Full Disclosure mailing list archives

openssl exploit code


From: solareclipse () phreedom org (Solar Eclipse)
Date: Mon, 16 Sep 2002 16:08:54 -0500

--6TrnltStXW4iwmi0
Content-Type: text/plain; charset=us-ascii
Content-Disposition: inline

On Mon, Sep 16, 2002 at 02:16:05PM -0600, Dave Ahmad wrote:
An exploit code that lists you as the author has been posted to Bugtraq.
I would like to request your permission before approving it for
distribution on the list.

And you call Bugtraq a full disclosure list?

Weak.

Since you asked, my answer is no. You do not have my permission
to post my source code to Bugtraq or anywhere on SecurityFocus,
Symantec or any affiliated site.

This also covers the source of the apache-ssl worm, which includes
substantial stolen parts of my exploit code, unless those parts are
properly removed.


Solar Eclipse

--6TrnltStXW4iwmi0
Content-Type: application/pgp-signature
Content-Disposition: inline

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.0.7 (GNU/Linux)

iD8DBQE9hkhlHwpl1ONrEbcRAvctAKCb0ppX6qMRN5v7gu0ABT3hp1QXOACeN+s6
cdSOU+28cMmIe7ExDrjUQtw=
=7+N2
-----END PGP SIGNATURE-----

--6TrnltStXW4iwmi0--


Current thread: