Security Basics mailing list archives

Fw: Returned post for security-basics () securityfocus com


From: "Sheldon Malm" <smalm () ncircle com>
Date: Wed, 6 May 2009 13:04:34 -0700

In case this didn't make it to the list ...

--------------------------
Sheldon Malm
Director 
Security Research and Development
nCircle VERT

Sent from my BlackBerry Wireless Handheld


----- Original Message -----
From: security-basics-help () securityfocus com <security-basics-help () securityfocus com>
To: Sheldon Malm
Sent: Wed May 06 11:49:31 2009
Subject: Returned post for security-basics () securityfocus com

Hi! This is the ezmlm program. I'm managing the
security-basics () securityfocus com mailing list.

I'm working for my owner, who can be reached
at security-basics-owner () securityfocus com.

I'm sorry, the list moderators for the security-basics list
have failed to act on your post. Thus, I'm returning it to you.
If you feel that this is in error, please repost the message
or contact a list moderator directly.

--- Enclosed, please find the message you sent.

--- Begin Message --- From: "Sheldon Malm" <smalm () ncircle com>
Date: Fri, 1 May 2009 11:32:05 -0700
Good presentation to un-bake your noodle at:
www.task.to/events/presentations/SpeedTalks/8.%20Ross%20Barrett%20-%20Ci
scoIOS.ppt

This is the initial basic research that led to a portion of nCircle's
Cisco vulnerability detection on IP360 a few years ago.

I hope this helps.  


Sheldon Malm
Director
Security Research and Development
nCircle Inc.


-----Original Message-----
From: listbounce () securityfocus com [mailto:listbounce () securityfocus com]
On Behalf Of Laurens Vets
Sent: Friday, May 01, 2009 12:48 PM
To: security-basics () securityfocus com
Subject: Re: Cisco Vuls

Hey W W,

I'm looking for a way to determine whether my current cisco ios is
vulnerable to any known exploits.  navigating cisco's site is painful
and not very intuitive (even with a cco account).  basically if i'm
running ios 12.2(25) on a switch do I need to upgrade and if so to
what release?  Any thoughts?

Get the release date of your version 
(http://www.cisco.com/en/US/products/sw/iosswrel/ps5012/products_tech_no
te09186a00804446d0.shtml) 
  and check all advisories that came out or were updated after that 
release? 
(http://www.cisco.com/en/US/products/products_security_advisories_listin
g.html)

Just a thought :)

Laurens

------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute

Learn all of the latest penetration testing techniques in InfoSec
Institute's Ethical Hacking class. 
Totally hands-on course with evening Capture The Flag (CTF) exercises,
Certified Ethical Hacker and Certified Penetration Tester exams, taught
by an expert with years of real pen testing experience.

http://www.infosecinstitute.com/courses/ethical_hacking_training.html
------------------------------------------------------------------------



--- End Message ---
------------------------------------------------------------------------
This list is sponsored by: InfoSec Institute

Need to pass the CISSP? InfoSec Institute's CISSP Boot Camp in both Instructor-Led and Online formats is the most 
concentrated exam prep available. Comprehensive course materials and an expert instructor means you pass the exam. Gain 
a laser like insight into what is covered on the exam, with zero fluff! 

http://www.infosecinstitute.com/courses/cissp_bootcamp_training.html
------------------------------------------------------------------------

Current thread: