[Full-disclosure] Critical Aol Insta Chats Bug!

2008-07-03 Thread staff
Critical vulnerability in Aol Insta Chats could allow remote compromise! http://lul-disclosure.net/exploits/lul-aim.txt Greetz to Aviv Raff! -- submit to: staff [at] lul-disclosure.net ___ Full-Disclosure - We believe in it. Charter:

[Full-disclosure] Gmail, Yahoo and Hotmail’s CAPTCHA broken by spammers

2008-07-03 Thread Dancho Danchev
Hello, Breaking Gmail, Yahoo and Hotmail's CAPTCHAs, has been an urban legend for over two years now, with do-it-yourself CAPTCHA breaking services, and proprietary underground tools assisting spammers, phishers and malware authors into registering hundreds of thousands of bogus accounts for

[Full-disclosure] rPSA-2008-0212-1 tshark wireshark

2008-07-03 Thread rPath Update Announcements
rPath Security Advisory: 2008-0212-1 Published: 2008-07-03 Products: rPath Linux 1 Rating: Major Exposure Level Classification: Indirect Deterministic Information Exposure Updated Versions: [EMAIL PROTECTED]:1/1.0.1-0.1-1 [EMAIL PROTECTED]:1/1.0.1-0.1-1 rPath Issue Tracking

[Full-disclosure] rPSA-2008-0211-1 mercurial mercurial-hgk

2008-07-03 Thread rPath Update Announcements
rPath Security Advisory: 2008-0211-1 Published: 2008-07-03 Products: rPath Linux 2 Rating: Major Exposure Level Classification: Indirect User Deterministic Unauthorized Access Updated Versions: [EMAIL PROTECTED]:2/1.0.1-1-0.1 [EMAIL PROTECTED]:2/1.0.1-1-0.1 rPath Issue Tracking

[Full-disclosure] DDIVRT-2008-12-ServerView SnmpGetMibValues.exe Buffer Overflow

2008-07-03 Thread DDI_Vulnerability_Alert
Title - DDIVRT-2008-12-ServerView SnmpGetMibValues.exe Buffer Overflow Severity High Date Discovered --- May 1st, 2008 Discovered By - Digital Defense, Inc. Vulnerability Research Team Credit: Steven James, Mike James, and [EMAIL PROTECTED]

[Full-disclosure] WinMagic HDE encryption

2008-07-03 Thread nobody
Anyone know if the page file (pagefile.sys) is encrypted when this product is installed and the hard drive encrypted. Also - using backtrack - can the hardrive (NTFS - 1 volume) be mounted after encryption. I have been successful on one machine and failed on another. In both cases fdisk

Re: [Full-disclosure] n3td3v podcast

2008-07-03 Thread Ureleet
yeah, cause we need another podcast like u need a hole in the head. On Wed, Jul 2, 2008 at 2:16 PM, n3td3v [EMAIL PROTECTED] wrote: n3td3v is starting a podcast soon, I will be talking about the latest news post on n3td3v - Google Groups ... watch the internet for more info. All the best,

Re: [Full-disclosure] Gmail, Yahoo and Hotmail’s CAPTCHA broken by spammers

2008-07-03 Thread Ureleet
didnt this happen like 6 months ago too? come on! it'll be a tail chase, the vendors will improve the catcha, the spammers will break it, they'll improve it.. etc.. its never ending bullshit. On Thu, Jul 3, 2008 at 8:52 AM, Dancho Danchev [EMAIL PROTECTED] wrote: Hello, Breaking Gmail,

Re: [Full-disclosure] n3td3v podcast

2008-07-03 Thread n3td3v
On Thu, Jul 3, 2008 at 7:51 PM, Ureleet [EMAIL PROTECTED] wrote: yeah, cause we need another podcast like u need a hole in the head. Don't make death threats you can't carry out. Uncle sam is watching!!! All the best, n3td3v On Wed, Jul 2, 2008 at 2:16 PM, n3td3v [EMAIL PROTECTED] wrote:

Re: [Full-disclosure] n3td3v podcast

2008-07-03 Thread William Lefkovics
It wasn't a threat... it was a simile. :) -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of n3td3v Sent: Thursday, July 03, 2008 1:26 PM To: full-disclosure@lists.grok.org.uk Subject: Re: [Full-disclosure] n3td3v podcast On Thu, Jul 3, 2008 at 7:51 PM,

Re: [Full-disclosure] n3td3v podcast

2008-07-03 Thread n3td3v
On Thu, Jul 3, 2008 at 9:32 PM, William Lefkovics [EMAIL PROTECTED] wrote: It wasn't a threat... it was a simile. :) Keep this thread bookmarked just incase, we don't actually know who Ureleet is, it could be an Al-Qaeda splinter cell working independently of Osama Bin Laden's command. All

Re: [Full-disclosure] n3td3v podcast

2008-07-03 Thread Arturo 'Buanzo' Busleiman
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 n3td3v wrote: | Keep this thread bookmarked just incase, we don't actually know who | Ureleet is, it could be an Al-Qaeda splinter cell working For all we know, Ureleet could be you. - -- Arturo Buanzo Busleiman Independent Security Consultant -

Re: [Full-disclosure] n3td3v podcast

2008-07-03 Thread n3td3v
On Thu, Jul 3, 2008 at 10:09 PM, Arturo 'Buanzo' Busleiman [EMAIL PROTECTED] wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 n3td3v wrote: | Keep this thread bookmarked just incase, we don't actually know who | Ureleet is, it could be an Al-Qaeda splinter cell working For all we

Re: [Full-disclosure] n3td3v podcast

2008-07-03 Thread Arturo 'Buanzo' Busleiman
-BEGIN PGP SIGNED MESSAGE- Hash: SHA512 n3td3v wrote: | Infact, I think I said at one point I was applying for a position at | MI5, so do I really seem like Ureleet to you? Sorry, you're not THAT important. Well, maybe you are, but that's EXACTLY the point. Cya. - -- Arturo Buanzo

[Full-disclosure] [ MDVSA-2008:127 ] - Updated PHP packages fix multiple vulnerabilities

2008-07-03 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:127 http://www.mandriva.com/security/

[Full-disclosure] [ MDVSA-2008:128 ] - Updated PHP packages fix multiple vulnerabilities

2008-07-03 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:128 http://www.mandriva.com/security/

[Full-disclosure] [ MDVSA-2008:125 ] - Updated PHP packages fix multiple vulnerabilities

2008-07-03 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:125 http://www.mandriva.com/security/

[Full-disclosure] [ MDVSA-2008:126 ] - Updated PHP packages fix multiple vulnerabilities

2008-07-03 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:126 http://www.mandriva.com/security/

[Full-disclosure] [ MDVSA-2008:129 ] - Updated PHP packages fix multiple vulnerabilities

2008-07-03 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:129 http://www.mandriva.com/security/

Re: [Full-disclosure] n3td3v podcast

2008-07-03 Thread Ureleet
you figured me out! On Thu, Jul 3, 2008 at 5:09 PM, Arturo 'Buanzo' Busleiman [EMAIL PROTECTED] wrote: -BEGIN PGP SIGNED MESSAGE- Hash: SHA512 n3td3v wrote: | Keep this thread bookmarked just incase, we don't actually know who | Ureleet is, it could be an Al-Qaeda splinter cell

[Full-disclosure] [ MDVSA-2008:130 ] - Updated PHP packages fix multiple vulnerabilities

2008-07-03 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2008:130 http://www.mandriva.com/security/