Re: [Full-disclosure] Hash

2009-11-08 Thread Pete Licoln
Just find a remote kernel on vista or seven (not an XSS bitch, just a kernel remote) Then you'll be able to open your big cunt ass fuck mouth . Fuck your e-diner, "sympathy",redneck face You're a fool, go suck a lemon bitch. ___ Full-Disclosure - We bel

Re: [Full-disclosure] Hash

2009-11-02 Thread Pete Licoln
Fionnbharr, laurent is blackhat peace of spit asshole, and you're an attention seeker. Everyone knows, the only remote bug you can find is an xss or even better a csrf. laurent will find some nastie stufft as always, but will totally screw up at disclosing theses issues (as argumented before the s

Re: [Full-disclosure] [SA-GOOGLE-420] Leslie Hawthorn - Geek herder, druggy, pervert. Not so cool.

2009-06-10 Thread Pete Licoln
NO ONES GIVES A SHIT GET A JOB @BURGERKING AND SHUT THE HELL UP 2009/6/10 Hewbert Hoffram > Sorry about that. New lines. > > Also, I ended up buying zorbeez (http://www.zorbeeztowel.com/) > They had a deal with double and the duster add-on feature. > > CYBER SLEUTH DISCLOSURE BEGIN (newlines): >

[Full-disclosure] Fwd: [SA-GOOGLE-420] Leslie Hawthorn - Geek herder, druggy, pervert. Not so cool.

2009-06-10 Thread Pete Licoln
"I may as well use this as evidence to corroborate my claims: Leslie hawthorn is an Employee at Google Inc. in Mountain View, CA. Through the internet openly admits to: 1.) Being a "Fuck master" 2.) "Sometimes" doing drugs 3.) Being a "weekend warrior" (Doing recreational drugs on the weeken

Re: [Full-disclosure] CORE-2009-0521 - DX Studio Player Firefox plug-in

2009-06-10 Thread Pete Licoln
I bet everyone are out of the office in vacation. I suspect the doorkeeper, playing at "good will hunting" 2009/6/10 Jah wont_pay_the_bills > Someone is using this app ? > > Got out of inspiration ? > Smoked an extra doobie ? > > Sup with you guys ? > Your advisory usually rocks. > >

Re: [Full-disclosure] Soulseek * P2P Remote Distributed Search Code Execution

2009-06-04 Thread Pete Licoln
Seems like you have a problem with responsible disclosure Kid ; Do you have any familly relationship with jeremy Brown ? ;P http://g-laurent.blogspot.com/2009/05/soulseek-p2p-remote-distributed-search.html#comments 2009/5/25 Pete Licoln > Oh so you have a blog ... > ht

Re: [Full-disclosure] [TZO-27-2009] Firefox Denial of Service (Keygen)

2009-05-27 Thread Pete Licoln
Looks like some doctors have made some in vitro fertilization fuzzing with jeremy a while ago ... 2009/5/27 Jeremy Brown <0xjbrow...@gmail.com> > Looks like somebody's been using a browser fuzzer :) > > On Wed, May 27, 2009 at 9:14 PM, Thierry Zoller wrote: > > __

Re: [Full-disclosure] Soulseek * P2P Remote Distributed Search Code Execution

2009-05-25 Thread Pete Licoln
Oh so you have a blog ... http://g-laurent.blogspot.com/ 2009/5/25 laurent gaffie > = > - Release date: May 24th, 2009 > - Discovered by: Laurent Gaffié > - Severity: critical > = > > I. VULNERABILITY > -

Re: [Full-disclosure] SUPPORT exploitcritics.blogspot.com :)

2009-05-13 Thread Pete Licoln
I have to agree, These PHP xss hunter has taken the wrong road, the download.com|cnet useless softwares road, which is a classic at this time for this kind of unknowledge guys, it's actually a step for them. Anyways, everywhere you'll go, there'll be boring mosquitos 2009/5/13 Exploit Sweatshop

Re: [Full-disclosure] nVidia.com [Url Redirection flaw]

2009-03-26 Thread Pete Licoln
Wrong on that one .. Ruben. But i agree on the Anders Klixbull one :) 2009/3/26 Rubén Camarero > I shall count the seconds it take for Mr. Mac.User to switch internet pages > to go to Mr. Lincoln's gmail and write a reply to himself: 1, 2, finish it > for me! > > On Thu, Mar 26, 2009 at 12:34 PM

Re: [Full-disclosure] Fwd: nVidia.com [Url Redirection flaw]

2009-03-26 Thread Pete Licoln
Peter, there is no reason to insult this aspiring young computer > scientist and his endeavours to fully disclose information security > errata. I never insulted lorenzo which i do respect, but i had to point at what i've pointed out. > Calling him stupid for citing an industry acclaimed sourc

Re: [Full-disclosure] Fwd: nVidia.com [Url Redirection flaw]

2009-03-25 Thread Pete Licoln
2009/3/25 Lorenzo Vogelsang > Neverthless i think that the open redirect vulnerabilty it's serious, > because "This vulnerability is used in phishing attacks to get users to > visit malicious sites without realizing it." ( > http://www.owasp.org/index.php/Open_redirect) Well that's actually fals

Re: [Full-disclosure] nVidia.com [Url Redirection flaw]

2009-03-25 Thread Pete Licoln
There's a difference between an xss and an url redirection .. this post was about an url js based redirection, now it's a Xss, to me that's a lot of talk ( and i do contribute ) for an no persistant xss , now if you wanna have your 2 sec of glory post it on xssed.com ..

Re: [Full-disclosure] nVidia.com [Url Redirection flaw]

2009-03-24 Thread Pete Licoln
It's just a browser based Js redirection http://www.nvidia.com/content/DriverDownload/download_confirmation.asp?kw=&url=http://whatismyip.com ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted

Re: [Full-disclosure] List of Fuzzers

2009-03-06 Thread Pete Licoln
nd for Mr. Kletnieks, Jeremy Brown, Nick FitzGerald, the cool guys @ > snosoft/netragard/whatever, all the other guys from the past, present, and > future, and from me... I give a big, hugeee FUCK YOU. That FUCK YOU is also > extended to the other trolls on this list, you've mai

Re: [Full-disclosure] List of Fuzzers

2009-03-06 Thread Pete Licoln
- -bm > > On Fri, 06 Mar 2009 18:37:01 -0500 Jeremy Brown > <0xjbrow...@gmail.com> wrote: > >Don't act like you've gave any constructive advice to anyone in > >your life. > > > >Thanks for trolling, please don't come again. > > > >

Re: [Full-disclosure] List of Fuzzers

2009-03-06 Thread Pete Licoln
Ok cool, then keep it up Jeremy. At least you wont be able to say no one told you. 2009/3/6 Jeremy Brown <0xjbrow...@gmail.com> > I consider you a loser, Pete/Julio/Loser. > > On Fri, Mar 6, 2009 at 3:03 PM, Pete Licoln wrote: > > Well .. what i say is true. > &g

Re: [Full-disclosure] List of Fuzzers

2009-03-06 Thread Pete Licoln
t still the same way ... >> >> Yeah, I wrote it in C, and implemented a fuzzing oracle that way. I >> probably put 100 hours into it, and it gave back some nice return. As >> like the others. >> >> So, "what ever your real name is", I will continue to

Re: [Full-disclosure] List of Fuzzers

2009-03-06 Thread Pete Licoln
None of them was found with your fuzzer unless FF :) Btw for the firefox DoS; with the crash tab recovery function built-in this should surely be rated as high ... Also notice that "A" x 2000 is almost equivalent to : function s(){s();} s(); By the way, do you consider yourself as l33t ? ___

Re: [Full-disclosure] List of Fuzzers

2009-03-06 Thread Pete Licoln
ange i see is your last fuzzer .. written in a different language, but still the same way ... 2009/3/5 Jeremy Brown <0xjbrow...@gmail.com> > That is hilarious LOL! > > On Thu, Mar 5, 2009 at 11:14 PM, Pete Licoln > wrote: > > 11 fuzzers matchs for Jeremy Brown on this page LOL

Re: [Full-disclosure] List of Fuzzers

2009-03-05 Thread Pete Licoln
11 fuzzers matchs for Jeremy Brown on this page LOL ! 2009/3/5 Krakow Labs > Krakow Labs maintains a current list of security driven fuzzing > technologies. > > http://www.krakowlabs.com/lof.html > > ___ > Full-Disclosure - We believe in it. > Charter:

Re: [Full-disclosure] Apple Safari 4 Beta feeds: URI NULL Pointer Dereference Denial of, Service Vulnerability

2009-02-25 Thread Pete Licoln
Well you said it: "DoS Vulnerability" And stills a vulnerability, useless yes, but a vulnerability. Regards 2009/2/25, Jubei Trippataka : > Why does the industry incessantly call any bug a "DoS Vulnerability". Why > are these bugs even published to a security mailing list and not privately > dea

Re: [Full-disclosure] Buffer Overflow in dnsmap 0.22 - DNS Network Mapper by pagvac (gnucitizen.org)

2009-02-25 Thread Pete Licoln
Wow, this sounds serious ... ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] Re : Buffer Overflow in dnsmap 0.22 - DNS Network Mapper by pagvac (gnucitizen.org)

2009-02-25 Thread Pete Licoln
Wow this sound serious ... 2009/2/25, Jason Starks : > I'm going to say dnsmap isn't suid or sguid, and a segmentation fault can > occur after triggering a simple programming error (you've shown no signs of > code execution). Terrrific. > > On Wed, Feb 25, 2009 at 10:36 AM, srl > wrote: > >>

Re: [Full-disclosure] Administrivia: Spring Cleaning

2009-02-03 Thread Pete Licoln
Who cares anyway ? 2009/2/3 Ureleet > > > i guarantee hes watching right now. > > On Mon, Feb 2, 2009 at 12:32 AM, Biz Marqee wrote: > > n3td3v being moderated is fantastic. > > > > his banning is not a strike against the "spirit" of fd, its someone > standing > > up and saying "I have had en

Re: [Full-disclosure] Browser Fuzzer 2

2009-02-01 Thread Pete Licoln
Im not a dick to people, and that's not the purpose of my comments. But he's releasing a fuzzer a day: - RSH Fuzzer - CVS Fuzzer - PDF Fuzzer - SSH Fuzzer - JPEG Fuzzer - TFTP Fuzzer - MySQL Fuzzer - Browser Fuzzer (1 & 2) - MP3-TAGS Fuzzer They're all the sames kinds of fuzzing, on totally diffe

Re: [Full-disclosure] Browser Fuzzer 2

2009-01-31 Thread Pete Licoln
Don't like it? Trash it. I did. But on the other side, you ask for comments for your fuzzers I give somes constructive . Don't like it ? stay blind & Trash it :) Pete Licoln wrote: > Hi Jeremy, > > I think this fuzzer is useless, and doesn't have any kind of innovat

Re: [Full-disclosure] Browser Fuzzer 2

2009-01-31 Thread Pete Licoln
Hi Jeremy, I think this fuzzer is useless, and doesn't have any kind of innovation. This fuzzer acts as a cheap binary fuzzer, without any automation on the targeted browser, like your others fuzzers you've wrote. There's severals DOM CSS DHTML fuzzers written in JS way more powerfull, did you hea

Re: [Full-disclosure] Trigger Abuse of MDSYS.SDO_TOPO_DROP_FTBL in Oracle 10g R1 and R2

2009-01-13 Thread Pete Licoln
stfu . 2009/1/13 > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > afaik, no one cares about oracle. > > retarded blind scavengers make careers selling fallen, rotten, > previously low hanging fruit. > > <3 2 n3td3v > > > Tue, 13 Jan 2009 15:52:02 -0800 David Litchfield > wrote: > >NGSSoft

Re: [Full-disclosure] e-Holocaust

2009-01-12 Thread Pete Licoln
[ PHASE 1 ] | | -- [ PHASE 2 ] | | -- [ PHASE 3 ] | | -- It's Mini-me ! http://weblog.site5.com/images/photos/minime.jpg ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter

Re: [Full-disclosure] WTF people?

2009-01-11 Thread Pete Licoln
What's the point with MI5 n3td3v ? Regards Pete ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

Re: [Full-disclosure] WTF people?

2009-01-11 Thread Pete Licoln
sexyazngrl69 is a n3td3v alias, no doubt about it. Regards Pete ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/