[Full-disclosure] BruCON call for papers

2009-02-02 Thread Filip Waeytens
Hi, BruCON aims to become the best and most fun hacking (*) and security event in Belgium and W. Europe offering a high quality line up of speakers, opportunities of networking with peers, hacking challenges and workshops. BruCON is an open-minded gathering of people discussing computer s

Re: [Full-disclosure] Windows 7 UAC compromised

2009-02-02 Thread Christopher Pritchard
> The biggest issue here is that although it's technically easy to fix > this problem (just have UAC issue an alert when somebody's messing with > the system settings), it involves doing more of what end users dislike > most about UAC (it issuing alerts to Joe Sixpack all the time when he > does so

Re: [Full-disclosure] Windows 7 UAC compromised

2009-02-02 Thread T Biehn
Not at all Valdis. Keep UAC exceptions for Desktop Settings, Keyboard Settings, Mundane / Trivial. Prompt from UAC on regedit32, reg, secedit, gpedit, the proggy that modifies uac settings. Most "Joe Sixpacks" will never touch any of that, and power users that do will understand why they're being p

Re: [Full-disclosure] Windows 7 UAC compromised

2009-02-02 Thread Valdis . Kletnieks
On Mon, 02 Feb 2009 20:47:41 +0200, James Matthews said: > http://www.istartedsomething.com/20090130/uac-security-flaw-windows-7-beta-proof/ > > Windows is like swiss cheese! The biggest issue here is that although it's technically easy to fix this problem (just have UAC issue an alert when some

[Full-disclosure] Windows 7 UAC compromised

2009-02-02 Thread James Matthews
http://www.istartedsomething.com/20090130/uac-security-flaw-windows-7-beta-proof/ Windows is like swiss cheese! -- http://www.goldwatches.com/ http://www.jewelerslounge.com/ ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/ful

[Full-disclosure] ZDI-09-010: Novell Netware Groupwise GWIA RCPT Command Buffer Overflow Vulnerability

2009-02-02 Thread zdi-disclosures
ZDI-09-010: Novell Netware Groupwise GWIA RCPT Command Buffer Overflow Vulnerability http://www.zerodayinitiative.com/advisories/ZDI-09-010 February 2, 2009 -- Affected Vendors: Novell -- Affected Products: Novell Netware -- TippingPoint(TM) IPS Customer Protection: TippingPoint IPS customers h

Re: [Full-disclosure] Hackery Channel 01-09-01-LOLZ: Cat Spoofing against Flow Control

2009-02-02 Thread Shawn Merdinger
On Fri, Jan 30, 2009 at 12:07 PM, wrote: > On Thu, 29 Jan 2009 17:04:53 CST, hack ery said: >> >> Security Risk: High >> Exploitable: Local >> Vulnerability: Arbitrary Flow Control Control, Cat Spoofing >> Discovered by: The Hackery Channel > > Note the additional possibility of a brute force at

[Full-disclosure] Secunia Research: Free Download Manager Torrent Parsing Buffer Overflows

2009-02-02 Thread Secunia Research
== Secunia Research 02/02/2009 - Free Download Manager Torrent Parsing Buffer Overflows - == Table of Contents Affected Software...

[Full-disclosure] Secunia Research: Free Download Manager Remote Control Server Buffer Overflow

2009-02-02 Thread Secunia Research
== Secunia Research 02/02/2009 - Free Download Manager Remote Control Server Buffer Overflow - == Table of Contents Affected Software

Re: [Full-disclosure] Hackery Channel 01-09-01-LOLZ: Cat Spoofing against Flow Control

2009-02-02 Thread Nancy Kramer
Most people don't realize it but cats are actually very social animals. Also very smart. That explains the behavior you are seeing. Regards, Nancy Kramer At 05:10 AM 2/2/2009, Michael Simpson wrote: >On 1/30/09, Michael Holstein wrote: > > > > > Have any of you guys heard of RFID? > > > >

Re: [Full-disclosure] Hackery Channel 01-09-01-LOLZ: Cat Spoofing against Flow Control

2009-02-02 Thread Michael Simpson
On 1/30/09, Michael Holstein wrote: > > > Have any of you guys heard of RFID? > > Yeah .. wouldn't it make more sense to just build one that reads the > AVID chip most pets have in them anyway? > friends of mine couldn't understand how their kitchen was still full of cats every night after they i

Re: [Full-disclosure] Administrivia: Spring Cleaning

2009-02-02 Thread Biz Marqee
n3td3v being moderated is fantastic. his banning is not a strike against the "spirit" of fd, its someone standing up and saying "I have had enough of this fruitcake". full disclosure is great when its dropping 0day, discussing security in general, coming off as a righteous plan9 ninja, insulting