Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-21 Thread Ron DuFresne
On Thu, 21 Apr 2005, bkfsec wrote: > Day Jay wrote: > > >I think it's a whole lot of trouble to the newbie > >beginners who probably ran it the first time. > > > >Lamers. Heh. > > > > > > > > > I haven't seen any evidence as of yet that anyone ran this code on a > segment connected to the network

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-21 Thread Cody Hatch
Try running John the Ripper on the file. LOL. Cody On 4/21/05, Tim O'Guin <[EMAIL PROTECTED]> wrote: > Yah... You can take that back now as of 3:04 CST. hehe. > > On 4/21/05, bkfsec <[EMAIL PROTECTED]> wrote: > > > > I haven't seen any evidence as of yet that anyone ran this code on a > > segme

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-21 Thread Tim O'Guin
Yah... You can take that back now as of 3:04 CST. hehe. On 4/21/05, bkfsec <[EMAIL PROTECTED]> wrote: > > I haven't seen any evidence as of yet that anyone ran this code on a > segment connected to the network (seeing as I haven't seen any passwd or > shadow files posted to the list...) indicatin

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-21 Thread bkfsec
Day Jay wrote: I think it's a whole lot of trouble to the newbie beginners who probably ran it the first time. Lamers. Heh. I haven't seen any evidence as of yet that anyone ran this code on a segment connected to the network (seeing as I haven't seen any passwd or shadow files posted to the l

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-21 Thread Day Jay
I think it's a whole lot of trouble to the newbie beginners who probably ran it the first time. Lamers. Heh. --- bkfsec <[EMAIL PROTECTED]> wrote: > Steve Friedl wrote: > > >On Wed, Apr 20, 2005 at 05:35:56PM -0700, Day Jay > wrote: > > > > > >>Get your "wrap-around" text fixed you fucking >

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-21 Thread bkfsec
Steve Friedl wrote: On Wed, Apr 20, 2005 at 05:35:56PM -0700, Day Jay wrote: Get your "wrap-around" text fixed you fucking fed!! I'm fed up with you!! Jeezsus, expose yourself as such. hehehe dumfux I guess there's something to be said for moderated lists, eh? There's good and bad with b

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-20 Thread Valdis . Kletnieks
On Wed, 20 Apr 2005 17:35:56 PDT, Day Jay said: > Get your "wrap-around" text fixed you fucking fed!! > --- John McGuire <[EMAIL PROTECTED]> wrote: Yep, must be a fed. The 'leet black hats would be posting from @fbi.gov, and the not-so-leet ones would at least have the good taste to find a bette

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-20 Thread Steve Friedl
On Thu, Apr 21, 2005 at 01:24:27AM +, [EMAIL PROTECTED] wrote: > I don't think that FD is moderated. I know it's not: there is something to be said for lists that *are* :-) > Day Jay sounds like a real asshat, eh Steve? Yes, quite the asshat. Funny the first time, but not the 10th. How you

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-20 Thread tuytumadre
> On Wed, Apr 20, 2005 at 05:35:56PM -0700, Day Jay wrote: > > Get your "wrap-around" text fixed you fucking fed!! > > I'm fed up with you!! > > > > Jeezsus, expose yourself as such. hehehe > > > > dumfux > > I guess there's something to be said for moderated lists, eh? I don't think th

Re: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-20 Thread Steve Friedl
On Wed, Apr 20, 2005 at 05:35:56PM -0700, Day Jay wrote: > Get your "wrap-around" text fixed you fucking fed!! > I'm fed up with you!! > > Jeezsus, expose yourself as such. hehehe > > dumfux I guess there's something to be said for moderated lists, eh? --- Stephen J Friedl | Security Consultan

RE: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-20 Thread Day Jay
n McGuire > > > -Original Message- > From: [EMAIL PROTECTED] > [mailto:[EMAIL PROTECTED] > On Behalf Of Day Jay > Sent: Wednesday, April 20, 2005 5:09 PM > To: vulcanius > Cc: full-disclosure@lists.grok.org.uk > Subject: Re: [Full-disclosure] FIXED CODE - IIS

RE: [Full-disclosure] FIXED CODE - IIS 6 Remote Buffer OverflowExploit(was broken)

2005-04-20 Thread John McGuire
just a joke comment that I took out of context. John McGuire -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Day Jay Sent: Wednesday, April 20, 2005 5:09 PM To: vulcanius Cc: full-disclosure@lists.grok.org.uk Subject: Re: [Full-disclosure] FIXED CODE -