Re: [Full-disclosure] Mutt: failure to check server certificate in SMTP TLS connection

2011-03-16 Thread dave b
On 9 March 2011 16:41, Tim wrote: >> As port 587 is for port for TLS/STARTTLS and port 465 is for ssl if I >> am not mistaken. >> >> Please do point out if I have gotten this completely incorrect. > > > Nope, you're right, it looks like I got the two mixed up. > Good catch on the lack of certifica

[Full-disclosure] TROOPERS Agenda finalized

2011-03-16 Thread Florian Horsch
If you happen to live/work in Europe you shouldn't miss TROOPERS11. We just finalized the agenda and it goes like this: - Your crown jewels online – Attacks to SAP Web Applications by Mariano Nuñez Di Croce - "Attacking Oracle Web Applications with Metasploit" by Chris Gates - "Ongoing Identity

[Full-disclosure] [SPANISH-ARGENTINA] Curso de seguridad informatica GRATUITO

2011-03-16 Thread runlvl
Empezamos un nuevo año y continuamos con los cursos de seguridad informática Este sábado vamos a realizar un curso relámpago sobre vulnerabilidades en aplicaciones web. Temario: * Server-side SQL / PHP inyecciones (Incluyendo ataques blind y por parametros numericos). * Ataques explicito

[Full-disclosure] [ MDVSA-2011:045 ] postfix

2011-03-16 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2011:045 http://www.mandriva.com/security/ _

[Full-disclosure] AST-2011-003:

2011-03-16 Thread Asterisk Security Team
ProductAsterisk SummaryResource exhaustion in Asterisk Manager Interface Nature of Advisory Denial of Service Susceptibility Remote Unauthenticated Sessions if manag

[Full-disclosure] AST-2011-004:

2011-03-16 Thread Asterisk Security Team
ProductAsterisk SummaryRemote crash vulnerability in TCP/TLS server Nature of Advisory Denial of Service Susceptibility Remote Unauthenticated Sessions