[Full-disclosure] (Almost) Universal perl CGI exploitation

2010-06-20 Thread Marshall Whittaker
This works on the perl pipe bug. It'll take an arg that's the address of a website and it's cgi script with some args to the script then figure out if it can exploit it and how. It's worked on everything I've tried it on, though I have limited test boxes. It's pretty dirty but it works. #!/usr/

Re: [Full-disclosure] The Strange and Consequential Case of Bradley Manning, Adrian Lamo and WikiLeaks

2010-06-20 Thread Ed Carp
Lamo is a sociopathic asshole and a consummate liar. Why anyone would want to trust anything that comes out of his mouth (and Poulson, too, for that matter) is beyond me. There's a reason most companies won't hire convicted felons - most of them are self-absorbed liars who will do anything for at

[Full-disclosure] The Strange and Consequential Case of Bradley Manning, Adrian Lamo and WikiLeaks

2010-06-20 Thread Ivan .
http://www.informationclearinghouse.info/article25767.htm ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/