[Full-disclosure] [CVE-2013-3684] NextGEN Gallery 1.9.12 Arbitrary File Upload

2013-06-13 Thread Marcos Agüero
Title: S21sec ## - S21Sec Advisory - ## Title: NextGEN Gallery 1.9.12 Arbitrary File Upload ID:

Re: [Full-disclosure] Security Analysis of IP video surveillance cameras

2013-06-13 Thread Marcos Agüero
Title: S21sec But no everyone makes that public :) I think that their teacher is fine not being on that report. (Hi Alex!) El 12/06/13 16:05, Paul Ammann escribi: Doesn't everyone? --

Re: [Full-disclosure] McAfee VirusScan Enterprise 8.0.0 Misidentifies EICAR Test File

2006-06-12 Thread Marcos Agüero
TheGesus escribió: And you have an instant Elspy.worm flood and your Enterprise AntiVirus Administrator is shitting his pance. Run in circles, scream and shout and all THAT. Oh! That's really stupid! The logs will show 1 infection on the same PC within a few seconds. Easy to spot as a

Re: [Full-disclosure] n3td3v bashers on FD

2006-06-06 Thread Marcos Agüero
I found that word on the dictionary: schizophrenia Ok, guys. Don't hide his pills again, right? n3td3v escribió: We're the biggest security group around, theres nothing you can say to change that. We are professionals who work at the major dot-coms and earn all the money, you people are just

Re: [Full-disclosure] scanning

2006-06-02 Thread Marcos Agüero
[EMAIL PROTECTED] escribió: That is why the definition of “damage” is so important. If there is no impairment to the integrity and availability of the network, then there is no crime. So, It's seems that portscanning is not a crime but, what if I scan a network and sell/trade/lend the results

Re: [Full-disclosure] VulnSale: Windows Vista Exploit

2006-06-02 Thread Marcos Agüero
[EMAIL PROTECTED] escribió: No, I have not been interviewed. I am the fag that you gave a blow job too last night in that truckstop bathroom. Maybe you have to work full-time on it. ___ Full-Disclosure - We believe in it. Charter:

Re: [Full-disclosure] Security speakers are often very good book writers

2006-05-25 Thread Marcos Agüero
[EMAIL PROTECTED] escribió: Hello Security speakers are often very good book writers. So we made a quick selection of some of the best books (from our point of view) . Go to http://www.security-briefings.com to see the selection. And very good spammers, also :)

Re: [Full-disclosure] [HV-PAPER] Anti-Phishing Tips You Should Not Follow

2006-03-31 Thread Marcos Agüero
Michal Zalewski escribió: On Fri, 31 Mar 2006 [EMAIL PROTECTED] wrote: If the website then presents you with the Logon failed page, you are possibly on a legitimate website, so you may proceed with logging in using your correct credentials. If it gets you right through - it is definitely a

Re: [Full-disclosure] [HV-PAPER] Anti-Phishing Tips You Should Not Follow

2006-03-31 Thread Marcos Agüero
Jasper Bryant-Greene escribió: Seriously though, it wouldn't be that hard to forward the POST on to the real bank website, would it? I think so, but would be very easy to detect. Logs would show lots of diferent user logging in from the same IP Address.

Re: [Full-disclosure] War Dialing, Spoofed(?) Phone Number [area code 786], and calls across the US

2006-03-10 Thread Marcos Agüero
Just a better translation :) Steven escribió: Usted a agotado todas las opciones. Esta semana sera desconectada. Gracias. You've exhausted all options. This week will be disconnected. Thanks However, I think it would said: Esta llamada será desconectada which means: This call will be