[Full-disclosure] hi5 Antiphishing Departement

2007-03-24 Thread beNi
ll blog post is available here: http://mybeni.rootzilla.de/mybeNi/2007/hi5_antiphishing_departement/ -- benjamin "beNi" flesch mybeNi websecurity - http://mybeNi.rootzilla.de/mybeNi (coolest guy in da hood) ___ Full-Disclosure - We believe

[Full-disclosure] GMail Contact Information Disclosure PoC

2007-03-14 Thread beNi
logged into Google Services + Serves you the Authentication Token) have fun and cheers, benjamin -- benjamin "beNi" flesch mybeNi.tk websecurity - http://mybeNi.rootzilla.de/mybeNi/ (coolest guy in da hood) ___ Full-Disclosure - We bel

[Full-disclosure] different Wordpress Vulnerabilities

2007-02-11 Thread beNi
ctory traversal in the wp-backup plugin allows you to download etc/passwd file (i hope this hasnt been found before, I didnt check it) http://mybeni.rootzilla.de/mybeNi/blog/2/ cheers beNi -- -- beNi http://www.mybeNi.tk (coolest guy in da hood) ___

[Full-disclosure] myspace redirection

2007-02-10 Thread beNi
http://dect.myspace.com/event.ng/Type=click&FlightID=26715&AdID=44985&TargetID=7242&Values=710&Redirect=http://www.google.de -- -- beNi http://www.mybeNi.tk (coolest guy in da hood) ___ Full-Disclosure - We believe