[Full-disclosure] RSN-2010-01 -- Multiple vulnerabilities in OpenEMR Electronic Medical Record Software

2010-06-23 Thread David Shaw
session data to a third party web host. Details Vulnerable Product : OpenEMR 3.2 Vulnerability Type : Session-stealing XSS Directory Listing Discovered by : David Shaw (ds...@redspin.com) Timeline Bug Discovered: May 14, 2010 Vendor Advised

Re: [Full-disclosure] Question about police harassment. Police trying over years to entrap me as hacker.

2009-09-09 Thread David Shaw
On Wed, Sep 9, 2009 at 11:43 AM, mrx m...@propergander.org.uk wrote: Does anybody care? In fact does anybody who contributes anything useful to this list use Hushmail? (at this time I am too lazy to look). If not I can set my spam filter. Amusing as it has been, it has grown tiresome.