[Full-disclosure] VMSA-2009-0010 VMware Hosted products update libpng and Apache HTTP Server

2009-08-21 Thread VMware Security team
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 - VMware Security Advisory Advisory ID: VMSA-2009-0010 Synopsis: VMware Hosted products update libpng and Apache HTTP Server

[Full-disclosure] Questions for the iProphet

2009-08-21 Thread netdev . doctor
Hey weev. Now that the FBI and everything are all out to get you, I was wondering what life on the lamb was like. How does you feel psychologically? Not as troll, but deep inside. What are their tactics? (I heard the feds bought a hooker to try to honeypot you.) Does crime pay? If you could

Re: [Full-disclosure] Questions for the iProphet

2009-08-21 Thread Anders Klixbull
He's too busy living the good life in a cardboard box in hobotown to answer :) Vi hjælper dig til at træffe bedre beslutninger. Vi tilbyder analyse- og informationsservices, der øger salget, målretter markedsføringen og reducerer risikoen for tab. www.experian.dk -Original

[Full-disclosure] NTFS Alternate Data Stream

2009-08-21 Thread Leandro Malaquias
http://www.thinkdigit.com/General/Hidden-Threat-NTFS-Alternate-Data-Streams-ADS_3328.html -- LM - If you're not part of the solutions, you're part of the problem. http://sekuritymatters.wordpress.com ___ Full-Disclosure - We believe in it. Charter:

[Full-disclosure] Free wlan sniffer for vista

2009-08-21 Thread TK
I am looking for a free wireless sniffer on Vista. I have tried wireshark but it seems I cannot get this into promiscuous mode. I need to sniff all HTTP traffic of the wireless router Thanks in advance ___ Full-Disclosure - We believe in it.

Re: [Full-disclosure] ByPass a BlueCoat Proxy 8100 Serie authentification

2009-08-21 Thread Guy
On Fri, Aug 14, 2009 at 4:17 PM, anto...@santo.franto...@santo.fr wrote: Gone beach for the Week End, more info on monday. Antoine. Lies. -Guy ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html

Re: [Full-disclosure] Free wlan sniffer for vista

2009-08-21 Thread Andrew Kuriger
Hi Tk, I would recommend grabbing WinTcpdum and the WinPcap libraries. This has worked for me in the past. http://www.winpcap.org/default.htm On Fri, 21 Aug 2009 06:07:40 -0700, TK ktriv...@msn.com wrote: I am looking for a free wireless sniffer on Vista. I have tried wireshark but it seems

[Full-disclosure] OWASP Announces International Application Security Conference for 2009

2009-08-21 Thread AppSec DC
For Immediate Release Washington DC August 20th, 2009 -- Following in the footsteps of the Open Web Application Security Project's (OWASP, http://www.owasp.org ) immensely successful and popular conferences earlier this year in Australia, Poland, Ireland, and Brazil, Washington DC will be hosting

Re: [Full-disclosure] Questions for the iProphet

2009-08-21 Thread Andrew A
How does you feel psychologically? Not as troll, but deep inside. Pretty good. I've been laughing, I've been smiling, I've been drinking and getting high. My primary partner and I tagteamed some girl last night. I might be living in a crappy hotel, but you can't keep a good troll down. I'm living

Re: [Full-disclosure] Questions for the iProphet

2009-08-21 Thread Paul Schmehl
--On Friday, August 21, 2009 04:03:40 -0500 netdev.doc...@hushmail.com wrote: Hey weev. Now that the FBI and everything are all out to get you, I was wondering what life on the lamb was like. Wouldn't life on the lamb be sheepophilia? Wouldn't it be better to have life on the sheep, if

Re: [Full-disclosure] Questions for the iProphet

2009-08-21 Thread T Biehn
Do what thou wilt shall be the whole of the law On Fri, Aug 21, 2009 at 11:16 AM, Paul Schmehl pschmehl_li...@tx.rr.com wrote: --On Friday, August 21, 2009 04:03:40 -0500 netdev.doc...@hushmail.com wrote: Hey weev. Now that the FBI and everything are all out to get you, I was

Re: [Full-disclosure] Questions for the iProphet

2009-08-21 Thread Night Ninja
weev, you need anything and I have your back. On Fri, Aug 21, 2009 at 2:03 PM, T Biehn tbi...@gmail.com wrote: Do what thou wilt shall be the whole of the law On Fri, Aug 21, 2009 at 11:16 AM, Paul Schmehl pschmehl_li...@tx.rr.com wrote: --On Friday, August 21, 2009 04:03:40 -0500

[Full-disclosure] Intercepting Southern California Gas Company user credentials... (socalgas.com)

2009-08-21 Thread Kristian Erik Hermansen
...should be pretty easy ;-) Company has been notified many times privately of this issue, but they appear incompetent. Time for public shaming. $ sslscan myaccount.socalgas.com | grep NULL Accepted SSLv3 0 bitsNULL-SHA Accepted SSLv3 0 bitsNULL-MD5 Accepted TLSv1 0

[Full-disclosure] FreeBSD stuff

2009-08-21 Thread Kingcope
I am not going to share IIS 0day anymore. http://isowarez.de/bsd-setusercontext.txt Bye. BIG TIME ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia -

[Full-disclosure] Packet Storm is back online.

2009-08-21 Thread Packet Storm
We had a provider outage but the site is now back online. ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/