[Full-disclosure] [RAID 2011] Call for Participation

2011-08-13 Thread Guofei Gu
Apologies for multiple copies of this announcement. 14th International Symposium on Recent Advances in Intrusion Detection (RAID'2011) September 20-21, 2011 SRI International, Menlo Park, CA http://www.raid2011.org Call for Participation =

[Full-disclosure] 2nd CfP: ICONS 2012 || February 29 - March 5, 2012 - Reunion Island

2011-08-13 Thread Cristina Pascual Gonzalez
INVITATION: = Please consider to contribute to and/or forward to the appropriate groups the following opportunity to submit and publish original scientific results. The submission deadline is set to October 5, 2011. A video of the 2011 event is available on the conference front p

[Full-disclosure] [MOHSEP] Month Of Humorous Stefan Esser Photoshops - 0x0C

2011-08-13 Thread Herr E Balls
Hi guys welcome to day 12 of glorious MOHSEP. Link is here: http://mohsepblog.blogspot.com/2011/08/friday-12th-august-2011.html Until tomorrow! Herr E Balls ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-chart

[Full-disclosure] GooglePlus Readers and Privacy issues

2011-08-13 Thread Laurent OUDOT at TEHTRI-Security
Gents, Some Google Plus readers might reveal your IP address and interesting technical information while you read some kind of "malicious" G+ profiles. It's related to the structure of the web page of G+ profiles and the way they are loaded/displayed with such a client. Example of vulnerable G+

[Full-disclosure] [ MDVSA-2011:123 ] squirrelmail

2011-08-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2011:123 http://www.mandriva.com/security/ _

[Full-disclosure] WebsiteBaker 2.8.1 <= Arbitrary File Upload Vulnerability

2011-08-13 Thread YGN Ethical Hacker Group
1. OVERVIEW WebsiteBaker 2.8.1 and lower versions are vulnerable to Arbitrary File Upload. 2. BACKGROUND WebsiteBaker helps you to create the website you want: A free, easy and secure, flexible and extensible open source content management system (CMS). Create new templates within minutes - pow

[Full-disclosure] WebsiteBaker 2.8.1 <= Cross Site Request Forgery (CSRF) Vulnerability

2011-08-13 Thread YGN Ethical Hacker Group
1. OVERVIEW WebsiteBaker 2.8.1 and lower versions are vulnerable to Cross Site Request Forgery (CSRF). 2. BACKGROUND WebsiteBaker is a PHP-based Content Management System (CMS) designed with one goal in mind: to enable its users to produce websites with ease. 3. VULNERABILITY DESCRIPTION Web

[Full-disclosure] [ MDVSA-2011:122 ] clamav

2011-08-13 Thread security
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 ___ Mandriva Linux Security Advisory MDVSA-2011:122 http://www.mandriva.com/security/ _