Full Disclosure mailing list archives

[Full-Disclosure] Re: hax0r target just because of silly autoresponder? (was: Nico Treu/METZLER ist außer Haus.)


From: Nick FitzGerald <nick () virus-l demon co uk>
Date: Mon, 16 Feb 2004 13:02:44 +1300

Valdis.Kletnieks () vt edu wrote:

And if MailMan wasn't configured to strip RFC822 headers, we'd also have a nice
hint as to exactly which patchlevel of the offending MUA/MTA the site was running,
so we could arm ourselves with suitable exploits.

And you don't think you'd get that information by sending him a message 
directly, expecting a vacation notice??

   Return-path: <NTreu () metzler com>
   [...]
   Received: from SMK2.metzler.com (smk2.metzler.com) by
    mail2.metzler.com (Content Technologies SMTPRS 4.3.6) with SMTP id
    <T67c3cbcda6d96e229a3c8 () mail2 metzler com> for
    <nick () virus-l demon co uk>; Sun, 15 Feb 2004 04:15:45 +0100
   Received: by SMK2.metzler.com(Lotus SMTP MTA v4.6.7  (934.1 12-30-
    1999))  id C1256E3B.001281E7 ; Sun, 15 Feb 2004 04:22:09 +0100
   X-Lotus-FromDomain: FRANKFURT
   From: NTreu () metzler com
   To: nick () virus-l demon co uk
   Message-ID: <C1256E3B.00128176.00 () SMK2 metzler com>
   Date: Sun, 15 Feb 2004 04:00:44 +0100
   Subject: =?iso-8859-1?Q?Nico_Treu/METZLER_ist_au=DFer_Haus.?=
   [...]

   Ich werde ab  13.02.2004 nicht im Büro sein. Ich kehre zurück am
   23.02.2004.

   Ich werde Ihre Nachrichten nach meiner Rückkehr beantworten.

   Mit freundlichen Grüssen


   Nico Treu


No surprises there then...


Regards,

Nick FitzGerald

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: