RE: [Full-Disclosure] Foundstone's Future as Part of McAfee

2004-08-18 Thread Thomas Ryan
ing like that, other than to invite speculation? > Since I doubt that senior management of neither > McAfee nor Foundstone actively monitors this list, one > would think that you could have saved yourself some > time if you'd simply read the press release on the > McAfee site

[Full-Disclosure] Foundstone's Future as Part of McAfee

2004-08-17 Thread Thomas Ryan
With Foundstone being purchased by McAfee, will the services Foundstone offered change? Is it going to be more product focused or will they still be performing Pen Tests and offering training classes? Tom Ryan ___ Full-Disclosure - We believe in it. Cha

[Full-Disclosure] ISS BlackIce Server Protect Unprivileged User Attack

2004-08-13 Thread Thomas Ryan
originally posted Aug 11, 2004. to BugTraq by Paul Craig - Pimp Industries. On Aug 11, 2004 further analysis by Thomas Ryan found the vulnerability to affect blackice.ini, sigs.ini, protect.ini not just firewall.ini as originally reported. Furthermore research has shown BlackIce was vulnerable from any IP

[Full-Disclosure] ISS BlackIce Server Protect Unprivileged User Attack

2004-08-11 Thread Thomas Ryan
originally posted Aug 11, 2004. to BugTraq by Paul Craig - Pimp Industries. On Aug 11, 2004 further analysis by Thomas Ryan found the vulnerability to affect blackice.ini, sigs.ini, protect.ini not just firewall.ini as originally reported. Furthermore research has shown BlackIce was vulnerable from any IP

RE: [Full-Disclosure] Defcon spelled half backwards is Fedcon and you dumfucks walked into a trap

2004-08-06 Thread Thomas Ryan
Out of the 20-30 FEDS you can spot at DEFCONthere is usually 2 or 3 you would never ever guess as a FED. They are the ones sitting next to you drinking and watching porn at a CDC Party or 23.ORG party. -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of To

RE: [Full-Disclosure] The "Drew Copley is a prick" Poll update [Time to Grow Up]

2004-07-03 Thread Thomas Ryan
ve space or our energy to delete your emails! Have a great weekend everyone! Thomas Ryan Provide Security -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED] On Behalf Of Bugtraq Security Systems Sent: Thursday, July 01, 2004 16:55 To: [EMAIL PROTECTED] Subject: [Full-Disclo

[Full-Disclosure] VP-ASP Shopping Cart Multiple Vulnerabilities

2004-06-13 Thread Thomas Ryan
VP-ASP Shopping Cart Multiple Vulnerabilities Release Date: June 14, 2004 Severity: High Vendor: Virtual Programming Software: VP-ASP Shopping Cart Version 5.x Remote: Remotely executable Vulnerabilities: Cross Site Scripting SQL Injection Technical Details: Cross Site Scripting Vulnerabilit