Full Disclosure mailing list archives

[Full-Disclosure] RE: Full-disclosure: JEPG Hype or Hope?


From: r00t3d <r00t3d () gmail com>
Date: Sun, 26 Sep 2004 22:20:29 -0700

Dear RandallM,

This exploit (if it can becalled that) took a lot of thought to
create it and exploit it.

Yea, lots of thought, and ripped shellcode to boot! Can't beat that can ya?

Correct me if I'm wrong but it does not fall in to the category
of "exploit" as defined by this list.

Okay, you're wrong.

This was truly a "created Exploit" 

Seriously? I didn't know exploits were "created" I always thought they
just appeared.

This is nothing more then a black-hat attack. It is not a meaningful
revealing of poor security as I've seen defined on this list.
Uh oh, are the blaqhats after us again?? I think we had all better
just pull our whitehats down over our heads and hope they go away. I
hear, if you don't move, the blaqhats won't notice you and will leave,
kind of like with bears. Anyways, last time I checked, it was't
blaqhats that disclosed exploits, it was whitehats and scene whores.

  Love,
   #MSNetworks

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: