Re: [Full-disclosure] IP-Adresses of German Secret Intelligence Agency supposedly leaked

2008-11-16 Thread Tonnerre Lombard
d" legally to the state of a de-facto secret service. And that's the point of criticism here: it mixes secret service competences with the normal executive pillar of the state. However, I'm not sure that belongs here. Tonnerre -- SyGroup GmbH Tonnerre

Re: [Full-disclosure] security industry software license

2008-10-19 Thread Tonnerre Lombard
Salut, Valdis, On Fri, 17 Oct 2008 08:45:21 -0400, [EMAIL PROTECTED] wrote: > You *really* don't want to follow that idea to its logical conclusion. Evil bread-eating terrorists. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+4

Re: [Full-disclosure] pause for reflection

2008-10-07 Thread Tonnerre Lombard
tizenship. ;-) Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description: PGP

Re: [Full-disclosure] THC releases video and tool to create fake ePassports

2008-09-30 Thread Tonnerre Lombard
ot get epassports "for security reasons". Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTECTED] signature

Re: [Full-disclosure] THC releases video and tool to create fake ePassports

2008-09-30 Thread Tonnerre Lombard
d me, which electronic attribute tags an ePassport as diplomatic if no diplomatic ePassports exist? > - and I'd rather spend time in an American jail for a false > diplomatic passport than in just about any other country for anything > else! You're into SM/torture? TMD.

Re: [Full-disclosure] To disclose or not to disclose

2008-09-28 Thread Tonnerre Lombard
for the products in question, if such a thing exists. This allows you to create a patch for the product and circulate it along with the advisory. This minimizes the risk level for users of the product, of course. Tonnerre -- SyGroup GmbH Tonnerre Lomba

Re: [Full-disclosure] Invalid Certificate

2008-09-17 Thread Tonnerre Lombard
who to trust pretty quickly. -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description:

Re: [Full-disclosure] [RFC] Very Low Signal to Noise Ratio on FD

2008-09-15 Thread Tonnerre Lombard
either filtering the signal or not filtering the noise to > varying degrees. Try a Bayesian SPAM filter; works well for my purposes. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86

Re: [Full-disclosure] ISO Standards

2008-08-26 Thread Tonnerre Lombard
/ > I used to purchase standards directly from them. The move to > downloadable PDF files is a good step forward. A4 is a real nuisance > if you are in the US instead of England. ANSI should have US Letter format. Tonnerre -- SyGroup G

Re: [Full-disclosure] Full-Disclosure? introducing lul-disclosure.

2008-07-01 Thread Tonnerre Lombard
Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description: PGP signature __

Re: [Full-disclosure] so this is FD...

2008-06-30 Thread Tonnerre Lombard
e world usually gets better when you learn to adjust your filters. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTECTE

Re: [Full-disclosure] Skype chat encryption with OTR

2008-06-19 Thread Tonnerre Lombard
e of proof if authenticity which is executed in a way which is only ever trustworthy to the recipient, so the recipient cannot prove anything to others with it. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güte

Re: [Full-disclosure] Skype chat encryption with OTR

2008-06-18 Thread Tonnerre Lombard
ctly. The plausible deniability is due to the fact that the signature is executed using a symmetric key known to both parties, so that either party (but noone else) could have sent the message. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques T

Re: [Full-disclosure] Working exploit for Debian generated SSH Keys

2008-05-23 Thread Tonnerre Lombard
urce, but the quality is rather poor in this case, and you should only use it in addition to other sources. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Bas

Re: [Full-disclosure] Working exploit for Debian generated SSH Keys

2008-05-20 Thread Tonnerre Lombard
ing with uninitialized memory and the Process ID. With the elimination of the uninitialized memory as seed, the seed for the MAC was entirely comprised by the PID. So we're not debating a weakness in the PRNG here at all, which is a _very_ delicate subject. Tonnerr

Re: [Full-disclosure] [DoS] Firefox 3 beta 5 on Ubuntu 7.10 (hangs the OS)

2008-04-21 Thread Tonnerre Lombard
rashing, but with a scheduler as bad as this, I wouldn't dare letting the users run without rlimits. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053

Re: [Full-disclosure] Firewire Attack on Windows Vista

2008-03-05 Thread Tonnerre Lombard
-time Microsoft employee.] Hi there. ;-) Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTECTED] sig

Re: [Full-disclosure] rPSA-2008-0052-1 kernel

2008-02-13 Thread Tonnerre Lombard
ged to be about a week late. Congratulations. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTECTED] sign

Re: [Full-disclosure] Brute force attack - need your advice

2008-02-12 Thread Tonnerre Lombard
o; there are e.g. scripts which evaluate failed logins from syslog and ban them. Thus the mention of the user name with spaces, some of these scripts fall for that trick. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33

Re: [Full-disclosure] Brute force attack - need your advice

2008-02-12 Thread Tonnerre Lombard
e with spaces). You clearly don't want your DNS server blacklisted, for example. Tonnerre [1]: No, a RAID1 is not a backup. -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383

Re: [Full-disclosure] Brute force attack - need your advice

2008-02-11 Thread Tonnerre Lombard
number generator to generate cryptographic keys!) Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTE

Re: [Full-disclosure] What makes Yahoo! a good merger candidate?

2008-02-06 Thread Tonnerre Lombard
7;s people like spamcop who think that RFCs are ok for some > things but not for others :-( I think I'm not going to be able to resist the temptation to use rfc-ignorant.org as a blacklist on a massive amount of mail servers so much longer... Tonnerre --

Re: [Full-disclosure] [FDSA] Sort - Critical Format String Vulnerability

2008-01-18 Thread Tonnerre Lombard
f the sort process which is not already known to the user executing it anyway. It is clearly a bug though, and wants to be fixed. So congratulations to a working, though overdramatizised, discovered format string vulnerability. Tonnerre -- SyGroup GmbH Tonnerre Lombard

Re: [Full-disclosure] PWDumpX v1.4 (and GUI:s)

2008-01-10 Thread Tonnerre Lombard
them now too. No, if you use a GUI, you are not going to get very far in your pentest, that's all. Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel

Re: [Full-disclosure] PWDumpX v1.4

2008-01-08 Thread Tonnerre Lombard
Salut, On Tue, 8 Jan 2008 03:30:13 -0600 reepex <[EMAIL PROTECTED]> wrote: > he is a 'point and click' hacker .. do not confuse him Oh, oh, I'm sorry, I keep forgetting that Point'n'Hack interfaces are the future. Tonnerre

Re: [Full-disclosure] PWDumpX v1.4

2008-01-08 Thread Tonnerre Lombard
n a remote pentest? Try to install a VNC server on the server in order to be able to start the GUI? Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel W

Re: [Full-disclosure] Microsoft FTP Client Multiple Bufferoverflow Vulnerability

2007-11-28 Thread Tonnerre Lombard
Salut, On Wed, 28 Nov 2007 13:16:34 +0100 "KJK::Hyperion" <[EMAIL PROTECTED]> wrote: > Tonnerre Lombard ha scritto: > >>> Microsoft FTP Client Multiple Bufferoverflow > >>> Vulnerability > >> Isn't the FTP client compiled with stack ove

Re: [Full-disclosure] Microsoft FTP Client Multiple Bufferoverflow Vulnerability

2007-11-28 Thread Tonnerre Lombard
tion? If so, how is that supposed to help? Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Güterstrasse 86 Fax:+41 61 383 14 674053 Basel Web:www.sygroup.ch [EMAIL PROTECTED]

Re: [Full-disclosure] SSH brute force blocking tool

2006-12-01 Thread Tonnerre Lombard
can help you there. > Perhaps I should re-write TCP into the script to ensure no one ever > spoofs again. That wouldn't be very useful since the L4Addr doesn't matter much here, as we're dealing with L3addrs... Tonnerre -- SyGrou

Re: [Full-disclosure] SSH brute force blocking tool

2006-12-01 Thread Tonnerre Lombard
rgument $9 is "from" (which it is). So it takes $10 and prints it (in this case, mars.) If you check $10 to look like an IP address, I set my username to "bikermice from 217.14.64.1", you're going to blacklist 217.14.64.1 because it is a valid IP.

Re: [Full-disclosure] SSH brute force blocking tool

2006-11-30 Thread Tonnerre Lombard
;bikermice from mars"? Are you going to blacklist mars then? Tonnerre -- SyGroup GmbH Tonnerre Lombard Solutions Systematiques Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach BL Web:www.sygroup.ch [EMAIL PROTECTED] si

Re: [Full-disclosure] SSH brute force blocking tool

2006-11-28 Thread Tonnerre Lombard
your local names, or mDNS, you can e.g. blacklist the workstation of the admin so he can't log in anymore) Tonnerre -- SyGroup GmbH Tonnerre Lombard Lösungen mit System Tel:+41 61 333 80 33Röschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach BL Web:www.syg

Re: [Full-disclosure] Putty Proxy login/password discolsure....

2006-11-02 Thread Tonnerre Lombard
physical access, just plug in your iPod with UNIX and enjoy full memory access to the host machine... Tonnerre -- SyGroup GmbH Tonnerre Lombard Lösungen mit System Tel:+41 61 333 80 33Röschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach BL Web:www.syg

Re: [Full-disclosure] Removing the NIC cable = EoP?

2006-10-03 Thread Tonnerre Lombard
Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach BL Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description: This is a digitally

Re: [Full-disclosure] The truth about Rob Levin aka Liloofirc.freenode.net

2006-09-24 Thread Tonnerre Lombard
Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach BL Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description: This is a digitally signed message part _

Re: [Full-disclosure] tar alternative

2006-09-20 Thread Tonnerre Lombard
usual directory traversal vulnerability. Yes, they also exist, but if so, it needs to be fixed inside your tar program. NetBSD and Solaris tar for example don't seem to have this vulnerability. Nor does the dreaded GNU tar. Tonnerre -- SyGroup GmbH Tonne

Re: [Full-disclosure] PHP 5.1.6 / 4.4.4 Critical php_admin* bypass by ini_restore()

2006-09-12 Thread Tonnerre Lombard
function was last touched in 5.1.4. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach BL Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description: This

Re: [Full-disclosure] Microsoft product vs Microsoft patch

2006-08-24 Thread Tonnerre Lombard
ing your build. Binary patches, like with xdelta, don't share these problems. They do have a whole lot of different problems though which invalidate the measurement as well. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roe

Re: [Full-disclosure] 70 million computers are using Windows 98 right now

2006-08-02 Thread Tonnerre Lombard
e and caused a lot of amusement along us UNIX admins. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach BL Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc

Re: [Full-disclosure] Are consumers being misled by "phishing"?

2006-07-13 Thread Tonnerre Lombard
three-digit one. So if the majority of people with an IQ higher than 100 have an IQ which is a _lot_ above 100, this would mean that the amount of 419 victims is actually _higher_ than 50% of the humanity. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit

Re: [Full-disclosure] 70 million computers are using Windows 98 right now

2006-07-13 Thread Tonnerre Lombard
whole thing cracked open wide and Microsoft is still there and all well. A few companies list a lot of equipment, but well. Why should Microsoft be affected at all? Anyway. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333

Re: [Full-disclosure] UnAnonymizer

2006-06-27 Thread Tonnerre Lombard
mply time out though. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach BL Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description: This is a digitally signe

[Full-disclosure] RE: MySQL DoS

2006-06-15 Thread Tonnerre Lombard
--+ > 1 row in set (0.00 sec) ASL? (Architecture, System, Live version) Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach Web:www.sygroup.ch [EM

[Full-disclosure] Re: MySQL DoS

2006-06-14 Thread Tonnerre Lombard
ing readline 5.1 -> affected mysql Ver 12.22 Distrib 4.0.18, for mandrake-linux-gnu (i586) -> affected Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach Web:www.

Re: [Full-disclosure] Is your security 6/6/6 ready?

2006-06-07 Thread Tonnerre Lombard
Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description: This is a digitally signed message part

Re: [Full-disclosure] Google blocked in China?

2006-06-06 Thread Tonnerre Lombard
s however a number of hacks around this, such as the elgooG mirror... Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach Web:www.sygroup.ch [EMAIL PROTECTED] sign

Re: [Full-disclosure] Tool Release - Tor Blocker

2006-06-03 Thread Tonnerre Lombard
be handling the case has even the slightest idea of the matter, usually. So if you have one index.html moved to index.html.bak and a new index.html reading 'pwned', some companies are already in the ten thousands of damages. Tonnerre -- SyGroup GmbH Tonnerr

Re: [Full-disclosure] blocking tor is not the right way forward. It may just be the right way backward.

2006-06-03 Thread Tonnerre Lombard
o bite Jason surely was one. Wrong end, people... Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Descr

Re: [Full-disclosure] Tool Release - Tor Blocker

2006-06-03 Thread Tonnerre Lombard
-- Linus Benedict Torvalds Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9 Fax:+41 61 383 14 674153 Reinach Web:www.sygroup.ch [EMAIL PROTECTED] signature.asc Description: This is

Re: re : [Full-disclosure] n3td3v agenda revealed

2006-06-03 Thread Tonnerre Lombard
s is comparable in any way. Or are you aware of any other security problems in the mainland right now? Oh well, right, the charta. I'm sorry. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstr

Re: [Full-disclosure] Tool Release - Tor Blocker

2006-06-03 Thread Tonnerre Lombard
rk and nearly 80% of the traffic are actually legitimate. Why not block the Internet then? Most of the time you don't get the bastard spamass anyway. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit System Tel:+41 61 333 80 33Roeschenzerstrasse 9

Re: [Full-disclosure] Different google interface when using some Tor exit nodes

2006-06-01 Thread Tonnerre Lombard
tml This is due to IP based defaults. Google looks different from different countries. Walk around in the world with your laptop and you'll see what I mean. This is not a Tor vulnerability. Tonnerre -- SyGroup GmbH Tonnerre Lombard Loesungen mit