Full Disclosure: by author

323 messages starting May 20 12 and ending May 17 12
Date index | Thread index | Author index


Abhijeet Patil

[Announcement] ClubHack Magazine Issue 28, May 2012 Released Abhijeet Patil (May 20)

adam

Re: [OT] New online service to make XSSs easier adam (May 07)

Adam Behnke

Decrypting encrypted iPhone backups Adam Behnke (May 29)
Checking out backdoor shells Adam Behnke (May 18)

Adam Zabrocki

Re: The story of the Linux kernel 3.x... Adam Zabrocki (May 17)
Re: The story of the Linux kernel 3.x... Adam Zabrocki (May 17)
Re: The story of the Linux kernel 3.x... Adam Zabrocki (May 18)
Re: The story of the Linux kernel 3.x... Adam Zabrocki (May 16)
The story of the Linux kernel 3.x... Adam Zabrocki (May 16)
Re: The story of the Linux kernel 3.x... Adam Zabrocki (May 16)
Re: The story of the Linux kernel 3.x... Adam Zabrocki (May 17)

alert7 () gmail com

[CAL-2011-0073]CVE-2012-2028 Adobe Photoshop parsing TIF heap buffer overflow vulnerability alert7 () gmail com (May 08)

Alexander Georgiev

Re: LinkedIn CSRF: Login Brute Force Alexander Georgiev (May 20)

Alex Buie

Re: Certificacion - Profesional Pentester Alex Buie (May 23)
Re: Google Accounts Security Vulnerability Alex Buie (May 13)

Alex Sugarmann

Re: About IBM Alex Sugarmann (May 29)

appliance

vulnerability-lab question appliance (May 06)

Asterisk Security Team

AST-2012-008: Skinny Channel Driver Remote Crash Vulnerability Asterisk Security Team (May 29)
AST-2012-007: Remote crash vulnerability in IAX2 channel driver. Asterisk Security Team (May 29)

Attila Bartfai

CFP: Hacktivity 2012, October 12-13, Budapest, Hungary Attila Bartfai (May 25)

Benji

Re: IAA, Redirector and XSS vulnerabilities in WordPress Benji (May 05)
Re: [OT] New online service to make XSSs easier Benji (May 07)

BMF

Re: FW: Curso online - Profesional pentesting - Promocion ( 25% de descuento ) BMF (May 20)

Boddin Grégory

Re: DoS vulnerabilities in Firefox, Internet Explorer and Opera Boddin Grégory (May 02)

bugs

MiniWeb Content-Length DoS PoC bugs (May 31)

Bzzz

Re: About IBM Bzzz (May 28)

c0c0n International Information Security Conference

c0c0n 2012 CFP - Extended Deadline: May 15, 2012 c0c0n International Information Security Conference (May 07)

Call for papers

Call for Papers: The 7th International Conference for Internet Technology and Secured Transactions (ICITST-2012) Call for papers (May 20)

Carlo Di Dato

Crash when FILEOPEN particular .rtf Carlo Di Dato (May 28)

cfp

Breakpoint 2012 Call For Papers cfp (May 10)

Charles Morris

Re: FW: Curso online - Profesional pentesting - Promocion ( 25% de descuento ) Charles Morris (May 19)
Re: things you can do with downloads Charles Morris (May 31)
Re: Vulnerability in is Dopewars Charles Morris (May 17)

charlie

Re: The story of the Linux kernel 3.x... charlie (May 17)

Christian Ammann

Re: Hyperion - Paper about Windows PE run-time encryption Christian Ammann (May 09)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Cisco IOS XR Software Route Processor Denial of Service Vulnerability Cisco Systems Product Security Incident Response Team (May 30)

Code Audit Labs

[CAL-2011-0073]CVE-2012-2028 Adobe Photoshop parsing TIF heap buffer overflow vulnerability Code Audit Labs (May 08)

coderman

Re: Google Accounts Security Vulnerability coderman (May 18)
Re: Info about attack trees coderman (May 28)
Re: imagine .. coderman (May 31)
Re: Info about attack trees coderman (May 26)

Context IS - Disclosure

Context IS Advisory - .NET 1.0 through .NET 4 Remote Code Execution Context IS - Disclosure (May 30)

coptang

Re: [OT] New online service to make XSSs easier coptang (May 07)

Core Security Advisories Team (fr)

CORE-2011-1123: Windows Kernel ReadLayoutFile Heap Overflow Core Security Advisories Team (fr) (May 08)

CORE Security Technologies Advisories

CORE-2012-0123 - SAP Netweaver Dispatcher Multiple Vulnerabilities CORE Security Technologies Advisories (May 08)

Daniel Hadfield

Re: New Open Source Web Application Vulnerability Scanner Available Daniel Hadfield (May 18)
Re: Info about attack trees Daniel Hadfield (May 27)

Daniel Margolis

Re: Google Accounts Security Vulnerability Daniel Margolis (May 21)

Dan Kaminsky

Re: The story of the Linux kernel 3.x... Dan Kaminsky (May 16)
Re: Trigerring Java code from a SVG image Dan Kaminsky (May 16)
Re: Trigerring Java code from a SVG image Dan Kaminsky (May 16)
Re: Google Accounts Security Vulnerability Dan Kaminsky (May 18)

dann frazier

[SECURITY] [DSA 2469-1] linux-2.6 security update dann frazier (May 10)

Darren Martyn

Checking out backdoor shells Darren Martyn (May 20)

David O'Callaghan

Re: Full-Disclosure Digest, Vol 87, Issue 36 David O'Callaghan (May 28)

ddivulnalert

DDIVRT-2012-44 Epicor Returns Management SOAP-Based Blind SQL Injection ddivulnalert (May 17)
DDIVRT-2012-43 SCLIntra Enterprise SQL Injection and Authentication Bypass ddivulnalert (May 29)

Defence in Depth

Re: Info about attack trees Defence in Depth (May 29)

Dermot Blair

New Open Source Web Application Vulnerability Scanner Available Dermot Blair (May 20)
New Open Source Web Application Vulnerability Scanner Available Dermot Blair (May 17)
Re: New Open Source Web Application Vulnerability Scanner Available Dermot Blair (May 20)

Dex

Re: WHMCS 0day Dex (May 29)
WHMCS 0day Dex (May 29)

Dimitris Glynos

Re: Hyperion - Paper about Windows PE run-time encryption Dimitris Glynos (May 09)

Djamshut Saarash

hidden privilege user in supercomputer NEC Express 58000/1000 series Djamshut Saarash (May 12)

Enno Rey

VMDK Has Left the Building . Some Nasty Attacks Against VMware vSphere 5 Based Cloud Infrastructures Enno Rey (May 24)

Fabien DUCHENE

GreHack 2012 - Call For Papers (CFP) Fabien DUCHENE (May 25)

Federico De Meo

Info about attack trees Federico De Meo (May 25)

Ferenc Kovacs

Re: Google Accounts Security Vulnerability Ferenc Kovacs (May 20)
Re: Google Accounts Security Vulnerability Ferenc Kovacs (May 15)
Re: About IBM Ferenc Kovacs (May 27)
Re: Google Accounts Security Vulnerability Ferenc Kovacs (May 15)

Fernando A. Lagos B.

LinkedIn CSRF: Login Brute Force Fernando A. Lagos B. (May 17)

Fernando Andina

Failure to restrict access Fernando Andina (May 22)

Fernando Gont

IPv6 security: New IETF I-Ds, slideware and videos for recent presentations, trainings, etc... Fernando Gont (May 22)
LACSEC 2012 Agenda (May 6-11, 2012, Quito, Ecuador) Fernando Gont (May 03)

Florian Weimer

[SECURITY] [DSA 2477-1] sympa security update Florian Weimer (May 20)
[SECURITY] [DSA 2468-1] libjakarta-poi-java security update Florian Weimer (May 09)
[SECURITY] [DSA 2480-2] request-tracker3.8 regression update Florian Weimer (May 29)
[SECURITY] [DSA 2459-2] quagga security update Florian Weimer (May 04)
[SECURITY] [DSA 2464-2] icedove regression update Florian Weimer (May 08)
[SECURITY] [DSA 2472-1] gridengine security update Florian Weimer (May 15)
[SECURITY] [DSA 2473-1] openoffice.org security update Florian Weimer (May 16)

Gage Bystrom

Re: Info about attack trees Gage Bystrom (May 26)
Re: Info about attack trees Gage Bystrom (May 28)
Re: [OT] New online service to make XSSs easier Gage Bystrom (May 07)
Re: Google Accounts Security Vulnerability Gage Bystrom (May 16)

Georgi Guninski

Re: Ubuntu, Linux Mint, and the Guest Account Georgi Guninski (May 07)
Re: Info about attack trees Georgi Guninski (May 28)

Giles Coochey

Re: Certificacion - Profesional Pentester Giles Coochey (May 24)

HI-TECH .

Kingcopes AthCon 2012 Slides & Notes HI-TECH . (May 24)

InterN0T Advisories

Re: FW: Curso online - Profesional pentesting - Promocion ( 25% de descuento ) InterN0T Advisories (May 21)
Re: IAA, Redirector and XSS vulnerabilities in WordPress InterN0T Advisories (May 05)
Re: IAA, Redirector and XSS vulnerabilities in WordPress InterN0T Advisories (May 05)

Jann Horn

Re: Google Accounts Security Vulnerability Jann Horn (May 21)
Re: NSA Cyber security program [ maybe off-topic ] Jann Horn (May 31)

Jason Hellenthal

Re: Google Accounts Security Vulnerability Jason Hellenthal (May 16)
Re: Google Accounts Security Vulnerability Jason Hellenthal (May 13)

Jeffrey Walton

Re: Google Accounts Security Vulnerability Jeffrey Walton (May 18)
Fwd: [cryptography] Apple Legacy filevault barn door... Jeffrey Walton (May 05)
Re: About IBM Jeffrey Walton (May 27)
Ubuntu, Linux Mint, and the Guest Account Jeffrey Walton (May 05)

Jerry dePriest

Fw: Info about attack trees Jerry dePriest (May 28)

John Cartwright

List Charter John Cartwright (May 08)

Jonathan Leffler

Re: About IBM Jonathan Leffler (May 28)

Jonathan Wiltshire

[SECURITY] [DSA 2476-1] pidgin-otr security update Jonathan Wiltshire (May 19)

Joseph Sheridan

ScriptFu Server Buffer Overflow in GIMP <= 2.6 Joseph Sheridan (May 31)

Juan Pablo Daniel

ekoparty sercurity conference 2012 CFP is now OPEN! Juan Pablo Daniel (May 27)

Juan Sacco

Re: FW: Curso online - Profesional pentesting - Promocion ( 25% de descuento ) Juan Sacco (May 21)
Video tutorial: Stack-Based Buffer Overflow Juan Sacco (May 16)

Julius Kivimäki

Re: imagine .. Julius Kivimäki (May 31)
Re: LinkedIn CSRF: Login Brute Force Julius Kivimäki (May 18)

Kai

Re: Checking out backdoor shells Kai (May 18)

karniv0re

Re: [OT] New online service to make XSSs easier karniv0re (May 07)

Kerry Adams

South African Bank "security" Kerry Adams (May 02)

Krzysztof Kotowicz

Re: Trigerring Java code from a SVG image Krzysztof Kotowicz (May 16)

Kyle Creyts

Security BSidesDetroit Kyle Creyts (May 17)
Re: Google Accounts Security Vulnerability Kyle Creyts (May 22)

Laurelai

Re: cDc Created Hong Kong Blondes and 'Hacktivism' as a Media Hack Laurelai (May 04)
Re: cDc Created Hong Kong Blondes and 'Hacktivism' as a Media Hack Laurelai (May 04)

leToff

Re: Certificacion - Profesional Pentester leToff (May 23)

Levent Kayan

Hyperion - Paper about Windows PE run-time encryption Levent Kayan (May 08)
New tool: Hyperion - A runtime encrypter for 32-bit PE files Levent Kayan (May 26)

Lists

NETGEAR Exposure of Sensitive Information - Security Advisory Lists (May 13)

Lu33Y

Vulnerabilities on Cryptographp Lu33Y (May 18)

Major Malfunction

DC4420 - London DEFCON - May meet - Tuesday May 22nd 2012 Major Malfunction (May 21)

Maksymilian Arciemowicz

cIFrex: How to use Regular Expressions in Research Maksymilian Arciemowicz (May 01)

Manu

[OT] New online service to make XSSs easier Manu (May 06)

Marc Deslauriers

Re: Ubuntu, Linux Mint, and the Guest Account Marc Deslauriers (May 05)
Re: Ubuntu, Linux Mint, and the Guest Account Marc Deslauriers (May 05)

Marcus Meissner

Re: The story of the Linux kernel 3.x... Marcus Meissner (May 16)
Re: The story of the Linux kernel 3.x... Marcus Meissner (May 16)

Mario Vilas

Re: LinkedIn CSRF: Login Brute Force Mario Vilas (May 18)

Mateus Felipe Tymburibá Ferreira

Re: Google Accounts Security Vulnerability Mateus Felipe Tymburibá Ferreira (May 16)

Memory Vandal

Re: DoS vulnerabilities in Firefox, Internet Explorer and Opera Memory Vandal (May 03)

metasansana

Re: [OT] New online service to make XSSs easier metasansana (May 07)

Michael Gray

Re: Google Accounts Security Vulnerability Michael Gray (May 18)
Re: Google Accounts Security Vulnerability Michael Gray (May 18)

Michael Harrison

Re: Certificacion - Profesional Pentester Michael Harrison (May 28)

Michael J. Gray

Re: Google Accounts Security Vulnerability Michael J. Gray (May 16)
Re: Google Accounts Security Vulnerability Michael J. Gray (May 20)
Re: Google Accounts Security Vulnerability Michael J. Gray (May 17)
Google Accounts Security Vulnerability Michael J. Gray (May 12)
Re: Google Accounts Security Vulnerability Michael J. Gray (May 21)
Re: Google Accounts Security Vulnerability Michael J. Gray (May 16)

Michal Zalewski

things you can do with downloads Michal Zalewski (May 30)

Michele Orru

Re: Trigerring Java code from a SVG image Michele Orru (May 16)
Re: FW: Curso online - Profesional pentesting - Promocion ( 25% de descuento ) Michele Orru (May 22)
Re: Trigerring Java code from a SVG image Michele Orru (May 17)
Re: FW: Curso online - Profesional pentesting - Promocion ( 25% de descuento ) Michele Orru (May 20)

Mike Arnold

Mapserver for Windows (MS4W) Remote Code Execution Mike Arnold (May 31)

Mike Hearn

Re: Google Accounts Security Vulnerability Mike Hearn (May 18)
Re: Google Accounts Security Vulnerability Mike Hearn (May 17)
Re: Google Accounts Security Vulnerability Mike Hearn (May 20)
Re: Google Accounts Security Vulnerability Mike Hearn (May 17)

Mohit Kumar

The Hackers Conference 2012 Call For Papers Mohit Kumar (May 12)

Moritz Muehlenhoff

[SECURITY] [DSA 2478-1] sudo security update Moritz Muehlenhoff (May 23)
[SECURITY] [DSA-2471-1] ffmpeg security update Moritz Muehlenhoff (May 13)
[SECURITY] [DSA 2464-1] icedove security update Moritz Muehlenhoff (May 03)
[SECURITY] [DSA 2462-2] imagemagick regression update Moritz Muehlenhoff (May 03)
[SECURITY] [DSA 2457-2] New icedove/iceweasel packages fix regression Moritz Muehlenhoff (May 13)
[SECURITY] [DSA 2463-1] samba security update Moritz Muehlenhoff (May 02)
[SECURITY] [DSA 2479-1] libxml2 security update Moritz Muehlenhoff (May 23)
[SECURITY] [DSA 2480-1] request-tracker3.8 security update Moritz Muehlenhoff (May 24)

MustLive

New XSS vulnerability in Yandex.Server MustLive (May 20)
IAA, Redirector and XSS vulnerabilities in WordPress MustLive (May 05)
Re: DoS vulnerabilities in Firefox, Internet Explorer and Opera MustLive (May 03)
About IBM MustLive (May 27)

Nicolas Grégoire

Re: Trigerring Java code from a SVG image Nicolas Grégoire (May 16)
Trigerring Java code from a SVG image Nicolas Grégoire (May 16)
Re: Trigerring Java code from a SVG image Nicolas Grégoire (May 16)

Nicolas Surribas

Re: The story of the Linux kernel 3.x... Nicolas Surribas (May 16)

olle

SEC-T 2012 CFP and Challenge olle (May 16)

Onapsis Research Labs

[Onapsis Research Labs] New SAP Security In-Depth issue: "Our Crown Jewels Online: Attacks on SAP Web Applications" Onapsis Research Labs (May 10)

Pablo

NSA Cyber security program [ maybe off-topic ] Pablo (May 29)

Paul Heinlein

Re: The story of the Linux kernel 3.x... Paul Heinlein (May 16)

Peter Dawson

Re: Flame= cyberwar Peter Dawson (May 28)
Re: Certificacion - Profesional Pentester Peter Dawson (May 23)
Re: Info about attack trees Peter Dawson (May 28)
Flame= cyberwar Peter Dawson (May 28)

phocean

[CVE-2012-1990] Kerweb/Kerwin XSS vulnerabilities phocean (May 05)

pm

Announce: Italian Hacker Game Cracca al Tesoro - Crack A Treasure pm (May 03)

PsychoBilly

Re: cDc Created Hong Kong Blondes and 'Hacktivism' as a Media Hack PsychoBilly (May 04)

ptr

session stealing in mod_auth_openid - CVE-2012-2760 ptr (May 23)

Rain Liu

php code reviewer(php source code auditing tool) Rain Liu (May 20)

RandallM

imagine .. RandallM (May 31)

Raphael Geissert

[SECURITY] [DSA 2475-1] openssl security update Raphael Geissert (May 18)
[SECURITY] [DSA 2474-1] ikiwiki security update Raphael Geissert (May 17)

RedTeam Pentesting GmbH

[RT-SA-2012-002] php-decoda: Cross-Site Scripting in Video Tags RedTeam Pentesting GmbH (May 02)

Research

GENU CMS 2012.3 - Multiple SQL Injection Vulnerabilities Research (May 01)
China Ministry of Commerce - SQL Injection Vulnerability Research (May 01)
Format Factory - Multiple Buffer Overflow Vulnerabilities [VIDEO] Research (May 01)
Format Factory v2.95 - Buffer Overflow Vulnerabilities Research (May 04)
Format Factory v2.95 - Buffer Overflow Vulnerabilities Research (May 04)
MyClientBase v0.12 - Multiple Web Vulnerabilities Research (May 01)
Travelon Express CMS v6.2.2 - Multiple Web Vulnerabilities Research (May 12)
GENU CMS 2012.4 - Multiple Web Vulnerabilities Research (May 12)
Genium CMS 2012|Q2 - Multiple Web Vulnerabilities Research (May 04)
Proman Xpress v5.0.1 - Multiple Web Vulnerabilities Research (May 12)
LAN Messenger v1.2.28 - Denial of Service Vulnerability Research (May 02)
GetSimple CMS v3.1 - Multiple Web Vulnerabilities Research (May 12)
myCare2x CMS - Multiple Web Vulnerabilities Research (May 04)
NetBill Billing System v1.2 - Multiple Web Vulnerabilites Research (May 12)
Serendipity v1.6 CMS - Multiple Web Vulnerabilities Research (May 12)
MYRE Real Estate Mobile 2012|2 - Multiple Web Vulnerabilities Research (May 04)
Viscacha Forum CMS v0.8.1.1 - Multiple Web Vulnerabilities Research (May 12)
Free Reality v3.1-0.6 - Multiple Web Vulnerabilities Research (May 12)

Robert Kim App and Facebook Marketing

Re: [SECURITY] [DSA 2472-1] gridengine security update Robert Kim App and Facebook Marketing (May 15)

Rob Weir

CVE-2012-2149 OpenOffice.org memory overwrite vulnerability Rob Weir (May 16)
CVE-2012-2334 Vulnerabilities related to malformed Powerpoint files in OpenOffice.org 3.3.0 Rob Weir (May 16)
CVE-2012-1149 OpenOffice.org integer overflow error in vclmi.dll module when allocating memory for an embedded image object Rob Weir (May 16)

Rodrigo Rubira Branco (BSDaemon)

Adobe Shockwave Player Remote Code Execution (CVE-2012-2031) Rodrigo Rubira Branco (BSDaemon) (May 09)
Apple Quicktime Memory Corruption (CVE-2012-0671) Rodrigo Rubira Branco (BSDaemon) (May 15)
H2HC Brazil 9th Edition - Call for Papers Rodrigo Rubira Branco (BSDaemon) (May 18)
Adobe Shockwave Player Remote Code Execution (CVE-2012-2029) Rodrigo Rubira Branco (BSDaemon) (May 09)
Adobe Shockwave Player Remote Code Execution (CVE-2012-2030) Rodrigo Rubira Branco (BSDaemon) (May 09)

Roee Hay

Advisory: Android SQLite Journal Information Disclosure (CVE-2011-3901) Roee Hay (May 03)

rootbsd

Malware.lu - analysis and pownage of hespesnet botnet rootbsd (May 25)

SEC Consult Vulnerability Lab

SEC Consult SA-20120518 :: Memory overwrite vulnerability in libwpd (OpenOffice.org) - CVE-2012-2149 SEC Consult Vulnerability Lab (May 18)

security

[ MDVSA-2012:074 ] ffmpeg security (May 14)
[ MDVSA-2012:072 ] roundcubemail security (May 10)
[ MDVSA-2012:067 ] samba security (May 01)
[ MDVSA-2012:070 ] samba security (May 04)
[ MDVSA-2012:077 ] imagemagick security (May 17)
[ MDVSA-2012:071 ] php security (May 10)
[ MDVSA-2012:080 ] wireshark security (May 23)
[ MDVSA-2012:086 ] acpid security (May 31)
[ MDVSA-2012:084 ] ncpfs security (May 29)
[ MDVSA-2012:076 ] ffmpeg security (May 15)
[ MDVSA-2012:073 ] openssl security (May 11)
[ MDVSA-2012:069 ] cifs-utils security (May 04)
[ MDVSA-2012:075 ] ffmpeg security (May 15)
[ MDVSA-2012:082 ] pidgin security (May 28)
[ MDVSA-2012:085 ] tomcat5 security (May 30)
[ MDVSA-2012:079 ] sudo security (May 21)
[ MDVSA-2012:081 ] firefox security (May 24)
[ MDVSA-2012:083 ] util-linux security (May 29)
[ MDVSA-2012:078 ] imagemagick security (May 17)
[ MDVSA-2012:068-1 ] php security (May 10)

Security Explorations

[SE-2011-01] Security of SAT TV set-to-boxes and DVB chipsets (details released) Security Explorations (May 29)

security-news

[Security-news] SA-CONTRIB-2012-082 - Zen - Cross Site Scripting security-news (May 16)
[Security-news] SA-CONTRIB-2012-069 - Addressbook - Multiple vulnerabilities - Unsupported security-news (May 02)
[Security-news] SA-CONTRIB-2012-087 - Comment Moderation - Cross Site Request Forgery security-news (May 30)
[Security-news] SA-CONTRIB-2012-078 - Smart Breadcrumb - Cross Site Scripting (XSS) security-news (May 16)
[Security-news] SA-CONTRIB-2012-088 - Mobile Tools - Cross Site Scripting (XSS) security-news (May 30)
[Security-news] SA-CONTRIB-2012-086 - Amadou - Cross Site Scripting security-news (May 30)
[Security-news] SA-CONTRIB-2012-075 - Take Control - Cross Site Request Forgery (CSRF) security-news (May 09)
[Security-news] SA-CONTRIB-2012-070 - Taxonomy Grid : Catalog - Cross Site Scripting (XSS) - Unsupported security-news (May 02)
[Security-news] SA-CONTRIB-2012-090 - File depot - Session Management Vulnerability security-news (May 30)
[Security-news] SA-CONTRIB-2012-071 - Glossify - Cross Site Scripting (XSS) - Unsupported security-news (May 02)
[Security-news] SA-CONTRIB-2012-089 - Counter - SQL Injection (unsupported) security-news (May 30)
[Security-news] SA-CONTRIB-2012-080 - Hostmaster (Aegir) - Access Bypass and Cross Site Scripting (XSS) security-news (May 16)
[Security-news] SA-CONTRIB-2012-074 - Contact Forms - Access Bypass security-news (May 09)
[Security-news] SA-CONTRIB-2012-083 - Taxonomy List - Cross Site Scripting (XSS) security-news (May 23)
[Security-news] SA-CORE-2012-002 - Drupal core multiple vulnerabilities security-news (May 02)
[Security-news] SA-CONTRIB-2012-072 - cctags - Cross Site Scripting (XSS) security-news (May 02)
[Security-news] SA-CONTRIB-2012-068 - Node Gallery - Cross Site Request Forgery (CSRF) - Unsupported security-news (May 02)
[Security-news] SA-CONTRIB-2012-081 - Aberdeen - Cross Site Scripting security-news (May 16)
[Security-news] SA-CONTRIB-2012-084 - Search API - Cross Site Scripting (XSS) security-news (May 23)
[Security-news] SA-CONTRIB-2012-073 - Glossary - Cross-Site Scripting (XSS) security-news (May 09)
[Security-news] SA-CONTRIB-2012-076 - Ubercart Product Keys Access Bypass security-news (May 16)
[Security-news] SA-CONTRIB-2012-085 - BrowserID - Multiple Vulnerabilities security-news (May 23)
[Security-news] SA-CONTRIB-2012-77 - Advertisement - Cross Site Scripting & Information Disclosure security-news (May 16)
[Security-news] SA-CONTRIB-2012-079 - Post Affiliate Pro - Cross Site Scripting (XSS) and Access Bypass - Unsupported security-news (May 16)

Sergio 'shadown' Alvarez

Re: Video tutorial: Stack-Based Buffer Overflow Sergio 'shadown' Alvarez (May 16)

Shreyas Zare

Re: Google Accounts Security Vulnerability Shreyas Zare (May 15)

Stefan Bodewig

[CVE-2012-2098] Apache Commons Compress and Apache Ant denial of service vulnerability Stefan Bodewig (May 24)

Stefan Kanthak

ICACLS.EXE ignores and destroys SE_DACL_PROTECTED/SE_SACL_PROTECTED Stefan Kanthak (May 13)

Stefan Schurtz

Serendipity 1.6 Backend Cross-Site Scripting and SQL-Injection vulnerability Stefan Schurtz (May 08)

Tavis Ormandy

Re: The story of the Linux kernel 3.x... Tavis Ormandy (May 16)
Re: The story of the Linux kernel 3.x... Tavis Ormandy (May 16)
Re: The story of the Linux kernel 3.x... Tavis Ormandy (May 16)
Re: The story of the Linux kernel 3.x... Tavis Ormandy (May 16)
Re: The story of the Linux kernel 3.x... Tavis Ormandy (May 16)
Re: The story of the Linux kernel 3.x... Tavis Ormandy (May 16)

Thijs Kinkhorst

[SECURITY] [DSA 2467-1] mahara security update Thijs Kinkhorst (May 09)
[SECURITY] [DSA 2465-1] php5 security update Thijs Kinkhorst (May 09)
[SECURITY] [DSA 2466-1] rails security update Thijs Kinkhorst (May 09)
[SECURITY] [DSA 2422-2] file regression fix Thijs Kinkhorst (May 09)

Thomas Richards

Re: About IBM Thomas Richards (May 28)

Thor (Hammer of God)

Re: Google Accounts Security Vulnerability Thor (Hammer of God) (May 19)
Re: Google Accounts Security Vulnerability Thor (Hammer of God) (May 15)
Re: Google Accounts Security Vulnerability Thor (Hammer of God) (May 17)
FW: Curso online - Profesional pentesting - Promocion ( 25% de descuento ) Thor (Hammer of God) (May 19)
Re: Certificacion - Profesional Pentester Thor (Hammer of God) (May 23)
Re: Certificacion - Profesional Pentester Thor (Hammer of God) (May 23)
Re: cDc Created Hong Kong Blondes and 'Hacktivism' as a Media Hack Thor (Hammer of God) (May 04)
Re: Google Accounts Security Vulnerability Thor (Hammer of God) (May 15)
Re: Info about attack trees Thor (Hammer of God) (May 25)
Re: Google Accounts Security Vulnerability Thor (Hammer of God) (May 20)
Re: Certificacion - Profesional Pentester Thor (Hammer of God) (May 24)

Tiago Natel de Moura

CVE-2012-2216 - Social Engine Multiples Vulnerabilities (XSS and CSRF) Tiago Natel de Moura (May 24)

Timo Warns

[PRE-SA-2012-03] Linux kernel: Buffer overflow in HFS plus filesystem Timo Warns (May 16)

Tomi Tuominen

t2'12: Call for Papers 2012 (Helsinki / Finland) Tomi Tuominen (May 11)

Urlan

Re: Info about attack trees Urlan (May 25)

usman

iGuard Security Access Control System Webserver, Cross Site Scripting (XSS) usman (May 02)

valdis . kletnieks

Re: The story of the Linux kernel 3.x... valdis . kletnieks (May 17)
Re: cDc Created Hong Kong Blondes and 'Hacktivism' as a Media Hack Valdis . Kletnieks (May 04)
Re: University of Washington Infected with GetMama 3000 files! Valdis . Kletnieks (May 06)
Re: The story of the Linux kernel 3.x... valdis . kletnieks (May 17)
Re: [OT] New online service to make XSSs easier Valdis . Kletnieks (May 07)
Re: Certificacion - Profesional Pentester valdis . kletnieks (May 23)

VMware Security Team

VMSA-2012-0009 VMware Workstation, Player, ESXi and ESX patches address critical security issues VMware Security Team (May 03)

vulnerabilitylabsucks

VULNERABILITY LAB and why they suck hard vulnerabilitylabsucks (May 31)

Walied Assar

PE Explorer Heap Overflow Vulnerability Walied Assar (May 20)
Resource Hacker Heap Overflow Walied Assar (May 18)
ResEdit Buffer Overflow Vulnerabilities Walied Assar (May 24)
Resource Tuner 1.99 Heap Overflow Walied Assar (May 16)

washington_u_getmama

University of Washington Infected with GetMama 3000 files! washington_u_getmama (May 06)
Re: University of Washington Infected with GetMama 3000 files! washington_u_getmama (May 13)

Wei Honker

cDc Created Hong Kong Blondes and 'Hacktivism' as a Media Hack Wei Honker (May 04)

WooYun

JW player xss security flaw WooYun (May 16)
struts csrf token bypass WooYun (May 16)

Yegor Kozlov

Re: [SECURITY] [DSA 2468-1] libjakarta-poi-java security update Yegor Kozlov (May 10)

yersinia

Re: Flame= cyberwar yersinia (May 28)

YGN Ethical Hacker Group

Acuity CMS 2.6.x <= Path Traversal Arbitrary File Access YGN Ethical Hacker Group (May 20)
Acuity CMS 2.6.x <= Path Traversal Arbitrary File Access YGN Ethical Hacker Group (May 20)
Acuity CMS 2.6.x <= Arbitrary File Upload YGN Ethical Hacker Group (May 20)
Acuity CMS 2.6.x <= Arbitrary File Upload YGN Ethical Hacker Group (May 20)

Yves-Alexis Perez

[SECURITY] [DSA 2670-1] wordpress security update Yves-Alexis Perez (May 11)
[SECURITY] [DSA 2483-1] strongswan security update Yves-Alexis Perez (May 31)

Zach C.

Re: Certificacion - Profesional Pentester Zach C. (May 23)

Григорий Братислава

Vulnerability in is Dopewars Григорий Братислава (May 17)