Re: [Full-disclosure] itunes.apple.com owned by webapp malicious host

2011-04-01 Thread matador matador
Anyway the main point that I was wondering before is: What's happen if the sql inj bot was smarter? (For example: Using "obfuscation" technique) Probably nothing because iTunes sanitized the input. 2011/4/1 Benji > Is that a yes or a no? > > On 4/1/11, matador mat

Re: [Full-disclosure] itunes.apple.com owned by webapp malicious host

2011-04-01 Thread matador matador
; > Sigh, do you have a CSSIP aswell? > > On 4/1/11, matador matador wrote: > > Seems that Websense agree with me... > > > > > http://community.websense.com/blogs/securitylabs/archive/2011/03/29/lizamoon-mass-injection-28000-urls-including-itunes.aspx > > &g

Re: [Full-disclosure] itunes.apple.com owned by webapp malicious host

2011-04-01 Thread matador matador
me. > > On Tue, Mar 29, 2011 at 3:22 PM, matador matador wrote: > >> Enjoy! :) >> >> http://www.google.com/search?q=lizamoon.com+site%3Aapple.com >> >> ___ >> Full-Disclosure - We believe in it. >> Charter:

[Full-disclosure] itunes.apple.com owned by webapp malicious host

2011-03-29 Thread matador matador
Enjoy! :) http://www.google.com/search?q=lizamoon.com+site%3Aapple.com ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/

[Full-disclosure] Mac OS X "ps(3)" and "top(3)" truncate output

2007-05-11 Thread matador matador
I saw a strange behaviour on "ps" and on "top" output in Mac OS X 10.4.9Version. Let's see how it is: rfc-1918:~ xxx$ ps aux > ps_output rfc-1918:~ xxx$ cat ps_output USER PID %CPU %MEM VSZ RSS TT STAT STARTED TIME COMMAND xxx 587 8.0 5.4 185848 28488 ?? S 2:55PM 7:20.43 /Applications/iTune xxx

Re: [Full-disclosure] some solutions for HITB 2006 CTF

2007-01-10 Thread matador matador
I posted an update. I'm going crazy on daemon01 and daemon02...if someone wanna help me is welcome. 2006/10/16, matador matador <[EMAIL PROTECTED]>: hi i did some solutions for HITB 2006 CTF daemons. at this website: http://matador.alt

[Full-disclosure] some solutions for HITB 2006 CTF

2006-10-16 Thread matador matador
hi i did some solutions for HITB 2006 CTF daemons. at this website: http://matador.altervista.org ___ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.co