Re: [Full-disclosure] [New Security Tool] INSECT Pro 2.6.1 release

2011-06-22 Thread Sergio 'shadown' Alvarez
Juan, I've seen you are using Michal Zalewski's skipfish as engine, isn't it a license violation? Cheers, Sergio On Jun 23, 2011, at 3:16 AM, Juan Sacco wrote: > Test your network security and audit your website using the same tools > as hackers. > INSECT Pro 2.6.1 is available for purchase

Re: [Full-disclosure] [New Security Tool] INSECT Pro 2.6.1 release

2011-06-22 Thread Andrew Farmer
On 2011-06-22, at 20:38, adam wrote: > - Using outdated version of SSL > - Outdated SSL Certificate (2009) And while we're beating this dead horse: "You attempted to reach www.insecurityresearch.com, but instead you actually reached a server identifying itself as myinflatableboat.net." _

Re: [Full-disclosure] [New Security Tool] INSECT Pro 2.6.1 release

2011-06-22 Thread adam
*cough* *Directory indexes enabled:* http://www.insecurityresearch.com/wp-includes/ http://www.insecurityresearch.com/wp-content/uploads/ http://www.insecurityresearch.com/wp-content/plugins/wp-pagenavi/ http://www.insecurityresearch.com/wp-content/plugins/wp-postratings/ *Path disclosure:* http:

Re: [Full-disclosure] [New Security Tool] INSECT Pro 2.6.1 release

2011-06-22 Thread adam
*cough* *Directory indexes enabled:* http://www.insecurityresearch.com/wp-includes/ http://www.insecurityresearch.com/wp-content/uploads/ http://www.insecurityresearch.com/wp-content/plugins/wp-pagenavi/ http://www.insecurityresearch.com/wp-content/plugins/wp-postratings/ *Path disclosure:* http:

Re: [Full-disclosure] [New Security Tool] INSECT Pro 2.6.1 release

2011-06-22 Thread -= Glowing Sex =-
OK, now this is just blatant sales spam. This list isn't your market - can't you just move on? ^^ thats the poor state of FD nowdays :P people do not even realise, i think, what the thing means :P lol... i think this maybe either due to language,simply not knowing english.. or, pure spam of an ap

Re: [Full-disclosure] [New Security Tool] INSECT Pro 2.6.1 release

2011-06-22 Thread Thor (Hammer of God)
OK, now this is just blatant sales spam. This list isn't your market - can't you just move on? > -Original Message- > From: full-disclosure-boun...@lists.grok.org.uk [mailto:full-disclosure- > boun...@lists.grok.org.uk] On Behalf Of Juan Sacco > Sent: Wednesday, June 22, 2011 6:16 PM >

Re: [Full-disclosure] Full-Disclosure Digest, Vol 76, Issue 42

2011-06-22 Thread t0hitsugu
yourhead@urass:~# /bin/bash rm -rf yourself > http://extraexploit.blogspot.com > -- next part -- > An HTML attachment was scrubbed... > URL: > http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20110622/23b83860/attac

[Full-disclosure] [New Security Tool] INSECT Pro 2.6.1 release

2011-06-22 Thread Juan Sacco
Test your network security and audit your website using the same tools as hackers. INSECT Pro 2.6.1 is available for purchase right now worldwide through PayPal! * Run Faster: You not only want to make great security testing, you want a nice performance * Load Better: Major graphical int

full-disclosure@lists.grok.org.uk

2011-06-22 Thread exploit dev
Hi guys, If you are interested I found , with a Google dork, a list of c&c related to TDSS botnet and discovered in a Pastebin page. If you are interested check http://extraexploit.blogspot.com/2011/06/tdss-srvs-list.html -- http://extraexploit.blogspot.com __

[Full-disclosure] New DoS, CSRF and XSS vulnerabilities in ADSL modem Callisto 821+

2011-06-22 Thread MustLive
Hello list! I want to warn you about new security vulnerabilities in ADSL modem Callisto 821+ (SI2000 Callisto821+ Router). These are Denial of Service, Cross-Site Request Forgery and Cross-Site Scripting vulnerabilities. In April I've already drew attention of Ukrtelecom's representative (and th

Re: [Full-disclosure] Goatse Security EMERGENCY RELEASE - RAMPANT VULNERABILITY SPREADING LIKE WILDFIRE

2011-06-22 Thread IA64 LOL
http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1068 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2006-1067 lol On 06/21/2011 07:53 PM, adam wrote: > "\001DCC SEND "loljewsdidwtc.jpg" 0 0 0" > > Absolutely love the example filename. > > On Tue, Jun 21, 2011 at 9:31 PM, Laurelai Stor