RE: [Full-Disclosure] why o why did NASA do this.

2004-10-15 Thread Chris DeVoney
On Thursday, October 14, 2004 3:13 PM, Deigo Dude wrote: ftp://ftp.hq.nasa.gov/pub/nickname/ The list contains the full name, email, phone, fax, position, building, room, and employer. When will they learn. It's also called FOIA: The Freedom of Information Act. _Anyone_can request that

RE: [Full-Disclosure] People who ask support questions on FD

2004-03-26 Thread Chris DeVoney
On Friday, March 26, 2004 1:22 PM, Mortis wrote: My message was only intended as a morning chuckle. I thought perhaps even Gadi would laugh at it (something is the sincerest form of something or other). I'm sorry I have such a rotten sense of humor. This list gets to ya once in a

RE: [Full-Disclosure] Meth and hacking?

2004-03-10 Thread Chris DeVoney
On Wednesday, March 10, 2004 9:44 AM, Steven Alexander wrote: http://www.msnbc.msn.com/id/4460349/ The drugs and the crime fit neatly together; addicts strung out on meth can stay awake and focused for days at a time, making them expert hackers and mailbox thieves. And ID theft is easy

RE: [inbox] Re: [Full-Disclosure] Re: E-Mail viruses

2004-03-05 Thread Chris DeVoney
thought) happens when the virus writers start sending attachments using that magic extension and include a social-engineered message in the e-mail to rename this thing to a .exe and execute it.? cdv Chris DeVoney Clinical Research Center Informatics University

RE: [Full-Disclosure] Windows 98 Hidden Pics

2004-02-11 Thread Chris DeVoney
On Wednesday, February 11, 2004 1:34 PM, Michael De La Cruz wrote: I was doing a forensic examination on Microsoft's Virtual PC 2004 software, and came across some Microsoft pictures I hadn't seen on an installed version of Windows 98 before. I know this isn't much of an

RE: [Full-Disclosure] Re: vulnerabilities of postscript printers

2004-01-25 Thread Chris DeVoney
/printer/scanner that has persistent internal storage or is network connected. And for that matter, we're also setting up bridging firewalls on some of the units that contain an actual PC inside to manage the scanning functions, such as the Canon ImageRunner series. cdv Chris

RE: [Full-Disclosure] A funny (but real) story for XMAS

2003-12-17 Thread Chris DeVoney
of course, CERT, like many federal sites realted to net sec issues, NIPC, local infrgard chapters, the new homeland sec dept, all will know after all the sources below have first fed on the info and rumors for a week or too prior. So, if CERT truely sucks, it sucks slowly... CERT is

RE: [Full-Disclosure] Security....hmmmmm

2003-12-11 Thread Chris DeVoney
On Thursday, December 11, 2003 1:18 PM, [EMAIL PROTECTED] wrote: On Thu, 11 Dec 2003 12:51:11 PST, Barrett, Rob [EMAIL PROTECTED] said: Question: Do you think finding a mentor in the field is a good way to go? I am primarily focusing on securing M$ OS's and their communications.

RE: [Full-Disclosure] Drunkeness

2003-12-07 Thread Chris DeVoney
behaviors) as mitigating circumstances when entering the sentence... cdv Chris DeVoney Clinical Research Center Bioinformatics University of Washington -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Paul Farrow Sent: Friday, December 05, 2003 8:40 PM

RE: [Full-Disclosure] FW: Last Microsoft Patch

2003-10-16 Thread Chris DeVoney
On Wednesday, October 15, 2003 4:41 PM, Mary Landesman wrote: Swen also uses microsoft.com; the samples I have received do so more often than not. For a full list, see: http://www.f-secure.com/v-descs/swen.shtml Thanks for the reminder on that. The first couple of these I received had

RE: [Full-Disclosure] FW: Last Microsoft Patch

2003-10-15 Thread Chris DeVoney
Title: Message Others will address the virus represented in this trojan e-mail, but MSNBC is the domain forthe Microsoft-NBC news web site. The pure illogic of sending out security outdates from a domain for news/weather/sportsis pretty strong. So was using MSN.COM, their internet service,

RE: [Full-Disclosure] Eudora 6.0 attachment spoof, exploit

2003-09-15 Thread Chris DeVoney
I know it's only one instance of a message sent to a couple newgroups that is getting endless echos, but this is getting *REAL* monotonous. cdv Chris DeVoney Clinical Research Center Informatics University of Washington -Original Message

RE: [Full-Disclosure] EEYE: Microsoft RPC Heap Corruption Vulnerability - Part II

2003-09-10 Thread Chris DeVoney
1.1.0 in both its Help-About and its file properties. It does report vulnerabilities to MS03-026 and -039. cdv Chris DeVoney Clinical Research Center Informatics University of Washington [EMAIL PROTECTED] 206-598-6816

[Full-Disclosure] Authorities eye MSBlaster suspect (long reply)

2003-08-30 Thread Chris DeVoney
. I will, however, suggest an expanded horizon in the real-world before making blanket applications of security policy. We may be part of the same solar system of computing but different institutions have absolutely different orbits. cdv Chris DeVoney Clinical Research

RE: [Full-Disclosure] Authorities eye MSBlaster suspect

2003-08-29 Thread Chris DeVoney
a lab server into a warez server when they get hit with a leading-edge or rare illness. cdv Chris DeVoney Clinical Research Center Informatics University of Washington [EMAIL PROTECTED] 206-598-6816

RE: [Full-Disclosure] Subject prefix changing! READ THIS! SURVEY!!

2003-08-22 Thread Chris DeVoney
#3 or #2 in that order. I get between two and five hundred messages a day. I want something quick in that line to tell me whom or from what list this message is from. Self-defining headers are a top choice. cdv ___ Full-Disclosure - We believe in it.

RE: [Full-Disclosure] jdbgmgr.exe hoax virus?

2003-08-21 Thread Chris DeVoney
Here's a useful URL: www.snopes.com And a specific: http://www.snopes.com/computer/virus/jdbgmgr.htm In short, yes, it's a hoax. cdv -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of [EMAIL PROTECTED] Sent: Thursday, August 21, 2003

RE: [Full-Disclosure] Anyone? Important Security Update for the .NET Messenger Service

2003-08-19 Thread Chris DeVoney
with the message. Here's the real update page: http://messenger.msn.com/Help/Upgrades.aspx And more info. available here: http://www.msnfanatic.com/ And here: http://www.theinquirer.net/?article=0 MJF cdv Chris DeVoney Clinical Research Center Informatics