Full Disclosure: by author

434 messages starting Mar 27 14 and ending Mar 27 14
Date index | Thread index | Author index


Re: Android IMSI-Catcher Detector (AIMSICD) † (Mar 27)

0u7 5m4r7

Trixbox all versions , Remote root Exploit 0u7 5m4r7 (Mar 15)
Trixbox all versions , Remote root exploit 0u7 5m4r7 (Mar 14)

Adam Zabrocki

Re: Adventure with Stack Smashing Protector (SSP) Adam Zabrocki (Mar 28)
Adventure with Stack Smashing Protector (SSP) Adam Zabrocki (Mar 26)

alejandr0.w3b.p0wn3r

CVE-2014-1686 -- Information disclosure: webserver source path in Mediawiki 1.18.0 alejandr0.w3b.p0wn3r (Mar 12)
CVE-2014-1599 - 39 Type-1 XSS in SFR ADSL/Fiber Box alejandr0.w3b.p0wn3r (Mar 05)

Alexander Lashkov

New Speakers at PHDays IV: How to Hack Gmail and WordPress and Spy through TV Alexander Lashkov (Mar 28)

Alexandre De Oliveira

Hackito Ergo Sum 2014 CFP Alexandre De Oliveira (Mar 11)

Alfred Beese

Re: Fwd: Google vulnerabilities with PoC Alfred Beese (Mar 15)
Re: Google vulnerabilities with PoC Alfred Beese (Mar 16)

Alfredo Ortega

Re: Google vulnerabilities with PoC Alfredo Ortega (Mar 14)
Re: Google vulnerabilities with PoC Alfredo Ortega (Mar 14)
Re: Google vulnerabilities with PoC Alfredo Ortega (Mar 14)

andfarm

Re: Google vulnerabilities with PoC andfarm (Mar 13)

Andres Riancho

[TOOL] w3af 1.6 release Andres Riancho (Mar 31)

antisnatchor

Re: Google vulnerabilities with PoC antisnatchor (Mar 13)
Re: Fwd: Google vulnerabilities with PoC antisnatchor (Mar 14)
Re: Fwd: Google vulnerabilities with PoC antisnatchor (Mar 14)
Re: Google vulnerabilities with PoC antisnatchor (Mar 15)
Re: Google vulnerabilities with PoC antisnatchor (Mar 14)
Re: Fwd: Google vulnerabilities with PoC antisnatchor (Mar 14)
Re: Fwd: Google vulnerabilities with PoC antisnatchor (Mar 15)

Arron Dowdeswell

Re: CVE-2014-5880 - Authentication Bypass in Oracle Demantra Arron Dowdeswell (Mar 01)
Re: CVE-2014-5795 - Database Credentials Leak in Oracle Demantra Arron Dowdeswell (Mar 01)

Asterisk Security Team

AST-2014-003: Remote Crash Vulnerability in PJSIP channel driver Asterisk Security Team (Mar 10)
AST-2014-002: Denial of Service Through File Descriptor Exhaustion with chan_sip Session-Timers Asterisk Security Team (Mar 10)
AST-2014-004: Remote Crash Vulnerability in PJSIP Channel Driver Subscription Handling Asterisk Security Team (Mar 10)
AST-2014-001: Stack Overflow in HTTP Processing of Cookie Headers. Asterisk Security Team (Mar 10)

AWeber Test

USSD Sender Hacktool 1.0 AWeber Test (Mar 19)

Brandon Perry

Re: MODX SQLi from oss-sec Brandon Perry (Mar 08)
Re: Rails and redirections Brandon Perry (Mar 06)
Re: Rails and redirections Brandon Perry (Mar 06)
Rails and redirections Brandon Perry (Mar 06)
Re: Google vulnerabilities with PoC Brandon Perry (Mar 13)
MODX SQLi from oss-sec Brandon Perry (Mar 08)
EMC CTA v10.0 unauthenticated XXE with root perms Brandon Perry (Mar 31)
Re: Google vulnerabilities with PoC Brandon Perry (Mar 13)
AlienVault 4.5.0 authenticated SQL injection Brandon Perry (Mar 30)
McAfee Cloud SSO and McAfee Asset Manager vulns Brandon Perry (Mar 18)
Re: OT What is happening with bitcoins? Brandon Perry (Mar 06)
Re: MODX SQLi from oss-sec Brandon Perry (Mar 08)
Re: SQL injection in MODX Brandon Perry (Mar 09)
CVE-2014-2238 -- MantisBT aux mod Brandon Perry (Mar 03)

Brian Demers

[Announce] Apache Shiro 1.2.3 Released - Security Advisory Brian Demers (Mar 04)

Brian M. Waters

Re: Fwd: Google vulnerabilities with PoC Brian M. Waters (Mar 15)
Re: Cisco Security Advisory: Cisco Small Business Router Password Disclosure Vulnerability Brian M. Waters (Mar 06)

BSidesLV Info

[Call for Presenters] Security BSides Las Vegas BSidesLV Info (Mar 04)

Capstone Engine

CEbot: disasm from your Twitter account Capstone Engine (Mar 18)

charles

Re: Android IMSI-Catcher Detector (AIMSICD) charles (Mar 26)

chedder

Re: OT What is happening with bitcoins? chedder (Mar 10)

ChienD

Re: Full-Disclosure Digest, Vol 109, Issue 32 ChienD (Mar 15)

Chris Short

Re: OT: Thanks to Fyodor Chris Short (Mar 26)

Chris Thompson

Re: Fwd: Google vulnerabilities with PoC Chris Thompson (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Chris Thompson (Mar 14)

Christian Catalano

[CVE-2013-6231] Remote Privilege Escalation in SpagoBI v4.0 Christian Catalano (Mar 01)
[CVE-2013-6232] Persistent Cross-Site Scripting (XSS) in SpagoBI v4.0 Christian Catalano (Mar 01)
[CVE-2013-6233] Persistent HTML Script Insertion permits offsite-bound forms in SpagoBI v4.0 Christian Catalano (Mar 01)
[CVE-2013-6234] XSS File Upload in SpagoBI v4.0 Christian Catalano (Mar 01)

Christian Fernandez

Re: OT: Thanks to Fyodor Christian Fernandez (Mar 26)

Christian Mehlmauer

Fwd: Multiple vulnerabilities in Ioncube loader-wizard Christian Mehlmauer (Mar 30)

Christian Mueller

[ANNOUNCE] CVE-2014-0002 and CVE-2014-0003 - Apache Camel critical disclosure vulnerability Christian Mueller (Mar 01)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Multiple Vulnerabilities in Cisco Wireless LAN Controllers Cisco Systems Product Security Incident Response Team (Mar 05)
Cisco Security Advisory: Cisco Small Business Router Password Disclosure Vulnerability Cisco Systems Product Security Incident Response Team (Mar 05)

claepo.wang

[CVE-2014-2339] GNUboard SQL Injection Vulnerability claepo.wang (Mar 17)
[CVE-2014-2339] GNUboard SQL Injection Vulnerability claepo.wang (Mar 14)

coderman

Re: OT What is happening with bitcoins? coderman (Mar 10)
Re: PoC: End-to-end correlation for Tor connections using an active timing attack coderman (Mar 29)
Re: Hacking in Schools coderman (Mar 10)
Re: [oss-security] [OT] FD mailing list died. Time for new one coderman (Mar 25)
QUANTUMSQUIRREL - attrition.org unmasked as NSA TAO OP coderman (Mar 13)
Re: PoC: End-to-end correlation for Tor connections using an active timing attack coderman (Mar 29)

Colette Chamberland

Re: Fwd: Google vulnerabilities with PoC Colette Chamberland (Mar 15)
Re: Fwd: Google vulnerabilities with PoC Colette Chamberland (Mar 15)

Colin Keigher

Re: OT: Thanks to Fyodor Colin Keigher (Mar 26)

CORE Advisories Team

CORE-2014-0002 - Oracle VirtualBox 3D Acceleration Multiple Memory Corruption Vulnerabilities CORE Advisories Team (Mar 11)

Curesec Research Team

Tool Release: nsdtool - netgear switch discovery Curesec Research Team (Mar 05)

[CXSEC]

MacOSX Safari Firefox Kaspersky RegExp Remote/Local Denial of Service [CXSEC] (Mar 14)
Kaspersky 14.0.0.4651 RegExp Remote Denial of Service PoC2 [CXSEC] (Mar 19)

Damien Cauquil

[CFP] Hack In Paris 2014 CFP is postponed to March 10 Damien Cauquil (Mar 04)

Daniel Miller

Re: [GTA-2014-01] - Allied Telesis AT-RG634A ADSL Broadband router hidden administrative unauthenticated webshell. Daniel Miller (Mar 26)
Re: Master Lock random key code generation/distribution Fails Daniel Miller (Mar 26)
Re: Master Lock random key code generation/distribution Fails Daniel Miller (Mar 26)

Daniel Wood

Re: Passwords Analyser Tool Daniel Wood (Mar 11)

David H

Re: Fwd: Google vulnerabilities with PoC David H (Mar 15)

David Schuetz

Apple TV log file password disclosure David Schuetz (Mar 11)

dc0de () gmx com

Re: OT: Thanks to Fyodor dc0de () gmx com (Mar 26)

dcz

Re: OT: Thanks to Fyodor dcz (Mar 30)

devel

Re: OT: Thanks to Fyodor devel (Mar 26)

Deviant Ollam

Re: Master Lock random key code generation/distribution Fails Deviant Ollam (Mar 27)

Dillon Korman

Wireless Security Paper Dillon Korman (Mar 28)
Re: Wireless Security Paper Dillon Korman (Mar 30)

Exibar

Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Exibar (Mar 16)

Ferenc Kovacs

Re: OT: Thanks to Fyodor Ferenc Kovacs (Mar 27)

Fernando Gont

(CFP) LACSEC 2014: Cancun, Mexico. May 7-8, 2014 (EXTENDED DEADLINE) Fernando Gont (Mar 18)

Florian Weimer

Re: Bank of the West security contact? Florian Weimer (Mar 18)

Francesco Perna

[Quantum Leap Advisory] #QLA140216 - VLC Reflected XSS vulnerability Francesco Perna (Mar 18)

Fyodor

Administrivia: A Fresh Start Fyodor (Mar 25)

Gaurang Pandya

Re: [OT] pls ignore Gaurang Pandya (Mar 05)

Georgi Guninski

OT Crazy SAT encoding of md4 preimage Georgi Guninski (Mar 28)
Re: Google vulnerabilities with PoC Georgi Guninski (Mar 15)
Re: Advisory : Persistent Internet Storage Georgi Guninski (Mar 26)
Re: Advisory : Persistent Internet Storage Georgi Guninski (Mar 26)
Re: What to do if this version of the list dies? Georgi Guninski (Mar 26)
OT What is happening with bitcoins? Georgi Guninski (Mar 06)
What to do if this version of the list dies? Georgi Guninski (Mar 26)

Gichuki John Chuksjonia

Re: Google vulnerabilities with PoC Gichuki John Chuksjonia (Mar 15)
Re: Fwd: Google vulnerabilities with PoC Gichuki John Chuksjonia (Mar 17)

gremlin

GOST 28147-89 gets 512 bit and 1 kbit keys gremlin (Mar 31)

Groundworks Technologies Advisories Team

[GTA-2014-01] - Allied Telesis AT-RG634A ADSL Broadband router hidden administrative unauthenticated webshell. Groundworks Technologies Advisories Team (Mar 26)

Guillaume Ross

[CVE-2013-6835] - iOS 7.0.6 Safari/Facetime-Audio Privacy issue Guillaume Ross (Mar 11)

Gustavo Speranza

[CVE-2014-0683]Router Cisco RV110W - RV215W - CVR100W - Bypass Login Page - Admin Password Disclosure Gustavo Speranza (Mar 05)

Gynvael Coldwind

Re: Google vulnerabilities with PoC Gynvael Coldwind (Mar 15)

Hanno Böck

PowerArchiver: Uses insecure legacy PKZIP encryption when AES is selected (CVE-2014-2319) Hanno Böck (Mar 13)

Harry Metcalfe

XSS, CSRF and blind SQL injection in GD Star Rating 1.9.22 (WordPress plugin) Harry Metcalfe (Mar 28)
End-user exploitable local file inclusion vulnerability in Ajax Pagination (twitter Style) 1.1 (WordPress plugin) Harry Metcalfe (Mar 28)
CSRF in WordPress plugin Google Analytics MU 2.3 Harry Metcalfe (Mar 03)
CSRF vulnerability in WP HTML Sitemap 1.2 (WordPress plugin) Harry Metcalfe (Mar 28)

Himanshu anand

Re: OT: Thanks to Fyodor Himanshu anand (Mar 26)

Hon1nbo

Nuclear Regulatory Comm. password available through Google Hon1nbo (Mar 26)
Re: Master Lock random key code generation/distribution Fails Hon1nbo (Mar 26)

HTTPCS

OXATIS 'EMSJ' Cross Site Scripting Vulnerability HTTPCS (Mar 10)
[HTTPCS] ClanSphere 'where' Cross Site Scripting Vulnerability HTTPCS (Mar 10)

Hugh Davenport

Re: Google vulnerabilities with PoC Hugh Davenport (Mar 13)

Ian Clelland

[CVE-2014-0073] Apache Cordova In-App-Browser privilege escalation Ian Clelland (Mar 05)
[CVE-2014-0072] Apache Cordova File-Transfer insecure defaults Ian Clelland (Mar 05)

Jack Morgan

Re: Introducing APSAM - Beyond Military Grade Security Jack Morgan (Mar 31)

jajordan

Re: OT: Thanks to Fyodor jajordan (Mar 27)

Jann Horn

PoC: End-to-end correlation for Tor connections using an active timing attack Jann Horn (Mar 29)

Jason_Khanlar

Monoprice Server-Side Cart Vulnerability Jason_Khanlar (Mar 26)

Jean-Christophe Praud

Re: OT: Thanks to Fyodor Jean-Christophe Praud (Mar 26)

Jeff Kell

Re: Master Lock random key code generation/distribution Fails Jeff Kell (Mar 26)

Jeffrey Walton

Re: Bank of the West security contact? Jeffrey Walton (Mar 18)
Re: Bank of the West security contact? Jeffrey Walton (Mar 17)

Jeremy Voorhis

Re: Public VCS security issues Jeremy Voorhis (Mar 26)

Jerome Athias

Re: Google vulnerabilities with PoC Jerome Athias (Mar 13)

Jimb0 Hon1nbo

Master Lock random key code generation/distribution Fails Jimb0 Hon1nbo (Mar 26)

John Cartwright

List Charter John Cartwright (Mar 10)
Administrivia: The End John Cartwright (Mar 19)

Jones, Jeff:(BSC)

Re: OT: Thanks to Fyodor Jones, Jeff:(BSC) (Mar 26)

Jon Hart

Re: Master Lock random key code generation/distribution Fails Jon Hart (Mar 26)

J. Oquendo

Introducing APSAM - Beyond Military Grade Security J. Oquendo (Mar 31)

Joxean Koret

Re: Fwd: Google vulnerabilities with PoC Joxean Koret (Mar 17)
Re: Advisory : Persistent Internet Storage Joxean Koret (Mar 26)

J. Tozo

Re: Fwd: Google vulnerabilities with PoC J. Tozo (Mar 14)
Re: Fwd: Google vulnerabilities with PoC J. Tozo (Mar 14)
Re: Google vulnerabilities with PoC J. Tozo (Mar 13)

Julien Ahrens

[CVE-2014-2087] Free Download Manager CDownloads_Deleted::UpdateDownload() Buffer Overflow Remote Code Execution Julien Ahrens (Mar 13)
[CVE-2014-2206] GetGo Download Manager HTTP Response Header Buffer Overflow Remote Code Execution Julien Ahrens (Mar 02)

Julius Kivimäki

Re: Google vulnerabilities with PoC Julius Kivimäki (Mar 13)
Re: Fwd: Google vulnerabilities with PoC Julius Kivimäki (Mar 14)
Re: Google vulnerabilities with PoC Julius Kivimäki (Mar 13)
Re: Google vulnerabilities with PoC Julius Kivimäki (Mar 13)
Re: OT What is happening with bitcoins? Julius Kivimäki (Mar 11)
Re: Google vulnerabilities with PoC Julius Kivimäki (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Julius Kivimäki (Mar 14)
Re: Google vulnerabilities with PoC Julius Kivimäki (Mar 13)

Justin Klein Keane

Re: OT: Thanks to Fyodor Justin Klein Keane (Mar 27)
iThought App Multiple Vulnerabilities Justin Klein Keane (Mar 26)

Kristian Erik Hermansen

Fwd: Hacking Exposed: Virtualization & Cloud Computing: Secrets & Solutions Kristian Erik Hermansen (Mar 13)
Re: Bank of the West security contact? Kristian Erik Hermansen (Mar 17)

Krzysztof Kotowicz

Re: Fwd: Google vulnerabilities with PoC Krzysztof Kotowicz (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Krzysztof Kotowicz (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Krzysztof Kotowicz (Mar 14)

Larry W. Cashdollar

Remote Command Injection in Arabic Prawn 0.0.1 Ruby Gem Larry W. Cashdollar (Mar 12)

Laskov Denis

Re: OT: Thanks to Fyodor Laskov Denis (Mar 26)

Leutnant Steiner

Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Leutnant Steiner (Mar 19)

Levon Kayan

immhooktmpl.py - Immunity template plugin for function hooking Levon Kayan (Mar 31)

Lorenz Diener

Re: Public VCS security issues Lorenz Diener (Mar 26)

Lukasz Lenart

Re: [ANN] Struts 2.3.16.1 GA release available - security fix Lukasz Lenart (Mar 06)
[ANN] Struts 2.3.16.1 GA release available - security fix Lukasz Lenart (Mar 06)

MadSaxon

Re: OT: Thanks to Fyodor MadSaxon (Mar 26)

Mahmoud Ghorbanzadeh

[CVE-2013-5951] Multiple Cross Site Scripting Vulnerabilities in eXtplorer 2.1.3 Mahmoud Ghorbanzadeh (Mar 15)
XSS Vulnerability in the Youtube Gallery 3.4.0 Component Mahmoud Ghorbanzadeh (Mar 15)
[CVE-2013-5955] Cross-site scripting Vulnerability in the Pbbooking 2.4 Mahmoud Ghorbanzadeh (Mar 15)
[CVE-2013-5953] Mahmoud Ghorbanzadeh (Mar 15)
[CVE-2013-5954] Multiple Cross Site Request Forgery Vulnerabilities in OpenX 2.8.11 Mahmoud Ghorbanzadeh (Mar 15)
[CVE-2013-5952] Multiple Cross Site Scripting Vulnerabilities in Freichat Mahmoud Ghorbanzadeh (Mar 15)
Re: XSS Vulnerability in the Youtube Gallery 3.4.0 Component Mahmoud Ghorbanzadeh (Mar 16)

Mario Vilas

Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Fwd: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 15)
Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 17)
Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 15)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 15)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 15)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 15)
Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Mario Vilas (Mar 15)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 17)
Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 17)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 17)
Re: Fwd: Google vulnerabilities with PoC Mario Vilas (Mar 14)
Re: Google vulnerabilities with PoC Mario Vilas (Mar 14)

Mark M. Jaycox (EFF)

Re: OT What is happening with bitcoins? Mark M. Jaycox (EFF) (Mar 13)

Martin Holst Swende

Chunked requests to bypass ModSecurity and mod_headers Martin Holst Swende (Mar 31)

Matt Andreko

Re: Canon Printer Exposes WiFi Password Matt Andreko (Mar 28)

Meaux, Kirk

Re: OT What is happening with bitcoins? Meaux, Kirk (Mar 10)

Michael Gilbert

[SECURITY] [DSA 2877-1] lighttpd security update Michael Gilbert (Mar 13)

Michael Smith

Re: Google vulnerabilities with PoC Michael Smith (Mar 15)

Michal Zalewski

Re: Google vulnerabilities with PoC Michal Zalewski (Mar 13)
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski (Mar 14)
Re: Google vulnerabilities with PoC Michal Zalewski (Mar 13)
Re: Google vulnerabilities with PoC Michal Zalewski (Mar 13)
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski (Mar 15)
Re: Google vulnerabilities with PoC Michal Zalewski (Mar 13)
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski (Mar 15)
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski (Mar 15)
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski (Mar 15)
Re: What to do if this version of the list dies? Michal Zalewski (Mar 26)

Mike Hale

Re: Fwd: Google vulnerabilities with PoC Mike Hale (Mar 14)

M Kirschbaum

Re: Google vulnerabilities with PoC M Kirschbaum (Mar 15)
Re: Google vulnerabilities with PoC M Kirschbaum (Mar 16)
Re: Google vulnerabilities with PoC M Kirschbaum (Mar 15)
Re: Fwd: Google vulnerabilities with PoC M Kirschbaum (Mar 15)

Moritz Muehlenhoff

[SECURITY] [DSA 2876-1] cups security update Moritz Muehlenhoff (Mar 12)
[SECURITY] [DSA 2872-1] udisks security update Moritz Muehlenhoff (Mar 10)
[SECURITY] [DSA 2875-1] cups-filters security update Moritz Muehlenhoff (Mar 12)
[SECURITY] [DSA 2871-1] wireshark security update Moritz Muehlenhoff (Mar 10)
[SECURITY] [DSA 2880-1] python2.7 security update Moritz Muehlenhoff (Mar 17)
[SECURITY] [DSA 2878-1] virtualbox security update Moritz Muehlenhoff (Mar 13)
[SECURITY] [DSA 2874-1] mutt security update Moritz Muehlenhoff (Mar 12)

Moritz Naumann

Re: Master Lock random key code generation/distribution Fails Moritz Naumann (Mar 26)

MustLive

Multiple vulnerabilities in Js-Multi-Hotel for WordPress MustLive (Mar 31)
DAVOSET v.1.1.8 MustLive (Mar 07)
DAVOSET v.1.1.9 MustLive (Mar 30)
XSS and FPD vulnerabilities in Js-Multi-Hotel for WordPress MustLive (Mar 29)

Nahuel Grisolia

Passwords Analyser Tool Nahuel Grisolia (Mar 11)

Nguyen Anh Quynh

Capstone disassembly framework 2.1 released! Nguyen Anh Quynh (Mar 05)
Capstone disassembly framework 2.1.1 released! Nguyen Anh Quynh (Mar 13)

Nicholas Lemonias.

Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Google Inc., (Youtube.com) Unrestricted File Upload Vulnerability. Nicholas Lemonias. (Mar 04)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Fwd: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Re: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 13)
Google's (YouTube) Arbitrary File Upload Vulnerability Report with PoC Nicholas Lemonias. (Mar 05)
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias. (Mar 14)
Live PoC - Confirming completion of arbitrary file uploads to You Tube's Servers Nicholas Lemonias. (Mar 06)

Nico Le Moin

Advisory : Persistent Internet Storage Nico Le Moin (Mar 26)

Ninja ActiVPN

ActiVPN launches its security bug bounty Ninja ActiVPN (Mar 13)

Nomen Nescio

exploit for old rlpdaemon bug Nomen Nescio (Mar 16)

Patrik asd

Public VCS security issues Patrik asd (Mar 26)

Pedro Ribeiro

Re: Google vulnerabilities with PoC Pedro Ribeiro (Mar 14)
[CVE-2014-0334] XSS in CMS made simple, plus other security issues Pedro Ribeiro (Mar 04)
Re: Fwd: Google vulnerabilities with PoC Pedro Ribeiro (Mar 17)
Re: Fwd: Google vulnerabilities with PoC Pedro Ribeiro (Mar 17)
Re: Google vulnerabilities with PoC Pedro Ribeiro (Mar 13)

Pedro Worcel

Re: OT What is happening with bitcoins? Pedro Worcel (Mar 07)

Peter Malone

Re: OT: Thanks to Fyodor Peter Malone (Mar 26)

Pivotal Security Team

CVE-2014-0097 Spring Security Blank password may bypass user authentication Pivotal Security Team (Mar 12)
CVE-2014-1904 XSS when using Spring MVC Pivotal Security Team (Mar 12)
CVE-2014-0054 Spring MVC Incomplete fix for CVE-2013-4152 / CVE-2013-6429 (XXE) Pivotal Security Team (Mar 12)

Portcullis Advisories

CVE-2014-1216 - Remote Command Execution in Fitnesse Wiki Portcullis Advisories (Mar 01)
CVE-2014-2043 - SQL Injection in Procentia IntelliPen Portcullis Advisories (Mar 12)
CVE-2014-5877 - Local File Inclusion in Oracle Demantra Portcullis Advisories (Mar 01)
Re: CVE-2014-5880 - Authentication Bypass in Oracle Demantra Portcullis Advisories (Mar 01)
CVE-2014-0371 - Reflective XSS in Oracle Demantra Portcullis Advisories (Mar 01)
CVE-2014-1222 - Local File Inclusion in Vtiger CRM Portcullis Advisories (Mar 12)
CVE-2014-5795 - Database Credentials Leak in Oracle Demantra Portcullis Advisories (Mar 01)
CVE-2014-5880 - Authentication Bypass in Oracle Demantra Portcullis Advisories (Mar 01)
Re: CVE-2014-5795 - Database Credentials Leak in Oracle Demantra Portcullis Advisories (Mar 01)
CVE-2014-0379 - Stored Cross-site Scripting in Oracle Demantra Portcullis Advisories (Mar 01)
Re: CVE-2014-5877 - Local File Inclusion in Oracle Demantra Portcullis Advisories (Mar 01)
CVE-2014-2044 - Remote Code Execution in ownCloud Portcullis Advisories (Mar 06)
Re: CVE-2014-5877 - Local File Inclusion in Oracle Demantra Portcullis Advisories (Mar 01)
CVE-2014-0372 - SQL Injection in Oracle Demantra Portcullis Advisories (Mar 01)

Project Zero Labs

Netvolution CMS 3 SQL injection Project Zero Labs (Mar 04)
Byte CMS Cross Site Scripting Vulnerabilities Project Zero Labs (Mar 13)

Rami Taibah

Re: OT: Thanks to Fyodor Rami Taibah (Mar 26)

Raphael Geissert

[SECURITY] [DSA 2879-1] libssh security update Raphael Geissert (Mar 13)

R D

Re: Fwd: Google vulnerabilities with PoC R D (Mar 14)
Re: Fwd: Google vulnerabilities with PoC R D (Mar 14)
Re: Fwd: Google vulnerabilities with PoC R D (Mar 14)

RedTeam Pentesting GmbH

[RT-SA-2014-002] rexx Recruitment: Cross-Site Scripting in User Registration RedTeam Pentesting GmbH (Mar 27)

Rene Fischer

CosmoShop unprotected admin-script "pwd.cgi" probably in all versions > 8.0 Rene Fischer (Mar 14)

Richard Chycoski

Re: Master Lock random key code generation/distribution Fails Richard Chycoski (Mar 26)

robert mccurdy

Angie's List Auth Bypass robert mccurdy (Mar 27)

Robert Święcki

Re: Adventure with Stack Smashing Protector (SSP) Robert Święcki (Mar 27)

Ron

Re: Public VCS security issues Ron (Mar 26)

Ronald

Re: Public VCS security issues Ronald (Mar 26)

Ron Scott-Adams

Re: OT What is happening with bitcoins? Ron Scott-Adams (Mar 11)

Salvatore Bonaccorso

[SECURITY] [DSA 2873-1] file security update Salvatore Bonaccorso (Mar 11)
[SECURITY] [DSA 2868-1] php5 security update Salvatore Bonaccorso (Mar 02)
[SECURITY] [DSA 2870-1] libyaml-libyaml-perl security update Salvatore Bonaccorso (Mar 08)

Sam Dodrill

Emergency patch for ShadowIRCd versions 6.3+ and Elemental-IRCd 6.5+ Sam Dodrill (Mar 18)

Samuel Alp

Re: Advisory : Persistent Internet Storage Samuel Alp (Mar 26)
good to see that we're back Samuel Alp (Mar 25)

Sandeep Kamble

Garage4Hackers Ranchoddas Series - Part 2 on Reverse Engineering - Free Webinar Sandeep Kamble (Mar 07)
Re: Garage4Hackers Ranchoddas Series - Part 2 on Reverse Engineering - Free Webinar Sandeep Kamble (Mar 17)
Few Hrs left Webcast Reminder: Garage4Hackers Ranchoddas Series 2 on Reverse Engineering Sandeep Kamble (Mar 17)
Re: Garage4Hackers Ranchoddas Series - Part 2 on Reverse Engineering - Free Webinar Sandeep Kamble (Mar 07)
Webcast Reminder: Garage4Hackers Ranchoddas Series 2 on Reverse Engineering Sandeep Kamble (Mar 13)
Re: Garage4Hackers Ranchoddas Series - Part 2 on Reverse Engineering - Free Webinar Sandeep Kamble (Mar 17)

scadastrangelove

New fixes for Siemens S7 1200 PLC: Time is compressing... scadastrangelove (Mar 28)
All your PLC are belong to us (2) scadastrangelove (Mar 18)

SEC Consult Vulnerability Lab

SEC Consult SA-20140307-0 :: Unauthenticated access & manipulation of settings in Huawei E5331 MiFi mobile hotspot SEC Consult Vulnerability Lab (Mar 07)
SEC Consult SA-20140328-0 :: Multiple vulnerabilities in Symantec LiveUpdate Administrator SEC Consult Vulnerability Lab (Mar 28)

SecUpwN

Re: Android IMSI-Catcher Detector (AIMSICD) SecUpwN (Mar 27)
Re: OT: Thanks to Fyodor SecUpwN (Mar 26)
Re: Android IMSI-Catcher Detector (AIMSICD) SecUpwN (Mar 27)
Android IMSI-Catcher Detector (AIMSICD) SecUpwN (Mar 26)

security

[ MDVSA-2014:064 ] udisks security (Mar 17)
[ MDVSA-2014:063 ] x2goserver security (Mar 17)
[ MDVSA-2014:054 ] otrs security (Mar 13)
[ MDVSA-2014:060 ] imapsync security (Mar 14)
[ MDVSA-2014:051 ] file security (Mar 13)
[ MDVSA-2014:050 ] wireshark security (Mar 10)
[ MDVSA-2014:059 ] php security (Mar 14)
[ MDVSA-2014:053 ] libssh security (Mar 13)
[ MDVSA-2014:055 ] owncloud security (Mar 13)
[ MDVSA-2014:057 ] mediawiki security (Mar 13)
[ MDVSA-2014:048 ] gnutls security (Mar 10)
[ MDVSA-2014:049 ] subversion security (Mar 10)
[ MDVSA-2014:061 ] oath-toolkit security (Mar 14)
[ MDVSA-2014:052 ] net-snmp security (Mar 13)
[ MDVSA-2014:062 ] webmin security (Mar 17)
[ MDVSA-2014:056 ] apache-commons-fileupload security (Mar 13)
[ MDVSA-2014:058 ] freeradius security (Mar 13)

security-news

[Security-news] SA-CONTRIB-2014-029 - Mime Mail - Access Bypass security-news (Mar 05)
[Security-news] SA-CONTRIB-2014-031 - Webform Template - Access Bypass security-news (Mar 12)
[Security-news] SA-CONTRIB-2014-028 - Masquerade - Access bypass security-news (Mar 05)
[Security-news] SA-CONTRIB-2014-027 - NewsFlash Theme - XSS security-news (Mar 05)
[Security-news] SA-CONTRIB-2014-030 - SexyBookmarks - Information Disclosure security-news (Mar 12)

Security @ Planetkips

Re: OT: Thanks to Fyodor Security @ Planetkips (Mar 26)

Sergio 'shadown' Alvarez

Re: Fwd: Google vulnerabilities with PoC Sergio 'shadown' Alvarez (Mar 14)
Re: Google vulnerabilities with PoC Sergio 'shadown' Alvarez (Mar 14)

Srinivas Naik

Re: OT: Thanks to Fyodor Srinivas Naik (Mar 26)

Stefan Jon Silverman

Re: OT: Thanks to Fyodor Stefan Jon Silverman (Mar 30)
Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Stefan Jon Silverman (Mar 15)

Stefan Schurtz

Yahoo Bug Bounty Program Vulnerability #4 #5 #6 Cross-site Scripting vulnerabilities Stefan Schurtz (Mar 08)
Yahoo Bug Bounty Program Vulnerability #1 XSS on ads.yahoo.com Stefan Schurtz (Mar 08)
Re: Yahoo Bug Bounty Program Vulnerability #3 XSS on de-mg42.mail.yahoo.com Stefan Schurtz (Mar 08)
Yahoo Bug Bounty Program Vulnerability #3 XSS on de-mg42.mail.yahoo.com Stefan Schurtz (Mar 08)

Stefan Weimar

Re: OT: Thanks to Fyodor Stefan Weimar (Mar 26)

Steven Stewart-Gallus

Re: Adventure with Stack Smashing Protector (SSP) Steven Stewart-Gallus (Mar 29)

Steve Pordon

Re: Master Lock random key code generation/distribution Fails Steve Pordon (Mar 27)

Sumit Siddharth

NotSoSecure CTF [April 18th to 20th 2014] Sumit Siddharth (Mar 11)

Taylor Hornby

Canon Printer Exposes WiFi Password Taylor Hornby (Mar 28)

The Doctor

Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC The Doctor (Mar 18)

Thomas MacKenzie

Re: Fwd: Google vulnerabilities with PoC Thomas MacKenzie (Mar 14)

Thomas Williams

Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Thomas Williams (Mar 16)

Tim

Re: [ANN] Struts 2.3.16.1 GA release available - security fix Tim (Mar 06)
Re: [ANN] Struts 2.3.16.1 GA release available - security fix Tim (Mar 06)

T Imbrahim

Re: Fwd: Google vulnerabilities with PoC T Imbrahim (Mar 16)
Re: Fwd: Google vulnerabilities with PoC T Imbrahim (Mar 16)
Re: Fwd: Google vulnerabilities with PoC T Imbrahim (Mar 17)
Re: Google vulnerabilities with PoC T Imbrahim (Mar 16)
Re: Fwd: Google vulnerabilities with PoC T Imbrahim (Mar 16)
Re: Fwd: Google vulnerabilities with PoC T Imbrahim (Mar 17)

Tim Brown

Re: Medium severity flaw in BlackBerry QNX Neutrino RTOS Tim Brown (Mar 13)
Medium severity flaw in BlackBerry QNX Neutrino RTOS Tim Brown (Mar 12)

Timothy Goddard

Re: Rails and redirections Timothy Goddard (Mar 06)

Ulisses Montenegro

Re: Fwd: Google vulnerabilities with PoC Ulisses Montenegro (Mar 17)
Re: Fwd: Google vulnerabilities with PoC Ulisses Montenegro (Mar 14)

Vic Vandal

CarolinaCon-10 - May 2014 - FINAL ANNOUNCEMENT Vic Vandal (Mar 13)

"VMware Security Response Center"

NEW VMSA-2014-0002 VMware vSphere updates to third party libraries "VMware Security Response Center" (Mar 11)

Vulnerability Lab

FTP Drive + HTTP 1.0.4 iOS - Code Execution Vulnerability Vulnerability Lab (Mar 28)
SonicWall Dashboard Backend Server - Client Side Cross Site Scripting Web Vulnerability Vulnerability Lab (Mar 06)
Lazybone Studios WiFi Music 1.0 iOS - Multiple Vulnerabilities Vulnerability Lab (Mar 28)
Vanctech File Commander 1.1 iOS - Multiple Vulnerabilities Vulnerability Lab (Mar 31)
Dell SonicWall EMail Security 7.4.5 - Multiple Vulnerabilities (Bulletin) Vulnerability Lab (Mar 28)
My Photo Wifi Share & Photo Server 1.1 iOS - Command Injection Vulnerability Vulnerability Lab (Mar 28)
Wireless Drive v1.1.0 iOS - Multiple Web Vulnerabilities Vulnerability Lab (Mar 28)
PhotoWIFI Lite v1.0 iOS - Multiple Web Vulnerabilities Vulnerability Lab (Mar 31)
iStArtApp FileXChange v6.2 iOS - Multiple Vulnerabilities Vulnerability Lab (Mar 28)
ePhone Disk v1.0.2 iOS - Multiple Web Vulnerabilities Vulnerability Lab (Mar 28)

WebDawg

Re: Master Lock random key code generation/distribution Fails WebDawg (Mar 26)

William Costa

WatchGuard Fireware XTM devices contain a cross-site scripting vulnerability (CVE-2014-0338) William Costa (Mar 13)
Multiplus XSS in Proxmox Mail Gateway 3.1 (CVE-2014-2325) William Costa (Mar 12)
Reflected XSS Attacks XSS vulnerabilities in Webmin 1.670 (CVE-2014-0339) William Costa (Mar 15)
XSS in url for access of Confirmation Required in box for antispam from company AKER (CVE-2013-6037) William Costa (Mar 06)

William Reyor

BSides Connecticut - Call for Speakers William Reyor (Mar 13)

William Scott Lockwood III

Re: Fwd: Google vulnerabilities with PoC William Scott Lockwood III (Mar 15)

xyberpix

OT: Thanks to Fyodor xyberpix (Mar 26)

Yvan Janssens

Re: Fwd: Google vulnerabilities with PoC Yvan Janssens (Mar 14)

Yves-Alexis Perez

[SECURITY] [DSA 2869-1] gnutls26 security update Yves-Alexis Perez (Mar 04)

Źmicier Januszkiewicz

Re: Google vulnerabilities with PoC Źmicier Januszkiewicz (Mar 13)
Re: Fwd: Google vulnerabilities with PoC Źmicier Januszkiewicz (Mar 17)

Артур Истомин

Re: OT: Thanks to Fyodor Артур Истомин (Mar 27)