Re: [Full-disclosure] Slightly OT: What SSL cert do you consider strongest?

2013-10-23 Thread gremlin
ities) to issue a valid certificate for any host or domain, so no one will be able to distinguish between original host with updated certificate and MitM proxy operated by feds. -- Alexey V. Vissarionov aka Gremlin from Kremlin GPG: 8832FE9FA791F7968AC96E4E909DAC45EF3B1FA8 @ hkp://keys.

Re: [Full-disclosure] How many .gov sites did the usa government ddosed/nearly defaced?

2013-10-08 Thread gremlin
more respected job... -- Alexey V. Vissarionov aka Gremlin from Kremlin GPG: 8832FE9FA791F7968AC96E4E909DAC45EF3B1FA8 @ hkp://keys.gnupg.net ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsore

Re: [Full-disclosure] Get rid of french marketing spam

2013-03-06 Thread gremlin
utable (in wide sence) attachments contain something dangerous. Using it for checking all the messages is just an ineffective waste of resources... -- Alexey V. Vissarionov aka Gremlin from Kremlin GPG key ID: 0xEF3B1FA8, keyserver: hkp://subkeys.pgp.net GPG key fingerprint: 8832 FE9F A791 F796 8AC9 6E4

Re: [Full-disclosure] Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000

2013-01-27 Thread gremlin
ymous who got ratted > > out by one of their own how they feel about the word > > "trustworthy" regarding the rat who said "I promise not to > > rat you out". > :) > There is no honor among thieves (or corporations, or lawyers, > or...) s/no/mo

Re: [Full-disclosure] How to prevent HTTPS MitM

2013-01-18 Thread gremlin
to DoS the MitM attempt? Yes, but that most likely will cut your Internet connection on the inspection proxy. -- Alexey V. Vissarionov aka Gremlin from Kremlin GPG key ID: 0xEF3B1FA8, keyserver: hkp://subkeys.pgp.net GPG key fingerprint: 8832 FE9F A791 F796 8AC9 6E4E 909D

Re: [Full-disclosure] how to sell and get a fair price

2013-01-16 Thread gremlin
ay anonymous I'd simply not bother at all, as releasing materials to public domain is the best protection against both plagiarism and "piracy". -- Alexey V. Vissarionov aka Gremlin from Kremlin GPG key ID: 0xEF3B1FA8, keyserver: hkp://subkeys.pgp.net GPG key fingerprint: 8832 FE9F A791 F7

Re: [Full-disclosure] how to sell and get a fair price

2013-01-16 Thread gremlin
key). > It's especially problematic if the local law enforcement > authorities want to have a little chat with BitWizard97 > regarding some other activities... They should want to ask those questions to another person - say, BitBreaker12, who may be suspected in something illeg

Re: [Full-disclosure] how to sell and get a fair price

2013-01-15 Thread gremlin
anonymous? Writing hmmm... articles about vulnerabilities for some (very specific) media and getting a hmmm... fee for that is mostly legal. Opposed to the use of that information... -- Alexey V. Vissarionov aka Gremlin from Kremlin GPG key ID: 0xEF3B1FA8, keyserver: hkp://subkeys.pgp.net GPG k

Re: [Full-disclosure] DPI evasion

2012-12-20 Thread gremlin
should we use some other technics/protocols? More users on VPN servers + random delays on both VPN and outer interfaces == less correlation between users and data streams. -- Alexey V. Vissarionov aka Gremlin from Kremlin GPG key ID: 0xEF3B1FA8, keyserver: hkp://subkeys.pgp.ne

Re: [Full-disclosure] DPI evasion

2012-12-17 Thread gremlin
lied)? Does the VPN endpoint server administrator also adhere to that principle? And, finally: do you know what to do when _they_ knock at your door? -- Alexey V. Vissarionov aka Gremlin from Kremlin GPG key ID: 0xEF3B1FA8, keyserver: hkp://subkeys.pgp.net GPG key fingerprint: 8832 FE9F A791 F79

Re: [Full-disclosure] Remote Command Execution on Cisco WAG120N

2012-11-27 Thread gremlin
exey V. Vissarionov aka Gremlin from Kremlin GPG key ID: 0xEF3B1FA8, keyserver: hkp://subkeys.pgp.net GPG key fingerprint: 8832 FE9F A791 F796 8AC9 6E4E 909D AC45 EF3B 1FA8 ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disc