrate! Gust of wind! Can we get back to 
saving the world already?
To: full-disclosure@lists.grok.org.uk
Date: Tuesday, September 23, 2008, 7:40 PM

On Tue, Sep 23, 2008 at 6:16 PM, Gadi Evron [EMAIL PROTECTED] wrote:
 I've recently been involved in an email thread which, partly by my
doing,
 unfortunately degraded into a dirty flame war for a few hours.


So you admit you're a troll?

 Whenever meta discussion takes over real discussion, frustration builds up
 inside me. This comic strip from today which a friend just sent me, seems
 to explain the concept much better than I can.

 FD trolls, take a look.


You're one of the FD trolls, don't try and talk as the 3rd person.

You're constantly on Nanog trolling as well.

You manage to pass off to some as a legit mailing list poster, but
many think you're nothing more than a troll.

You are part of the non-technical elite, you should be on FD asking
for it to be split in two, technical and non-technical, you and me
being on the non-technical.

If we're non-technical we're called trolls, if we're technical
we're
called hackers.

Let's hope John Cartwright sets up 'cyber-politica' soon, so me and
Gadi can get off the technical FD for good and leave the hackers to
it.

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



  ___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] n3td3v domain

2008-09-14 Thread Mario D
:0
*^From:.*n3td3v
/dev/null

roflcoptr omg pwned1

I look forward to the suicide threats...

--- On Sat, 9/13/08, [EMAIL PROTECTED] [EMAIL PROTECTED] wrote:
From: [EMAIL PROTECTED] [EMAIL PROTECTED]
Subject: Re: [Full-disclosure] n3td3v domain
To: n3td3v [EMAIL PROTECTED]
Cc: full-disclosure@lists.grok.org.uk
Date: Saturday, September 13, 2008, 11:32 PM




  ___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Fwd: N3td3v

2008-09-13 Thread Mario D
OMFG!!!  Who, other than you, really gives a shit?  Quit wasting my inbox space 
with your narcissistic crap please

mario 


--- On Sat, 9/13/08, n3td3v [EMAIL PROTECTED] wrote:

 From: n3td3v [EMAIL PROTECTED]
 Subject: Re: [Full-disclosure] Fwd: N3td3v
 To: full-disclosure@lists.grok.org.uk
 Date: Saturday, September 13, 2008, 10:15 AM
 On Sat, Sep 13, 2008 at 3:13 PM, Razi Shaban
 [EMAIL PROTECTED] wrote:
  Fd:
  noone cares
 
  n3td3v:
  baa
 
 
 I was just proving I don't give a shit about the n3td3v
 domain name.
 
 http://lists.grok.org.uk/pipermail/full-disclosure/2008-September/064393.html
 
 All the best,
 
 n3td3v
 
 ___
 Full-Disclosure - We believe in it.
 Charter:
 http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/


  

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] PWDumpX v1.4

2008-01-08 Thread Mario D
Seriously?  Windows/X11 are like training wheels - you
only use them until you are big enough to get along
with them.  Not trying to be elitist, but if you
aren't comfortable with a CLI then maybe you should be
in a different field.

- phunt


--- Markus Jansson [EMAIL PROTECTED] wrote:

 How about a nice GUI? Or atleast some kind of GUI?
 
 I dont know what OS are you using, but I stopped
 using MS-DOS about 15
 years ago. Im sure there are folks out there who
 just lve command
 line crap, mostly Linux users I suppose, they
 obiously are still
 missing what even Windows 3.11 had. But most of us
 who live in this
 day are used on using OS and programs that work via
 GUI.
 
 Thank you.
 
 
 
 Markus Jansson
 Finland
 -- 
 http://www.markusjansson.net
 http://markusjansson.blogspot.com
 PGP: 6E9E375EC50A27FDB9DA1672A78C27BF735ADADA
 PGP2: 9966C10DDC7F0DEDEC480A75FE952445F24D55DD
 
 ___
 Full-Disclosure - We believe in it.
 Charter:

http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia -
 http://secunia.com/
 



  

Be a better friend, newshound, and 
know-it-all with Yahoo! Mobile.  Try it now.  
http://mobile.yahoo.com/;_ylt=Ahu06i62sR8HDtDypao8Wcj9tAcJ 

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Cyber Jihad? Yeah, right...

2007-11-12 Thread Mario D
Does anyone have a copy of e-jihad15.zip?  I would
like to see if there is something unique in the
generated HTTP traffic that would be signature worthy?

phunt
--- worried security [EMAIL PROTECTED]
wrote:

 Cyber Jihad? Yeah, right...
 
 Published: 2007-11-11,
 Last Updated: 2007-11-11 01:58:48 UTC
 by Marcus Sachs (Version: 1)
 
 In the news this past week were the ominous stories
 about a Cyber
 Jihad on November 11th.  OK terrorists, it's
 November 11th and we
 haven't seen your little Jihad yet.  As Johannes
 said in his diary a
 few days ago, it seems to have been called off. 
 What happened?  If
 there are any terrorists hanging out here reading
 this diary I'd like
 to hear from you.  Please use our contact page.
 
 http://isc.sans.org/diary.html?storyid=3633
 
 ___
 Full-Disclosure - We believe in it.
 Charter:

http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia -
 http://secunia.com/
 


__
Do You Yahoo!?
Tired of spam?  Yahoo! Mail has the best spam protection around 
http://mail.yahoo.com 

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Came across this site

2007-09-10 Thread Mario D
meh...roll your own...you'll learn more that way
--- T Biehn [EMAIL PROTECTED] wrote:

 screw forums, i get all my 0days from metasploit.
 
 On 9/8/07, scott [EMAIL PROTECTED]
 wrote:
 
  -BEGIN PGP SIGNED MESSAGE-
  Hash: SHA1
 
  This site seems to have a lot of registered
 users.But I only see posts
  by this one guy.Really stealing news from other
 sites and posting them
  there.
 
  Let's call this guy out.He claims to be an MCSE
 privately,but I
  seriously doubt it.The site is 
 http://hacking-passion.com
 
  Now I know I will catch a lot of flames for
 this,so I'm putting on my
  Nomex suit right now.
 
  Scott
  -BEGIN PGP SIGNATURE-
  Version: GnuPG v1.4.6 (GNU/Linux)
  Comment: Using GnuPG with Mozilla -
 http://enigmail.mozdev.org
 
 

iD8DBQFG4ziUsrt057ENXO4RArocAKDKdvFVziAvOPCIe7emMSEfdodAvwCgk/xg
  MkmaLBUUySKxm533pmqCQi4=
  =dsv4
  -END PGP SIGNATURE-
 
  ___
  Full-Disclosure - We believe in it.
  Charter:

http://lists.grok.org.uk/full-disclosure-charter.html
  Hosted and sponsored by Secunia -
 http://secunia.com/
 
  ___
 Full-Disclosure - We believe in it.
 Charter:

http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia -
http://secunia.com/



   

Boardwalk for $500? In 2007? Ha! Play Monopoly Here and Now (it's updated for 
today's economy) at Yahoo! Games.
http://get.games.yahoo.com/proddesc?gamekey=monopolyherenow  

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] iDefense Q-1 2007 Challenge -I WILL BUY FOR MORE

2007-01-20 Thread Mario D
So,

Let's say I know how to bypass the alarm to your house.  Should I put it up for 
sale and not worry about who buys it or why because it is none of my business?

Its people like you who give the security profession a bad name.

Mario


- Original Message 
From: Simon Smith [EMAIL PROTECTED]
To: Roman Medina-Heigl Hernandez [EMAIL PROTECTED]; Untitled 
full-disclosure@lists.grok.org.uk
Cc: bugtraq@securityfocus.com
Sent: Thursday, January 18, 2007 2:27:06 PM
Subject: Re: [Full-disclosure] iDefense Q-1 2007 Challenge -I WILL BUY FOR MORE


Oh, 
About your ROI question, that varies per buyer. I am not usually told
about why a buyer needs something as that's none of my business.

On 1/18/07 4:22 AM, Roman Medina-Heigl Hernandez [EMAIL PROTECTED]
wrote:

 Simon Smith escribió:
 Amen!
 KF is 100% on the money. I can arrange the legitimate purchase of most
 working exploits for significantly more money than iDefense, In some cases
 over $75,000.00 per purchase. The company that I am working with has a
 relationship with a legitimate buyer, all transactions are legal. If you're
 
 naive
 
 I was wondering which kind of (legal) enterprises/organizations would pay
 $75000 for a simple (or not so simple) exploit.
 - governmental organizations (defense? DoD? FBI? ...)
 - firms offering high-profiled pen-testing services?
 - ... ?
 
 What about the ROI for such investment?
 
 /naive
 
 Regards,
 -Roman
 
 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/


 

Do you Yahoo!?
Everyone is raving about the all-new Yahoo! Mail beta.
http://new.mail.yahoo.com___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/