Re: [Full-Disclosure] safari dos

2003-11-23 Thread Grant Husbands
[EMAIL PROTECTED] wrote: Original is here: http://www.insecure.ws/article.php?story=20031122012748282 Safari will never exit a loop in javascript. Since javascript isn't executed in a thread, this cause a DoS (Safari crashes). It should be noted that it's relatively easy to DoS most JS

RE: [Full-Disclosure] safari dos

2003-11-23 Thread Grant Husbands
I wrote: b='';a=b=b+' '; for (var i=0;i15;++i) a+=a; // Above line creates a 64MB script // Now run the 64MB script, 100,000 times for (var i=0;i10;++i) eval(a); Just a quick note; I had altered the script without updating the comments. It only creates a 256KB script, now; a longer one

[Full-Disclosure] New backdoor program in the wild

2003-11-23 Thread Jarkko Turkulainen
I just found a new backdoor program in the wild. It is a reverse backdoor that uses udp port 53 to communicate with the server side. It uses a couple of interesting techniques, for example, it injects itself in hidden IE instance. I wrote a little paper about the analysis:

[Full-Disclosure] JS Dos

2003-11-23 Thread Jason Freidman
There is always the popular while(1){ document.alert(Hi); } Which forces people to use process viewer to quit. On Win98 it calls for a restart. (Or pview if you have it). -- Jason Freidman [EMAIL PROTECTED] signature.asc Description: This is a digitally signed message part

RE: [Full-Disclosure] New backdoor program in the wild

2003-11-23 Thread Kristian Hermansen
I think I've seen this one before. Some keywords that come to mind are APRE (Advanced Port Redirection Engine), Assassin 2.0, and the site that hosts those files (forget the name). These guys code Trojans for $$$!!! But they also offer free tools to make Trojans and it looks like this one is

RE: [Full-Disclosure] New backdoor program in the wild

2003-11-23 Thread Kristian Hermansen
Not sure if this is it, but similar idea: http://www.lommage.co.uk/index.php?view=lompolyinject/lompolyinject And I found the website where you can purchase Trojans and components: http://www.evileyesoftware.com/ Kristian Hermansen

[Full-Disclosure] VieNuke VieBoard SQL Injection Vulnerability... again

2003-11-23 Thread Manuel [ekerazha]
--- http://www.securityfocus.com/bid/8967/info/ [...] Solution: VieNuke has released a patch: http://www.vienuke.com/VieBoard_Patch.zip [...] --- http://www.securityfocus.com/bid/8967/solution/ [...] VieNuke VieBoard 2.6 Beta 1: VieNuke Patch VieBoard_Patch.zip

Re: [Full-Disclosure] New backdoor program in the wild

2003-11-23 Thread Chris Rose
Kristian Hermansen wrote: I think I've seen this one before. Some keywords that come to mind are APRE (Advanced Port Redirection Engine), Assassin 2.0, and the site that hosts those files (forget the name). These guys code Trojans for $$$!!! But they also offer free tools to make Trojans

Re: [Full-Disclosure] Thomnson TCM315 Denial of service

2003-11-23 Thread Alain
. : Shell Security Advisory : . Subject: Buffer overflow in the cable modem Thomson TCM315 It also works in a Thomson TCM305. It causes a full restart. It's a bug of all the TCM series??? Or of all Thomson firmware cable modems???

[Full-Disclosure] lots and lots and lots of swen?

2003-11-23 Thread Corey Hickey
I'm just curious, has anybody else noticed a marked increase in the amount of swen mailings received? When swen first appeared, I got about 4 or 5 of them each day for about a week, then they tapered off to about once a week. ...until the last 60 hours, during which time I have receieved no less

RE: [Full-Disclosure] lots and lots and lots of swen?

2003-11-23 Thread Bill Royds
I have remarked a large increase as well. And they are coming from all over the world( Japan, Turkey, Latvia, Italy, Netherlands etc.) and from different addresses that the onslaught I received earlier. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of

[Full-Disclosure] The Birth Of A Gay Slut

2003-11-23 Thread cohiba
The Birth Of A Gay Slut Copyright (all rights reserved) by Dave Aitel ([EMAIL PROTECTED]) Jan 31, 1997 http://groups.google.com/groups?q=birth+of+a+gay+sluthl=enlr=ie=UTF-8oe=UTF-8selm=544eli%249704151525%40qz.little-neck.ny.usrnum=1 (-) Dave Aitel wrote: there once was a boy

girlbots [WAS: Re: [Full-Disclosure] more ddos bots on undernet]

2003-11-23 Thread Gadi Evron
The author seems to be very active, there are at least 2 more variants of this Trojan horse out there, that we know of at the moment. -- Gadi Evron, [EMAIL PROTECTED] The Trojan Horses Research mailing list - http://ecompute.org/th-list My resume (Hebrew) -

RE: [Full-Disclosure] lots and lots and lots of swen?

2003-11-23 Thread dave kleiman
Mail server has received 105 swen since Nov 1st. ___ Dave Kleiman, CISSP, MCSE, CIFI [EMAIL PROTECTED] www.SecurityBreachResponse.com High achievement always takes place in the framework of high expectation. Jack Kinder -Original Message- From: [EMAIL

Re: [Full-Disclosure] The Birth Of A Gay Slut

2003-11-23 Thread Joel R. Helgeson
There once was a sailor from Brighton, who said to his girl yer a tight one!; She said, 'pon my soul, but yer in the wrong hole, there's plenty of room in the right one! Joel R. Helgeson Director of Networking Security Services SymetriQ Corporation Give a man fire, and he'll be warm for a day;