Re: [Full-Disclosure] Automated SSH login attempts?

2004-07-29 Thread Juan Carlos Navea
One of the boxes at work actually got rooted through a successful attempt at the account test. They later proceeded to get root through a local exploit. This box was badly unpdated. log entries.. Jul 12 22:26:51 server sshd[12868]: Accepted password for test from 130.15.15.239 port 1954 ssh2 Jul

Re: [Full-Disclosure] Re: Mozilla Firefox Certificate Spoofing

2004-07-31 Thread Juan Carlos Navea
Has anyone tried the proof of concept with a real ssl cert and get it working? I just tried it using two different ssl urls and the page only redirected me to the proper site. I did not see the output generated by document.writeln even after viewing the source. Can anyone confirm this? I haven't

[sb] Re: [Full-Disclosure] Re: Mozilla Firefox Certificate Spoofing

2004-08-01 Thread Juan Carlos Navea
Has anyone tried the proof of concept with a real ssl cert and get it working? I just tried it using two different ssl urls and the page only redirected me to the proper site. I did not see the output generated by document.writeln even after viewing the source. Can anyone confirm this? I haven't

Re: [Full-Disclosure] XSS in Plesk 7.1 Reloaded

2004-08-24 Thread Juan Carlos Navea
I can confirm this on Plesk 7.0.0 . Also tried it on Plesk 6.0 but it seems to be unaffected. On Tue, 24 Aug 2004 11:52:55 +0200, sourvivor <[EMAIL PROTECTED]> wrote: > This bug was tested only in website plesk demo (plesk 7.1 reloaded). > > proof of concept: > Login first in http://plesk7r.demo

Re: [Full-Disclosure] FIREFOX flaws: nested array sort() loop Stack overflow exception

2004-11-25 Thread Juan Carlos Navea
> So instead you unleash it upon kiddie and spammer world? That's lovely. > Next you will come by again and say: "I'm still hoping I get to see the > guy who wrote those MyDoom worms in court, he violated the GPL and > spread millions(?) of copies of my (modified) source)." > So, you release it l

Re: [Full-Disclosure] Possible apache2/php 4.3.9 worm

2004-12-21 Thread Juan Carlos Navea
There is some information regarding this here: http://www.pcpro.co.uk/news/67505/santya-sparks-messageboard-infection-epidemic.html On Tue, 21 Dec 2004 07:32:20 -0800, Alex Schultz <[EMAIL PROTECTED]> wrote: > Some of the sites I administer were alledgedly hit by a worm last night. > It overwro