Re: [Full-Disclosure] Will a vote for John Kerry be counted by a Hart InterCivic eSlate3000 in Honolulu?

2004-10-21 Thread Person
Will my vote be counted? No. In fact, you're lucky if you don't get euthanized for posting a question like this to Full Disclosure. [d] ___ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html

Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-12 Thread Person
> Anyone know for sure? I've never heard of any of these guys, but one of > these jokers has to be on this mailing list. You've never heard of David Litchfield, Dave Aitel or Riley Hassell? You need to hit the bars at Blackhat instead of the talks meng. [d] _

RE: [Full-Disclosure] Lun_mountd.c vs mounty.c

2003-09-17 Thread Person
It astounds me that so many people on this list (well, two) use the full disclosure ethic as an excuse to oblige programmers to give up our privacy rights and divulge all their code to a group of strangers. Can you *seriously* not see the problem with someone taking credit for someone else's work?

Re: [Full-Disclosure] Lun_mountd.c vs mounty.c

2003-09-17 Thread Person
I can vouch for this - mounty.c is the original. [d] On Wed, 17 Sep 2003, Tobias Klein wrote: > frew min ago i was browsing packetstorm and i cant belive my eyes > anyone has changed a half haeder of my code and disclosures it to packetstorm > > i cant understand why pplz does that > are they no

Re: [Full-Disclosure] iDEFENSE Security Advisory 09.16.03: Remote Root Exploitation of Default Solaris sadmind Setting

2003-09-16 Thread Person
> It's news worthy. This vulnerability has been privately exploited for > at least 7 years. Most Solaris machines that have sadmin open are exploitable. > It's a shame to see an excellent vulnerability such as this finally > be made public. Kind of like idiot admins leaving null sessions enable

Re: [Full-Disclosure] iDEFENSE Security Advisory 09.16.03: Remote Root Exploitation of Default Solaris sadmind Setting

2003-09-16 Thread Person
Hasn't there always been a warning in the sadmind man page about security levels less than 3? I'm not sure this "exploit" is newsworthy. [d] On Tue, 16 Sep 2003, iDEFENSE Labs wrote: > -BEGIN PGP SIGNED MESSAGE- > Hash: SHA1 > > iDEFENSE Security Advisory 09.16.03: > http://www.idefens

RE: [Full-Disclosure] Administrivia: Binary Executables w/o Source

2003-08-18 Thread Person
Top-posters kind of suck too ;) [d] > (Personally, I have never cared about binaries nor pictures being sent > as long as their size were small... It is just html email which I hate.) > > Just some food for thought from a contrary viewpoint. > > > > -Original Message- > > From: [EMAIL PRO

Re: [Full-Disclosure] new msblaster on the loose?

2003-08-14 Thread Person
http://www.sarc.com/avcenter/venc/data/w32.blaster.b.worm.html "The executable for this variant is named Penis32.exe." [t] On Wed, 13 Aug 2003, David Vincent wrote: > anyone else seeing this? > > --- > > http://www.theinquirer.net/?article=11018 > > New version of Blaster worm on th

Re: [Full-Disclosure] Off-Topic: Defcon Meeting?

2003-07-24 Thread Person
> > a little off-topic maybe, but is anyone here going to Defcon this year? > > > > I know I sure am, just look for the curlyhaired danish guy coming in from the > cannonball run wrapped in a danish flag accompagnied by an italian Godfather and > the living remains of a motorcycle accident. > > If

Re: [Full-Disclosure] The Truth of the Recent Cisco Bug

2003-07-24 Thread Person
loyees IRC too much"), and 3. re-format it to be human readable and post it to a list? [t] On Wed, 23 Jul 2003, Travis Good wrote: > posting to the full disclosure list is like arguing on the internet, or > being retarded or something like that. > > On Tue, 22 Jul 2003, Person

Re: [Full-Disclosure] The Truth of the Recent Cisco Bug

2003-07-22 Thread Person
Now, don't get me wrong, dvdman is a fun guy, but did it ever occur to you that he might be just talking shit on IRC to wow noobs (obviously worked) and irritate Cisco? Are you aware of how easy it is to get ops in certain IRC channels when you are willing to give code to said noobs? Or maybe the

Re: [Full-Disclosure] The Truth of the Recent Cisco Bug

2003-07-22 Thread Person
P.S. Remind me never to hire you for a pen-testing gig ;) [t] ___ Full-Disclosure - We believe in it. Charter: http://lists.netsys.com/full-disclosure-charter.html