Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-13 Thread Alexander Hoogerhuis
"david cohen" <[EMAIL PROTECTED]> writes: > Coworker of mine took a class taught by one of the authors of this book: > > http://www.wiley.com/WileyCDA/WileyTitle/productCd-0764544683.html > > Coworker is telling me this is some sort of compendium of unreleased > exploits. > > [SNIP] > OK, I've

RE: [Full-Disclosure] Book of unreleased exploits?

2004-03-13 Thread Oliver Schneider
> releasing 130 undocumented exploits ? D C M A oops did i say somthing > wrong ? Don't get me wrong, but still the US legislation is not yet valid all over the world! And yes, on this list as well as on many other lists there are not only "americans". This might be true for the sender of the

Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-13 Thread Cael Abal
Aditya, ALD [Aditya Lalit Deshmukh] wrote: Coworker is telling me this is some sort of compendium of unreleased exploits. Figuring that the average exploit would take up about 5 pages of printed text, and the book at 650 pages, that would lead me to infer that it has somehwere around 130 new exploi

RE: [Full-Disclosure] Book of unreleased exploits?

2004-03-13 Thread Aditya, ALD [Aditya Lalit Deshmukh]
> > Coworker is telling me this is some sort of compendium of unreleased > exploits. Figuring that the average exploit would take up about 5 pages > of printed text, and the book at 650 pages, that would lead me to infer > that it has somehwere around 130 new exploits. WTF? What is the point of

Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-13 Thread Dave Aitel
-BEGIN PGP SIGNED MESSAGE- Hash: SHA1 Thanks for your interest in Shellcoders! The book is not simply a listing of new exploits. It does contain new exploits to highlight some of the techniques in the chapters. Specifically, I have a new CDE remote, and Sinan has some kernel exploits in the

Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-12 Thread Cael Abal
c0hiba wrote: > here is something i found on dave aitel using that google search engine > thing.. > > http://groups.google.com/groups?q=birth+of+a+gay+slut&hl=en&lr=&ie=UTF-8&oe=UTF-8&selm=544eli%249704151525%40qz.little-neck.ny.us&rnum=1 > > --c0hiba Interesting, you posted this same link to FD

Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-12 Thread Ron DuFresne
To save folks the time and effort; The Shellcoder's Handbook: Discovering and Exploiting Security Holes Jack Koziol, David Litchfield, Dave Aitel, Chris Anley, Sinan "noir" Eren, Neel Mehta, Riley Hassell ISBN: 0-7645-4468-3 Paperback 648 pages March 22, 2004 * Examines

Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-12 Thread c0hiba
here is something i found on dave aitel using that google search engine thing.. http://groups.google.com/groups?q=birth+of+a+gay+slut&hl=en&lr=&ie=UTF-8&oe=UTF-8&selm=544eli%249704151525%40qz.little-neck.ny.us&rnum=1 --c0hiba On Fri, 12 Mar 2004, madsaxon wrote: > At 02:46 PM 3/12/2004 -0800, d

Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-12 Thread madsaxon
At 02:46 PM 3/12/2004 -0800, david cohen wrote: I've never heard of any of these guys, but one of these jokers has to be on this mailing list. You're kidding, right? You've never heard of David Litchfield or Dave Aitel? Check the archives, or google them. m5x

Re: [Full-Disclosure] Book of unreleased exploits?

2004-03-12 Thread Person
> Anyone know for sure? I've never heard of any of these guys, but one of > these jokers has to be on this mailing list. You've never heard of David Litchfield, Dave Aitel or Riley Hassell? You need to hit the bars at Blackhat instead of the talks meng. [d] _