[Full-Disclosure] Re: viruses being sent to this list

2004-03-24 Thread Jason Freidman
At my school, viruses are being sent to entire classes by means of mailing lists and catch-all emails, such as [EMAIL PROTECTED] type deals. The frequency of these compared to regular virus emails makes it seem that some viruses actively target these type of addresses. -Jason _

[Full-Disclosure] JS Dos

2003-11-23 Thread Jason Freidman
There is always the popular while(1){ document.alert("Hi"); } Which forces people to use process viewer to quit. On Win98 it calls for a restart. (Or pview if you have it). -- Jason Freidman <[EMAIL PROTECTED]> signature.asc Description: This is a digitally signed message part

[Full-Disclosure] Ethereal howto

2003-11-10 Thread Jason Freidman
Here is a pdf i found (i think on packetstorm) with a very very detailed look at ethereal mail.rochester.edu/~jfreidma/ethereal.pdf -- Jason Freidman <[EMAIL PROTECTED]> signature.asc Description: This is a digitally signed message part

[Full-Disclosure] Microsoft plans tighter security measures in Windows XP SP2

2003-10-31 Thread Jason Freidman
> In AD you simply set the group policies and you're done. This is a > *good* thing, which will reduce work for admins and make the enterprise > more secure. For personal users, they will have a box that is truly a > client and cannot be a server without their specific authorization. > That is a

[Full-Disclosure] NASA experience

2003-10-17 Thread Jason Freidman
From my experience working at NASA (moffet field as an intern one summer) was that their IT department (in my building) was good at what they did but had a pretty restrictive security policy (which is a good thing i guess). So i would rate them as excellent although too restrictive. -- Jason

Re: [SD:jason.full-disclosure] RE: [Full-Disclosure] NASA.GOV SQL Injections

2003-10-17 Thread Jason Freidman
-annihilation." -- Johnny Hart > ***testing, only testing, and damn good at it too!*** > > OK, so you're a Ph.D. Just don't touch anything. > > ___ > Full-Disclosure - We believe in it. > Charter: http://list

[Full-Disclosure] Application level firewall

2003-10-17 Thread Jason Freidman
modules unless the program is in a config file. It would make it easier (i would think) to lockdown a computer for outgoing connections as well as add a new layer of security. -- Jason Freidman <[EMAIL PROTECTED]> ___ Full-Disclosure - We believe

[Full-Disclosure] Storage in a fiber

2003-10-08 Thread Jason Freidman
This reminds me of the memory tubes using mercury and so on that would send the signals down the tube read them and resend them. -- I have just read and signed the online petition: "Stop Verisign DNS Abuse" at: http://www.whois.sc/verisign-dns/ I personally agree with what this petition