Re: [Full-disclosure] Apple IOS security issue pre-advisory record

2012-03-26 Thread Charlie Derr
On 03/23/2012 07:26 PM, Michal Zalewski wrote: >> I find it very unfortunate that 300 supposed security professionals clicked >> on a hidden link like that without first checking what it was, or if not >> simply ignoring it like I did!!! > > So how do you meaningfully "check what it is" without act

Re: [Full-disclosure] [funsec] mac trojan

2012-04-06 Thread Charlie Derr
On 04/05/2012 10:30 AM, RandallM wrote: > can someone tell me what effects there are to being infected with > flashback? signs? google search just brings up the same same news > stories. > > also, if one is.. it seems there are some files that cannot be > recovered so new install necessary? > No p

Re: [Full-disclosure] We're now paying up to $20, 000 for web vulns in our services

2012-04-27 Thread Charlie Derr
On 04/26/2012 08:45 AM, Bob McConnell wrote: >> From: Michal Zalewski >> >>> A you-only-get-it-when-successful 20,000$ budget from Google is insulting, >>> considering the perhaps massive time >>> investment from the researcher. [...] and yet they only pay a nice >>> researcher 20 grand? You can

Re: [Full-disclosure] Allegations regarding OpenBSD IPSEC

2010-12-18 Thread Charlie Derr
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 On 12/17/2010 12:52 PM, Paul Schmehl wrote: > --On December 17, 2010 12:31:37 PM -0500 Larry Seltzer > wrote: > >>> The one thing Mr. Perry has not done, and which, if his claims have any >>> merit at all, he could easily do, since he claims he's no

Re: [Full-disclosure] OpenBSD owned

2007-05-24 Thread charlie derr
Don't think so, just prune off the www. and it works fine. ~c Suzuki Kawasaki wrote: > Was OpenBSD owned ... http://www.openbsd.org > > > > > ___ > Full-Disclos