Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-20 Thread adrian . lamo
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Dear Juha-Matti Blogger,

Can you produce any verifiable cryptographic hashes to support your
statement?

- -al

On Thu, 20 Nov 2008 01:04:11 -0500 Juha-Matti Laurio juha-
[EMAIL PROTECTED] wrote:
Just a quick note to the list that I am not a subscriber of that
n3td3v mailing list mentioned and I have no need to use ideas from
that list.
Additionally, I don't even know where the n3td3v mailing list
archive exists.

Juha-Matti

n3td3v [EMAIL PROTECTED] kirjoitti:
 don't argue with the heavily involved cut-n-paste people! they
are far
 better than the non-involved cut-n-paste people at cutting and
 pasting. even though the same news that is on funsec is on
n3td3v
 hours before funsec. im faster at cutting and pasting than they
are,
 and its known that the funsec'ers are taking cut-n-paste ideas
from
 the n3td3v group and posting them into funsec. there are too
many
 familiar match ups with the stories on funsec that are on n3td3v
 group. in news its all about timing, and funsec just don't
 cut-n-paste good enough compared to n3td3v mailing-list-group.
i've
 had a look at my members list, and yes, key funsec members are
 subscribed and are sleuthing cut-n-paste ideas from my group
into
 their group. who's the cut-n-paste daddy then?

 On Wed, Nov 19, 2008 at 11:34 PM,  [EMAIL PROTECTED]
wrote:
  -BEGIN PGP SIGNED MESSAGE-
  Hash: SHA1
 
  Don't argue with the stache.
 
  On Wed, 19 Nov 2008 16:47:52 -0500 n3td3v
[EMAIL PROTECTED]
  wrote:
 On Wed, Nov 19, 2008 at 9:34 PM,  [EMAIL PROTECTED]
wrote:
  1) They almost certainly were more involved in it than the
cut-n-
 paste says.
 
 so why do they offer no unique information with their cut-n-
paste
 if
 they are so heavily involved?
 
 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/
  -BEGIN PGP SIGNATURE-
  Charset: UTF8
  Version: Hush 3.0
  Note: This signature can be verified at
https://www.hushtools.com/verify
 
 
wpwEAQMCAAYFAkkkomsACgkQ8J2EGU1ixm5gYgP/fmf8qMRCmfLW7duJZPSWu8zVSpL
l
 
IoZoF8wSteuDytil3nLa5qCa5NoJ/B9slzJHhKwShnS2CnjJHGVkdKG6xzhihKg68Ei
u
 
ZW9D8CFKzOztjAG45WYfZSE8f1O5G/JTPP/H3arDb0K9WYLQHlKF00WWVMd80znp/Uu
e
  4ZqTiZk=
  =rjbb
  -END PGP SIGNATURE-
 
  --
  Click to become an artist and quit your boring job.
 
http://tagline.hushmail.com/fc/PnY6qxtRjnqalw3zIXZdTScyx331TILb2axF
fPDERdG7hjzGOJne1/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
-BEGIN PGP SIGNATURE-
Charset: UTF8
Version: Hush 3.0
Note: This signature can be verified at https://www.hushtools.com/verify

wpwEAQMCAAYFAkkldQYACgkQ8J2EGU1ixm4smAP9F3P8h5qLCXKt/CHKJ6uTQrPg1rDr
I8gcX0VMFpo1gn0yLlclVu5Gst7GSggataEz+TQKyLkD+dFmWgS0/l3gYGGTntlXqQkh
d4HNg3cxSxG7MgrOuXl86kFM8OiBeqVy5xd+3HqY0v3U+/Kn37ec/MocB4XvdRYtHjMP
zCUWZh8=
=3CZU
-END PGP SIGNATURE-

--
Spending too much on ink? Click to find great prices on ink cartridges.
http://tagline.hushmail.com/fc/PnY6qxs8hI174sPAIMW0FBvu2QiJVGKsIBgR1yUHkR7naGPFGOa3O/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-20 Thread KammyDoe
This is why sensible people have your email filtered.

n3td3v [EMAIL PROTECTED]

 why don't you complain about cut-n-paste bloggers on funsec who don't
 have any unique information of their own and just copypaste lines
 from the written media? why are you spear targeting me, when lord
 evron  co do exactly the same thing. or don't you have a problem with
 cut-n-paste bloggers and infact you're just knit-picking over words
 that *i* copypaste for the benefit of others? it just seems rich that
 you talk about cut-n-paste bloggers when thats all funsec is and is
 all lord evron, paul ferguson and juha-matti ever do. are you just
 jealous that i have managed to get such a following in the security
 community that at present i have a mailing list group of 5000
 subscribers and growing? go and screw your self valdis and give your
 mustache a brush down. thanks :)

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread Jeff MacDonald
On Tuesday 18 November 2008 11:06:20 am n3td3v wrote:
 Three London hospitals have been forced to shut down their entire
 computer systems for at least 24 hours after being hit by a virus.
[...snipped...]
 The spokesman said the virus was not malicious, and the infection
 was self-contained.


How did the computer(s) get infected?

-- 
http://zoidtechnologies.com/
information systems that suck less

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread Valdis . Kletnieks
On Wed, 19 Nov 2008 11:32:53 -0400, Jeff MacDonald said:
  The spokesman said the virus was not malicious, and the infection
  was self-contained.

 How did the computer(s) get infected?

He's using the term self-contained to mean 100% of the machines on the
net are infected so it can't get much worse.  You know, kind of how a
fire will eventually go out once it runs out of combustibles.

(And yes, I know there's tire dump, peat, and coal mine fires that have
been smoldering for 30-40 year now... eventually doesn't always mean
in your lifetime)


pgpqQUuxLBgnc.pgp
Description: PGP signature
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread n3td3v
On Wed, Nov 19, 2008 at 3:32 PM, Jeff MacDonald
[EMAIL PROTECTED] wrote:
 On Tuesday 18 November 2008 11:06:20 am n3td3v wrote:
 Three London hospitals have been forced to shut down their entire
 computer systems for at least 24 hours after being hit by a virus.
 [...snipped...]
 The spokesman said the virus was not malicious, and the infection
 was self-contained.


 How did the computer(s) get infected?


According to n3td3v sources it was the Mytob worm that done it...

-- Forwarded message --
From: n3td3v [EMAIL PROTECTED]
Date: Tue, Nov 18, 2008 at 8:58 PM
Subject: Computer virus infects three London hospitals
To: n3td3v [EMAIL PROTECTED]


The virus is believed to be the Mytob worm, which spreads via e-mail
and plants a backdoor Trojan on infected computers that can be used to
remotely take control of the machine, according to security firm
Sophos.

There will, no doubt, be concerns that the confidentiality of
patients' data may have been put at risk, and the hospitals will
surely be keen to reassure the public that security has been
maintained, Graham Cluley, senior technology consultant at Sophos,
wrote in a post on his blog.

http://news.cnet.com/8301-1009_3-10101392-83.html

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread Valdis . Kletnieks
On Wed, 19 Nov 2008 17:14:28 GMT, n3td3v said:

 According to n3td3v sources it was the Mytob worm that done it...

Hint: When trying to make it look like you have actual personal sources,
it helps when you *don't* include the cnet.com URL that you cut-n-pasted
your source from.


pgpPftMdaVRTv.pgp
Description: PGP signature
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread n3td3v
On Wed, Nov 19, 2008 at 6:08 PM,  [EMAIL PROTECTED] wrote:
 On Wed, 19 Nov 2008 17:14:28 GMT, n3td3v said:

 According to n3td3v sources it was the Mytob worm that done it...

 Hint: When trying to make it look like you have actual personal sources,
 it helps when you *don't* include the cnet.com URL that you cut-n-pasted
 your source from.


you're the only one who mentioned personal sources i was talking about
cnet the whole time.

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread n3td3v
On Wed, Nov 19, 2008 at 8:14 PM,  [EMAIL PROTECTED] wrote:
 On Wed, 19 Nov 2008 20:01:14 GMT, you said:

  According to n3td3v sources it was the Mytob worm that done it...
  ^^
 you're the only one who mentioned personal sources i was talking about
 cnet the whole time.

 Usually, when people say my sources told me, it doesn't mean they frikking
 saw it on CNN.  Or maybe in your cut-n-paste-blogger world, it does.


why don't you complain about cut-n-paste bloggers on funsec who don't
have any unique information of their own and just copypaste lines
from the written media? why are you spear targeting me, when lord
evron  co do exactly the same thing. or don't you have a problem with
cut-n-paste bloggers and infact you're just knit-picking over words
that *i* copypaste for the benefit of others? it just seems rich that
you talk about cut-n-paste bloggers when thats all funsec is and is
all lord evron, paul ferguson and juha-matti ever do. are you just
jealous that i have managed to get such a following in the security
community that at present i have a mailing list group of 5000
subscribers and growing? go and screw your self valdis and give your
mustache a brush down. thanks :)

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread Valdis . Kletnieks
On Wed, 19 Nov 2008 20:45:34 GMT, n3td3v said:
 why don't you complain about cut-n-paste bloggers on funsec who don't

Because the cut-n-paste bloggers on funsec are up-front about it, and
don't start off with my sources tell me...

 you talk about cut-n-paste bloggers when thats all funsec is and is
 all lord evron, paul ferguson and juha-matti ever do.

The *real* problem here is that when they cut-n-paste a URL about Intercage
or McColo or similar, you know two things:

1) They almost certainly were more involved in it than the cut-n-paste says.
2) You weren't.

And it bugs the crap out of you.


pgpHeh85ZY3aI.pgp
Description: PGP signature
___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread adrian . lamo
-BEGIN PGP SIGNED MESSAGE-
Hash: SHA1

Don't argue with the stache.

On Wed, 19 Nov 2008 16:47:52 -0500 n3td3v [EMAIL PROTECTED]
wrote:
On Wed, Nov 19, 2008 at 9:34 PM,  [EMAIL PROTECTED] wrote:
 1) They almost certainly were more involved in it than the cut-n-
paste says.

so why do they offer no unique information with their cut-n-paste
if
they are so heavily involved?

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
-BEGIN PGP SIGNATURE-
Charset: UTF8
Version: Hush 3.0
Note: This signature can be verified at https://www.hushtools.com/verify

wpwEAQMCAAYFAkkkomsACgkQ8J2EGU1ixm5gYgP/fmf8qMRCmfLW7duJZPSWu8zVSpLl
IoZoF8wSteuDytil3nLa5qCa5NoJ/B9slzJHhKwShnS2CnjJHGVkdKG6xzhihKg68Eiu
ZW9D8CFKzOztjAG45WYfZSE8f1O5G/JTPP/H3arDb0K9WYLQHlKF00WWVMd80znp/Uue
4ZqTiZk=
=rjbb
-END PGP SIGNATURE-

--
Save hundreds on an Unsecured Loan - Click here.
http://tagline.hushmail.com/fc/PnY6qxtViP3XygkuzofdiB00PEZ8pGCJ0SN3sYa7AquO258kqUOGs/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread n3td3v
don't argue with the heavily involved cut-n-paste people! they are far
better than the non-involved cut-n-paste people at cutting and
pasting. even though the same news that is on funsec is on n3td3v
hours before funsec. im faster at cutting and pasting than they are,
and its known that the funsec'ers are taking cut-n-paste ideas from
the n3td3v group and posting them into funsec. there are too many
familiar match ups with the stories on funsec that are on n3td3v
group. in news its all about timing, and funsec just don't
cut-n-paste good enough compared to n3td3v mailing-list-group. i've
had a look at my members list, and yes, key funsec members are
subscribed and are sleuthing cut-n-paste ideas from my group into
their group. who's the cut-n-paste daddy then?

On Wed, Nov 19, 2008 at 11:34 PM,  [EMAIL PROTECTED] wrote:
 -BEGIN PGP SIGNED MESSAGE-
 Hash: SHA1

 Don't argue with the stache.

 On Wed, 19 Nov 2008 16:47:52 -0500 n3td3v [EMAIL PROTECTED]
 wrote:
On Wed, Nov 19, 2008 at 9:34 PM,  [EMAIL PROTECTED] wrote:
 1) They almost certainly were more involved in it than the cut-n-
paste says.

so why do they offer no unique information with their cut-n-paste
if
they are so heavily involved?

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
 -BEGIN PGP SIGNATURE-
 Charset: UTF8
 Version: Hush 3.0
 Note: This signature can be verified at https://www.hushtools.com/verify

 wpwEAQMCAAYFAkkkomsACgkQ8J2EGU1ixm5gYgP/fmf8qMRCmfLW7duJZPSWu8zVSpLl
 IoZoF8wSteuDytil3nLa5qCa5NoJ/B9slzJHhKwShnS2CnjJHGVkdKG6xzhihKg68Eiu
 ZW9D8CFKzOztjAG45WYfZSE8f1O5G/JTPP/H3arDb0K9WYLQHlKF00WWVMd80znp/Uue
 4ZqTiZk=
 =rjbb
 -END PGP SIGNATURE-

 --
 Click to become an artist and quit your boring job.
 http://tagline.hushmail.com/fc/PnY6qxtRjnqalw3zIXZdTScyx331TILb2axFfPDERdG7hjzGOJne1/



___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Re: [Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-19 Thread Juha-Matti Laurio
Just a quick note to the list that I am not a subscriber of that n3td3v mailing 
list mentioned and I have no need to use ideas from that list.
Additionally, I don't even know where the n3td3v mailing list archive exists.

Juha-Matti

n3td3v [EMAIL PROTECTED] kirjoitti: 
 don't argue with the heavily involved cut-n-paste people! they are far
 better than the non-involved cut-n-paste people at cutting and
 pasting. even though the same news that is on funsec is on n3td3v
 hours before funsec. im faster at cutting and pasting than they are,
 and its known that the funsec'ers are taking cut-n-paste ideas from
 the n3td3v group and posting them into funsec. there are too many
 familiar match ups with the stories on funsec that are on n3td3v
 group. in news its all about timing, and funsec just don't
 cut-n-paste good enough compared to n3td3v mailing-list-group. i've
 had a look at my members list, and yes, key funsec members are
 subscribed and are sleuthing cut-n-paste ideas from my group into
 their group. who's the cut-n-paste daddy then?
 
 On Wed, Nov 19, 2008 at 11:34 PM,  [EMAIL PROTECTED] wrote:
  -BEGIN PGP SIGNED MESSAGE-
  Hash: SHA1
 
  Don't argue with the stache.
 
  On Wed, 19 Nov 2008 16:47:52 -0500 n3td3v [EMAIL PROTECTED]
  wrote:
 On Wed, Nov 19, 2008 at 9:34 PM,  [EMAIL PROTECTED] wrote:
  1) They almost certainly were more involved in it than the cut-n-
 paste says.
 
 so why do they offer no unique information with their cut-n-paste
 if
 they are so heavily involved?
 
 ___
 Full-Disclosure - We believe in it.
 Charter: http://lists.grok.org.uk/full-disclosure-charter.html
 Hosted and sponsored by Secunia - http://secunia.com/
  -BEGIN PGP SIGNATURE-
  Charset: UTF8
  Version: Hush 3.0
  Note: This signature can be verified at https://www.hushtools.com/verify
 
  wpwEAQMCAAYFAkkkomsACgkQ8J2EGU1ixm5gYgP/fmf8qMRCmfLW7duJZPSWu8zVSpLl
  IoZoF8wSteuDytil3nLa5qCa5NoJ/B9slzJHhKwShnS2CnjJHGVkdKG6xzhihKg68Eiu
  ZW9D8CFKzOztjAG45WYfZSE8f1O5G/JTPP/H3arDb0K9WYLQHlKF00WWVMd80znp/Uue
  4ZqTiZk=
  =rjbb
  -END PGP SIGNATURE-
 
  --
  Click to become an artist and quit your boring job.
  http://tagline.hushmail.com/fc/PnY6qxtRjnqalw3zIXZdTScyx331TILb2axFfPDERdG7hjzGOJne1/

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


[Full-disclosure] Fwd: Three London hospitals have been forced to shut down their entire computer systems for at least 24 hours after being hit by a virus

2008-11-18 Thread n3td3v
-- Forwarded message --
From: n3td3v [EMAIL PROTECTED]
Date: Tue, Nov 18, 2008 at 3:54 PM
Subject: Three London hospitals have been forced to shut down their
entire computer systems for at least 24 hours after being hit by a
virus
To: n3td3v [EMAIL PROTECTED]


Three London hospitals have been forced to shut down their entire
computer systems for at least 24 hours after being hit by a virus.

St Bartholomew's (Barts) in the City, the Royal London Hospital in
Whitechapel and The London Chest Hospital in Bethnal Green are
affected.

A spokesman said well-rehearsed emergency procedures were in place.

Theatres and outpatient departments had remained operational, and
patients with appointments were still being seen.

The spokesman said walk-in patients were being accepted at accident
and emergency, and processed using manual back-up systems.

But ambulances were being diverted to neighbouring hospitals to ensure
that seriously ill patients did not suffer as a result of the slower
manual systems being used.

The patient transport system used by elderly or disabled patients to
attend routine appointments has also been disrupted.

The spokesman said the virus was not malicious, and the infection
was self-contained.

http://news.bbc.co.uk/1/hi/england/london/7735502.stm

___
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/