Full Disclosure mailing list archives

Re: LulzSec EXPOSED!


From: Andrew D Kirch <trelane () trelane net>
Date: Thu, 09 Jun 2011 16:13:20 -0400

A back door with s***ty code

On 6/9/2011 4:43 AM, McGhee, Eddie wrote:
Lol wtf is a bugdoor hahaha

-----Original Message-----
From: full-disclosure-bounces () lists grok org uk [mailto:full-disclosure-bounces () lists grok org uk] On Behalf Of 
Jen Savage
Sent: 07 June 2011 00:09
To: full-disclosure () lists grok org uk
Subject: Re: [Full-disclosure] LulzSec EXPOSED!

ooo ooo speculation time!

- Hacker creates website that offers "free online password management"
- in javascript
- bugdoors it
- collects passwords
- uses passwords

TL;DR: over 9000 lulz were had

-Jen

On Mon, Jun 6, 2011 at 8:26 AM, T Biehn<tbiehn () gmail com>  wrote:
LOL @
"A timing attack on ssh passwords over the net?"

and

"I think its just a bruteforce."

-Travis

On Mon, Jun 6, 2011 at 7:58 AM, Gichuki John Chuksjonia
<chuksjonia () gmail com>  wrote:
I think its just a bruteforce.




On 6/6/11, Andreas Bogk<andreas () andreas org>  wrote:
Excerpts from lulzfail's message of Mo Jun 06 08:39:42 +0200 2011:
Lulzsec == pwnt
I've seen the log you pasted to pastebin.  Is this:

  * A timing attack on ssh passwords over the net?
  * Fake, to distract us from your real 0day?

Andreas

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: