[Full-disclosure] Facebook is the awesomest

2009-02-13 Thread Smoking Gun
On Fri, 13 Feb 2009, Adriel T. Desautels wrote: > That is awesome! I am going to add that to the blog post :) > > OMG Me to. When all the other experts finish talking about this, I will wait until you finish plagiarize everyone elses ideas, concepts notions, then re-use the stuff you re-used. I

Re: [Full-disclosure] Facebook from a hackers perspective

2009-02-13 Thread Smoking Gun
On Fri, Feb 13, 2009 at 10:12 AM, wrote: > > > Your transgender technical attack was pioneered and perfected in > 2008 by information security expert Eric "Loki" Hines - why are you > taking credit for a lesser version of his groundbreaking work, and > insisting on originality? Perhaps he's e

Re: [Full-disclosure] Facebook from a hackers perspective

2009-02-13 Thread Smoking Gun
On Fri, Feb 13, 2009 at 11:28 AM, Adriel T. Desautels < ad_li...@netragard.com> wrote: > > Sounds to me like you have a crush on Eric "Loki" Hines. > > Now that one thinks about it, makes perfect sense to post the question to you. Surely in your infinite security wisdom you can answer the question

Re: [Full-disclosure] [SCADASEC] 11. Re: SCADA Security - Software fee's

2009-02-20 Thread Smoking Gun
On Thu, Feb 19, 2009 at 7:15 PM, simon_lists wrote: > Joshua, >I understand why you wrote what you did but you're wrong. Let me > explain... > >Today the security industry is a confused and immature place. Most > vendors offer half assed services that sell for half assed prices.

Re: [Full-disclosure] [SCADASEC] 11. Re: SCADA Security - Software fee's

2009-02-20 Thread Smoking Gun
On Fri, Feb 20, 2009 at 9:44 AM, Adriel T. Desautels wrote: > Hi Loki > This would be the second time I ask you publicly, is that all you have to offer? Surely you or Simon can come together and offer a meaningful response to my previous post. For those in the United States, you have the show Gho

Re: [Full-disclosure] [SCADASEC] 11. Re: SCADA Security - Software fee's

2009-02-23 Thread Smoking Gun
On Sat, Feb 21, 2009 at 9:30 PM, wrote: > On Fri, 20 Feb 2009 09:24:29 EST, Smoking Gun said: > >> Ironically, your own quote"company"quote offered penetration testing >> services at the insane pricing scheme of "we'll pentest0r joo for free >> and

Re: [Full-disclosure] [SCADASEC] 11. Re: SCADA Security - Software fee's

2009-02-23 Thread Smoking Gun
On Mon, Feb 23, 2009 at 10:26 AM, Michael Krymson wrote: > > > On Mon, Feb 23, 2009 at 8:57 AM, Smoking Gun > wrote: >> > Blah blah gross personal speculation blah... > > At any rate, if CEO Cloe decides to hire a pen-tester for $1,000 and gets > back a scan with s

Re: [Full-disclosure] [NETRAGARD SECURITY ADVISORY] [Cambium Group, LLC. CAMAS Content Management System -- Multiple Critical Vulnerabilities][NETRAGARD-20070820]

2009-02-25 Thread Smoking Gun
On Tue, Feb 24, 2009 at 4:00 PM, Netragard Advisories wrote: The irony of Kevin (don't make fun of my complexion) Finisterre disclosing he has a full time job outside of security followed by his foray into the realm of security with "advisories" is puzzling. So Kevin isn't working in the industry

Re: [Full-disclosure] [NETRAGARD SECURITY ADVISORY] [Cambium Group, LLC. CAMAS Content Management System -- Multiple Critical Vulnerabilities][NETRAGARD-20070820]

2009-02-25 Thread Smoking Gun
On Wed, Feb 25, 2009 at 9:59 AM, wrote: > And *that* threat model (retaliation by employers/friends/society) is a > well-understood threat model, and is *why* medical records are in general > considered confidential. > There is a saying around here: "Du hast die richtige Revolverschnauze du hast

Re: [Full-disclosure] Cambium Group, LLC. CAMAS Advisory

2009-02-26 Thread Smoking Gun
On Wed, Feb 25, 2009 at 11:57 AM, Adriel T. Desautels wrote: > I'm not sure if its appropriate for this list but it is related to > penetration testing and vulnerability disclosure (moderators decide). > The irony of Kevin (don't make fun of my complexion) Finisterre disclosing he has a full time