Re: [Full-disclosure] Pentagon Email Servers Hacked (with the URL this time)

2007-07-06 Thread David Taylor
.. ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ -- David Taylor University of Pennsylvania Office of Information Security 215-898-1236 -- ___ Full

Re: [Full-disclosure] Solaris telnet vulnberability - how many onyour network?

2007-02-14 Thread David Taylor
A patch has been released. http://sunsolve.sun.com/search/document.do?assetkey=1-26-102802-1 == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http

Re: [Full-disclosure] Nmap Online

2006-12-01 Thread David Taylor
How do you plan on dealing with all the abuse complaints you get hit with when people use your server to perform unauthorized scans of their networks? == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information

Re: [Full-disclosure] Windows Command Processor CMD.EXE Buffer Overflow

2006-10-23 Thread David Taylor
/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http://www.upenn.edu/computing/security/ Shadowserver Foundation Member http://www.shadowserver.org

Re: [Full-disclosure] NT4 worm

2006-08-31 Thread David Taylor
/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http://www.upenn.edu/computing/security/ == Penn Information Security RSS feed http

Re: [Full-disclosure] Wireless hacks

2006-08-17 Thread David Taylor
? ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information

Re: [Full-disclosure] Exploit for MS06-040 Out?

2006-08-10 Thread David Taylor
- http://secunia.com/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http://www.upenn.edu/computing/security

[Full-disclosure] Linux Privilege Escalation exploits

2006-07-14 Thread David Taylor
. == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http://www.upenn.edu/computing/security/ == Penn Information Security RSS feed http

Re: [Full-disclosure] Debian Development Machine Gluck Hacked - UPDATE

2006-07-13 Thread David Taylor
and sponsored by Secunia - http://secunia.com/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http://www.upenn.edu/computing/security

Re: [Full-disclosure] Amazon, MSN vulns and.. Yes, we know! Most sites have vulnerabilities

2006-06-24 Thread David Taylor
to see these things if they are going to be floating around. I just wish people would be be more responsible when they discover a vulnerability and develop an exploit for it. Try to let the vendor know first. On 6/23/06 10:47 PM, Gadi Evron [EMAIL PROTECTED] wrote: On Fri, 23 Jun 2006, David Taylor

Re: [Full-disclosure] Amazon, MSN vulns and.. Yes, we know! Most sites have vulnerabilities

2006-06-24 Thread David Taylor
I guess our disconnect on this is my lack of knowledge on how the actual exploits get submitted. I think I just assumed it was the person that discovered the vulnerability and/or developed the exploit that submits it to places like Milw0rm. On 6/24/06 9:11 AM, Gadi Evron [EMAIL PROTECTED]

Re: [Full-disclosure] Amazon, MSN vulns and.. Yes, we know! Mostsites have vulnerabilities

2006-06-24 Thread David Taylor
/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http://www.upenn.edu/computing/security/ == Penn Information Security RSS feed http://www.upenn.edu/computing

Re: [Full-disclosure] Amazon, MSN vulns and.. Yes, we know! Most sites have vulnerabilities

2006-06-23 Thread David Taylor
-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security

Re: [Full-disclosure] MS06-019 - How long before this develops into a self propagating email worm

2006-05-10 Thread David Taylor
/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http://www.upenn.edu/computing/security/ == Penn Information Security RSS feed

Re: [Full-disclosure] Who Do I Contact?

2006-04-24 Thread David Taylor
-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/ == David Taylor //Sr. Information Security Specialist University of Pennsylvania Information Security Philadelphia PA USA (215) 898-1236 http://www.upenn.edu/computing/security