Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread taneja . security
Why u all people think it's personal agenda.. n3td3v have valid some points/threats u should talk about that one rather than flaming each other "Dont Blame others FOR your Failure!!" , Think ,he is right then try to solve his possible threat and i know it's true. He is damn right ... On 4/9/08

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Erik Harrison
guys, really. can we just get over it? lets go on with our lives, do something more productive. go outside, go be a better person. this is as perpetual as good vs evil. please let it go. end this thread and all threads like it. On Tue, Apr 8, 2008 at 7:33 PM, steve menard <[EMAIL PROTECTED]> wrote

[Full-disclosure] CAU-2008-0002: Microsoft Windows SharePoint Services Picture Source XSS

2008-04-08 Thread I)ruid
____ /\/\ | | | | / /\__\##/ /\ \##| |##| | | | | |__| | | | | | | | ___ | __ | | | | | --==##\ \/ /#| |

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread steve menard
hey n3tdev [its getting hard to resist misspelling as nutjob] go cry on your list your crap is going to bring on moderation n3td3v wrote: > On Tue, Apr 8, 2008 at 10:43 PM, Razi Shaban <[EMAIL PROTECTED]> wrote: > >> After encountering him, I've become quite disappointed with gmail's >> appar

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Garrett M. Groff
Fact is, n3td3v, we're all out to get you. I apologize for not mentioning that earlier. Oh, the NSA is after you as well and is actively involved in the smear campaign. Why? Because, due to your extensive security research, you are a potential threat. At some point you'll be abducted, but I don

[Full-disclosure] ZDI-08-021: Adobe Flash Player DeclareFunction2 Invalid Object Use Vulnerability

2008-04-08 Thread zdi-disclosures
ZDI-08-021: Adobe Flash Player DeclareFunction2 Invalid Object Use Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-08-021 April 8, 2008 -- CVE ID: CVE-2007-6019 -- Affected Vendors: Adobe -- Affected Products: Adobe Flash Player -- Vulnerability Details: This vulnerability allows

[Full-disclosure] Mozilla Thunderbird installer can be used to execute malicious executable

2008-04-08 Thread auto167445
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Mozilla Thunderbird installer can be used to execute malicious executable Tested: Thunderbird 2.0.0.12 (english) Win32 (latest release) Win2k (german) WinXP (english, admin account) After installation the user is prompted with: [x] Launch Mozilla Thu

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Static Rez
DELETE On Tue, Apr 8, 2008 at 7:04 PM, dickbutt dickbutt <[EMAIL PROTECTED]> wrote: > I pity n3td3v. Guise, you are making him feel like shit :3 > > ___ > Full-Disclosure - We believe in it. > Charter: http://lists.grok.org.uk/full-disclosure-charter.ht

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread dickbutt dickbutt
I pity n3td3v. Guise, you are making him feel like shit :3 ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Pat
Neal Krawetz had used a text analysis program to determine I was nothing but a troll ^^ What? So Neal READ all the shit you say and decided that you were a troll, so, ah, much like the rest of this list then? THANK YOU ALL for my laugh of the morning. Trust FD to get me the much-required morning

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread n3td3v
On Tue, Apr 8, 2008 at 10:51 PM, Richard Golodner <[EMAIL PROTECTED]> wrote: > Talk cyber security and ignore those fuckers then. > > most sincerely, Richard They won't let me, they've gone for the bully, bully, bully option to try and make my head crack.

[Full-disclosure] iDefense Security Advisory 04.08.08: Microsoft Windows Graphics Rendering Engine Heap Buffer Overflow Vulnerability

2008-04-08 Thread iDefense Labs
iDefense Security Advisory 04.08.08 http://labs.idefense.com/intelligence/vulnerabilities/ Apr 08, 2008 I. BACKGROUND Microsoft Windows graphics device interface (GDI) is the core library used to display graphics and text on the Windows operating system. It is the standard interface through which

[Full-disclosure] iDefense Security Advisory 04.08.08: Microsoft Windows Graphics Rendering Engine Integer Overflow Vulnerability

2008-04-08 Thread iDefense Labs
iDefense Security Advisory 04.08.08 http://labs.idefense.com/intelligence/vulnerabilities/ Apr 08, 2008 I. BACKGROUND Microsoft Windows graphics device interface (GDI) is the core library used to display graphics and text on the Windows operating system. It is the standard interface through which

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread n3td3v
On Tue, Apr 8, 2008 at 10:54 PM, Razi Shaban <[EMAIL PROTECTED]> wrote: > You know, by replying to your enemies you're just proving them right. > If you just ignore them, you'll embaress them and make them look > foolish. So you're admitting you're trying to keep me responding and getting everyone

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Mike Vasquez
You can send these messages directly to the trash with Gmail -- play with the filters. On the top right dropdown, where it has reply, choose "Filter messages like this" Putting "n3td3v" in "has the words:" will mark the message. click next, and choose "delete it" or "skip the inbox", for instanc

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread n3td3v
On Tue, Apr 8, 2008 at 10:43 PM, Razi Shaban <[EMAIL PROTECTED]> wrote: > After encountering him, I've become quite disappointed with gmail's > apparent lack of a kill list. I really wish gmail had one. You're ganging up on me and making me defend myself, what is wrong with you? You don't need a k

[Full-disclosure] [SECURITY] [DSA 1541-1] New openldap2.3 packages fix denial of service

2008-04-08 Thread Moritz Muehlenhoff
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - Debian Security Advisory DSA-1541-1 [EMAIL PROTECTED] http://www.debian.org/security/ Moritz Muehlenhoff April 08, 2008

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread n3td3v
On Tue, Apr 8, 2008 at 10:15 PM, Anders B Jansson <[EMAIL PROTECTED]> wrote: > Just add 'n3td3v' to the junklist in your mailer. I'm not junk I brought up valid points before this thread was made by my adversaries, its enemies of n3td3v who are ganging up on me to bring me down. All I came on thi

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Razi Shaban
After encountering him, I've become quite disappointed with gmail's apparent lack of a kill list. I really wish gmail had one. -- Razi On 4/9/08, Anders B Jansson <[EMAIL PROTECTED]> wrote: > Razi Shaban wrote: > > As much as I've tried to make him stfu, I've learned from this thread > > that

Re: [Full-disclosure] Pligg 9.9.0 editlink.php SQL Injection Vulnerability

2008-04-08 Thread lists
While writing a little patch I found many other problems: variables are simply not checked or checked in the very wrong way - This is the case of my previous mail, editlink.php: if(isset($_GET['id'])){ $theid = strip_tags($_GET['id']); } if(isset($_POST['id'])){ $theid = strip_t

[Full-disclosure] iDefense Security Advisory 04.08.08: Microsoft HxTocCtrl ActiveX Control Invalid Param Heap Corruption Vulnerability

2008-04-08 Thread iDefense Labs
iDefense Security Advisory 04.08.08 http://labs.idefense.com/intelligence/vulnerabilities/ Apr 08, 2008 I. BACKGROUND The HxTocCtrl ActiveX Control is a library used by the Microsoft Help engine. More information is available at the following website. http://en.wikipedia.org/wiki/Microsoft_Help_

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Anders B Jansson
Razi Shaban wrote: > As much as I've tried to make him stfu, I've learned from this thread > that its impossible to debate with unintelligent children. > > So, I will stop feeding the troll; I encourage you all to follow suit. > > -- > Razi How hard can it be to make him and all the followers on

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread n3td3v
On Tue, Apr 8, 2008 at 9:46 PM, Razi Shaban <[EMAIL PROTECTED]> wrote: > I will stop feeding the troll; I'm not a troll. :angry: ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Razi Shaban
As much as I've tried to make him stfu, I've learned from this thread that its impossible to debate with unintelligent children. So, I will stop feeding the troll; I encourage you all to follow suit. -- Razi On 4/8/08, [EMAIL PROTECTED] <[EMAIL PROTECTED]> wrote: > Defend this...stfu...on behalf

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread malix
Defend this...stfu...on behalf of everyone who reads this list for VULNERABILITIES. On Tue, 08 Apr 2008 13:03:03 -0700 n3td3v <[EMAIL PROTECTED]> wrote: >On Tue, Apr 8, 2008 at 8:55 PM, DUDE DUDERINO ><[EMAIL PROTECTED]> wrote: >> It feels like you're trying to get the last word in. > >No, all

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread n3td3v
On Tue, Apr 8, 2008 at 8:55 PM, DUDE DUDERINO <[EMAIL PROTECTED]> wrote: > It feels like you're trying to get the last word in. No, all i've been doing is defending my position after my adversaries made statements on this list about me. ___ Full-Disclos

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread DUDE DUDERINO
It feels like you're trying to get the last word in. Perhaps you should just drop it, since we're not talking about what we're supposed to be talking about. You're breaking the "rules" no less than we are. On Tue, Apr 8, 2008 at 3:49 PM, n3td3v <[EMAIL PROTECTED]> wrote: > On Tue, Apr 8, 2008 a

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread n3td3v
On Tue, Apr 8, 2008 at 8:34 PM, Razi Shaban <[EMAIL PROTECTED]> wrote: > Does anyone still think that this thread is not about self-promotion? You guys turned the discussion into one about me, so I had to follow it up. Originally I came on the list to talk cyber security. Regards, n3td3v _

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Razi Shaban
Does anyone still think that this thread is not about self-promotion? -- R On 4/8/08, n3td3v <[EMAIL PROTECTED]> wrote: > On Tue, Apr 8, 2008 at 5:03 PM, Ureleet <[EMAIL PROTECTED]> wrote: > > i dont think its a smear campaign. > > > I do, heres the facts. > > > http://smear-campaign-against-n3

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread DUDE DUDERINO
Meant this for the list On 4/8/08, DUDE DUDERINO <[EMAIL PROTECTED]> wrote: > > I'm confused, are we talking about you or are we talking about securities > and vulnerabilities and all that fun stuff? > > On Tue, Apr 8, 2008 at 3:21 PM, n3td3v <[EMAIL PROTECTED]> wrote: > > > On Tue, Apr 8, 2008 at

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread n3td3v
On Tue, Apr 8, 2008 at 5:03 PM, Ureleet <[EMAIL PROTECTED]> wrote: > i dont think its a smear campaign. I do, heres the facts. http://smear-campaign-against-n3td3v.blogspot.com/2007/12/smear-campaign-against-n3td3v.html Keith's post is also up, although as he stated he doesn't want to get involv

Re: [Full-disclosure] Multiple vulnerabilities in HP OpenView NNM 7.53

2008-04-08 Thread Luigi Auriemma
Forget the yesterday's advisory, the setup didn't installed the 7.53 patches from the ISO and so I was working on an old version. The following is a new vulnerability tested on 7.53: http://aluigi.org/adv/closedview-adv.txt --- Luigi Auriemma http://aluigi.org __

[Full-disclosure] ZDI-08-020: Microsoft GDI WMF Parsing Heap Overflow Vulnerability

2008-04-08 Thread zdi-disclosures
ZDI-08-020: Microsoft GDI WMF Parsing Heap Overflow Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-08-020 -- CVE ID: CVE-2008-1083 -- Affected Vendors: Microsoft -- Affected Products: Microsoft Windows XP SP2 Microsoft Windows 2003 SP1 Microsoft Windows Vista -- Vulnerability De

[Full-disclosure] Pligg 9.9.0 editlink.php SQL Injection Vulnerability

2008-04-08 Thread Guido Landi
Hello, the Pligg (http://www.pligg.com/) content management system is prone to an SQL-injection vulnerability because it fails to sufficiently sanitize user-supplied data before using it in an SQL query: editlink.php?id=1+AND+((SELECT+user_pass+FROM+pligg_users+WHERE+user_login=0x676f64)+LIKE+

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread Ureleet
ur talking about his paper? the one where he compares "you" to "gobbles"? i dont know if i agree w/ teh paper or not, its interesting, but i dont think its a smear campaign. hes comparing you to gobbles. i guess you see that as an insult? gobbles did some good work. i liked gobbles challenge a

Re: [Full-disclosure] n3td3v has a fan

2008-04-08 Thread mcwidget
On Mon, Apr 7, 2008 at 10:55 PM, n3td3v <[EMAIL PROTECTED]> wrote: > > I never came on with *let's have a chat about n3td3v.* > > This list isn't about n3td3v, so stop talking about me. > I swear I head angels sing when I read this. Unfortunately, this whole thread started when you complained,