Full Disclosure: by author

641 messages starting Dec 28 07 and ending Dec 11 07
Date index | Thread index | Author index


3APA3A

Re: HP Photosmart vulnerabilities 3APA3A (Dec 28)

3lucid8

Re: Phioust gets all emotional to gobbles and friends... 3lucid8 (Dec 02)

Aaron Gray

Re: Vista's been hacked Aaron Gray (Dec 08)
Vista's been hacked Aaron Gray (Dec 08)
Re: Vista's been hacked Aaron Gray (Dec 08)
Re: Vista's been hacked Aaron Gray (Dec 08)
Re: Vista's been hacked Aaron Gray (Dec 08)

Aaron Katz

Re: Google / GMail bug, all accounts vulnerable Aaron Katz (Dec 07)
Re: Google / GMail bug, all accounts vulnerable Aaron Katz (Dec 11)
Re: Google / GMail bug, all accounts vulnerable Aaron Katz (Dec 07)
Fwd: Google / GMail bug, all accounts vulnerable Aaron Katz (Dec 07)

Abel Cheung

WordPress Charset SQL injection vulnerability (resend) Abel Cheung (Dec 10)
WordPress Charset SQL injection vulnerability Abel Cheung (Dec 10)

Adam N

Re: Small Design Bug in Postfix - REMOTE Adam N (Dec 14)

ad () heapoverflow com

Re: Sendmail/Postfix Storybook ad () heapoverflow com (Dec 15)
Re: Google / GMail bug, all accounts vulnerable ad () heapoverflow com (Dec 12)

Adrian P

Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) Adrian P (Dec 03)

advisory

R7-0031: JFreeChart Image Map Cross-Site Scripting Vulnerabilities advisory (Dec 06)

alessandro salvatori

Re: Google / GMail bug, all accounts vulnerable alessandro salvatori (Dec 07)
Re: Certificate spoofing issue with Mozilla, Konqueror, Safari 2 Alexander Klink (Dec 05)

Andrew A

Re: Google / GMail bug, all accounts vulnerable Andrew A (Dec 12)
Re: Full-Disclosure Digest, Vol 34, Issue 31 Andrew A (Dec 13)
THE BIG ONE Andrew A (Dec 28)
Re: For Christmas.. Andrew A (Dec 20)
Re: Google / GMail bug, all accounts vulnerable Andrew A (Dec 12)
Re: Google / GMail bug, all accounts vulnerable Andrew A (Dec 12)

Andrew Farmer

Re: The Cookie Tools v0.3 -- first public release Andrew Farmer (Dec 10)
Re: here Andrew Farmer (Dec 20)

Ashly A K

Re: Google / GMail bug, all accounts vulnerable It's just stopped working for me. Ashly A K (Dec 08)

avivra

Google Toolbar Dialog Spoofing Vulnerability avivra (Dec 18)

Ben

Re: Hikaru Ben (Dec 21)
Hellsing Ben (Dec 28)
Hikaru Ben (Dec 21)
Blog Entry of Interest Ben (Dec 31)

Bernhard Mueller

SEC Consult SA-20071204-0 :: SonicWALL Global VPN Client Format String Vulnerability Bernhard Mueller (Dec 04)

Bill Weiss

Re: pcap flow extraction Bill Weiss (Dec 09)

Billy . Hoffman

Web Beam, the new concept web application penetration testing tool Billy . Hoffman (Dec 02)

blackredyellow

Re: New TV show "Tiger Team": social engineering, wired/wireless hacking, physical break-in blackredyellow (Dec 26)
New TV show "Tiger Team": social engineering, wired/wireless hacking, physical break-in blackredyellow (Dec 17)
Re: New TV show "Tiger Team": social engineering, wired/wireless hacking, physical break-in blackredyellow (Dec 18)

Bob Bruen

Re: Anyone have a reason for 2x the email flow today? Bob Bruen (Dec 05)
Re: [Professional IT Security Providers - Exposed] QuietMove ( D - ) Bob Bruen (Dec 31)

Byron Sonne

Re: on xss and its technical merit Byron Sonne (Dec 12)
Re: on xss and its technical merit Byron Sonne (Dec 12)
Re: on xss and its technical merit Byron Sonne (Dec 12)
Re: on xss and its technical merit Byron Sonne (Dec 13)

c0redump

Re: [Professional IT Security Providers-Exposed] Cybertrust ( C + ) c0redump (Dec 20)
Re: [Professional IT Security Providers -Exposed] Cybertrust ( C + ) c0redump (Dec 20)

carl hardwick

Firefox 2.0.0.11 File Focus Stealing vulnerability carl hardwick (Dec 01)

Christopher Abad

Re: Google / GMail bug, all accounts vulnerable Christopher Abad (Dec 12)
Re: gimp sc, and evilness Christopher Abad (Dec 13)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Application Inspection Vulnerability in Cisco Firewall Services Module Cisco Systems Product Security Incident Response Team (Dec 19)
Cisco Security Advisory: Cisco Security Agent for Windows System Driver Remote Buffer Overflow Vulnerability Cisco Systems Product Security Incident Response Team (Dec 05)

Clay Seaman-Kossmey

Re: Cisco Phone 7940 remote DOS Clay Seaman-Kossmey (Dec 07)

Clifton Bennett

Troy Riser Clifton Bennett (Dec 28)

cocoruder

[UPDATE]CA BrightStor ARCServe BackUp Message Engine Remote Stack Overflow Vulnerability cocoruder (Dec 05)

Code Audit Labs

Re: [UPDATE]CA BrightStor ARCServe BackUp Message Engine Remote Stack Overflow Vulnerability Code Audit Labs (Dec 05)

coderman

Re: [Professional IT Security Reviewers - Exposed] SecReview ( F - ) coderman (Dec 20)
Re: GOBBLES or n3td3v coderman (Dec 05)
Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) coderman (Dec 02)
Re: Signature or checksum? (was: MD5 considered harmful) coderman (Dec 01)
Re: Compromise of Tor, anonymizing networks/utilities coderman (Dec 08)
Re: Google / GMail bug, all accounts vulnerable coderman (Dec 12)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) coderman (Dec 20)
Re: High Value Target Selection coderman (Dec 01)
Re: Vulnerability Difficulty, Finesse of Implementation, Moral Character coderman (Dec 12)
Re: Google / GMail bug, all accounts vulnerable coderman (Dec 12)
Re: Google / GMail bug, all accounts vulnerable coderman (Dec 12)
Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) coderman (Dec 02)
Re: The Cookie Tools v0.3 -- first public release coderman (Dec 10)
Re: Captive Portal bypassing coderman (Dec 10)
Re: Compromise of Tor, anonymizing networks/utilities coderman (Dec 08)
Re: Google / GMail bug, all accounts vulnerable coderman (Dec 12)
Re: Fwd: Chat with Dude VanWinkle coderman (Dec 23)
Re: Security of online casinos coderman (Dec 20)
Re: Google / GMail bug, all accounts vulnerable coderman (Dec 12)
Re: Google / GMail bug, all accounts vulnerable coderman (Dec 12)
Re: Compromise of Tor, anonymizing networks/utilities coderman (Dec 08)
Re: Google / GMail bug, all accounts vulnerable coderman (Dec 11)
Re: on xss and its technical merit coderman (Dec 12)
Re: Thomas Ptacek and Wikipedia coderman (Dec 15)
Re: Compromise of Tor, anonymizing networks/utilities coderman (Dec 08)
Re: Hikaru coderman (Dec 21)
Re: Webwasher SSL scanner coderman (Dec 24)
Re: Google / GMail bug, all accounts vulnerable coderman (Dec 11)
Webwasher SSL scanner coderman (Dec 24)
Re: Captive Portal bypassing coderman (Dec 11)
Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) coderman (Dec 02)
Re: Captive Portal bypassing coderman (Dec 11)
Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) coderman (Dec 01)
Re: Compromise of Tor, anonymizing networks/utilities coderman (Dec 08)
Re: MD5 algorithm considered toxic (and harmful) coderman (Dec 01)
Re: [Full-disclosure] b0b27a223b66678f24aec254366526d7910d0f38679f6478804c7480d2271ce9 [was: TCP Port randomization paper] coderman (Dec 06)
Re: Thomas Ptacek and Wikipedia coderman (Dec 15)

Collin Jackson

CVE-2007-6244: Adobe Flash Player ActiveX Control Universal Cross-Site Scripting Vulnerability Collin Jackson (Dec 19)

crazy frog crazy frog

Re: hey irmplc crazy frog crazy frog (Dec 23)
Re: New TV show "Tiger Team": social engineering, wired/wireless hacking, physical break-in crazy frog crazy frog (Dec 29)

damncon

Re: iFriends free video chat exploit damncon (Dec 28)
Re: Uber Lamer Ass of the Year. Vote! damncon (Dec 23)
Re: iFriends free video chat exploit damncon (Dec 28)
[Professional IT Security Reviewers - Exposed] SecReview ( A + ) damncon (Dec 21)
Re: iFriends free video chat exploit damncon (Dec 29)

Dancho Danchev

Phishing Metamorphosis in 2007 - Trends and Developments Dancho Danchev (Dec 12)

dann frazier

[SECURITY] [DSA 1428-2] New Linux 2.6.18 packages fix several vulnerabilities dann frazier (Dec 12)
[SECURITY] [DSA 1436-1] New Linux 2.6.18 packages fix several vulnerabilities dann frazier (Dec 20)
[SECURITY] [DSA 1481-1] New Linux 2.6.18 packages fix several vulnerabilities dann frazier (Dec 11)

Dave "No, not that one" Korn

Re: usb shorting to ground Dave "No, not that one" Korn (Dec 30)

dev code

Rosoft Media Player <= 4.1.7 .M3U Stack Overflow dev code (Dec 18)

disfigure

rIP BETA - reverse IP tool disfigure (Dec 27)

don bailey

Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) don bailey (Dec 20)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) don bailey (Dec 20)

dripping

Re: Vista's been hacked dripping (Dec 08)
Re: (no subject) dripping (Dec 09)
Re: (no subject) dripping (Dec 09)
Re: Vista's been hacked dripping (Dec 08)
Re: (no subject) dripping (Dec 09)
Re: (no subject) dripping (Dec 08)
Re: Vista's been hacked dripping (Dec 08)
Re: (no subject) dripping (Dec 09)
Re: (no subject) dripping (Dec 09)
Re: Vista's been hacked dripping (Dec 08)

Dude VanWinkle

Re: Professional IT Security Service Providers - Exposed Dude VanWinkle (Dec 05)
Re: Fwd: Websense 6.3.1 Filtering Bypass Dude VanWinkle (Dec 13)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) Dude VanWinkle (Dec 20)
Re: Anyone have a reason for 2x the email flow today? Dude VanWinkle (Dec 05)
Re: need help in managing administrators Dude VanWinkle (Dec 05)
Re: Anyone have a reason for 2x the email flow today? Dude VanWinkle (Dec 05)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Dude VanWinkle (Dec 12)
Anyone have a reason for 2x the email flow today? Dude VanWinkle (Dec 03)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Dude VanWinkle (Dec 12)
Re: Anyone have a reason for 2x the email flow today? Dude VanWinkle (Dec 05)
Re: SCADA refresher Dude VanWinkle (Dec 03)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Dude VanWinkle (Dec 12)
Re: need help in managing administrators Dude VanWinkle (Dec 02)
Re: Anyone have a reason for 2x the email flow today? Dude VanWinkle (Dec 03)
Re: Flash that simulates virus scan Dude VanWinkle (Dec 09)
Re: need help in managing administrators Dude VanWinkle (Dec 05)
Re: need help in managing administrators Dude VanWinkle (Dec 05)
Re: need help in managing administrators Dude VanWinkle (Dec 03)
Re: Web Beam, the new concept web application penetration testing tool Dude VanWinkle (Dec 03)

Ed Carp

Re: Google / GMail bug, all accounts vulnerable Ed Carp (Dec 07)

elazar

Persits Software XUpload Control Buffer Overflow Exploit elazar (Dec 28)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) elazar (Dec 20)
IBM Domino Web Access Upload Module dwa7w.dll SEH Overwrite Exploit elazar (Dec 30)
Installshield isusweb.dll Buffer Overflow Exploit elazar (Dec 30)
IBM Domino Web Access Upload Module inotes6w.dll SEH Overwrite Exploit elazar (Dec 31)
Re: For Christmas.. elazar (Dec 21)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) elazar (Dec 20)
IBM Domino Web Access inotes6.dll SEH Overwrite Exploit elazar (Dec 30)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) elazar (Dec 20)

Elazar Broad

Persits Software XUpload.ocx Buffer Overflow Elazar Broad (Dec 25)
AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows Elazar Broad (Dec 25)
Persits Software XUpload Control AddFolder() Buffer Overflow Exploit Elazar Broad (Dec 28)
Re: AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows Elazar Broad (Dec 26)
Re: SCADA refresher Elazar Broad (Dec 03)
Re: AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows Elazar Broad (Dec 27)
Installshield Update Service isusweb.dll Buffer Overflow Elazar Broad (Dec 24)
Re: AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows Elazar Broad (Dec 26)
HP eSupportDiagnostics hpediags.dll Information Disclosure Elazar Broad (Dec 19)
Yahoo Toolbar YShortcut.dll IsTaggedBM() Buffer Overflow Elazar Broad (Dec 19)
IBM Domino Web Access Upload Control dwa7w.dll Memory Corruption Elazar Broad (Dec 20)

Enno Rey

Re: MD5 algorithm considered toxic (and harmful) Enno Rey (Dec 01)

Epic

Re: [Professional IT Security Providers -Exposed] Cybertrust ( C + ) Epic (Dec 20)
Re: Small Design Bug in Postfix - REMOTE Epic (Dec 14)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) Epic (Dec 20)

Eric Rachner

Bypassing group policy Eric Rachner (Dec 02)

evilrabbi

Re: Vista's been hacked evilrabbi (Dec 08)

Eyüp Aydin

(no subject) Eyüp Aydin (Dec 23)

fabio

Re: Sendmail/Postfix Storybook fabio (Dec 15)

Fernando Gont

Re: TCP Port randomization paper Fernando Gont (Dec 11)
TCP Port randomization paper Fernando Gont (Dec 06)
Re: TCP Port randomization paper Fernando Gont (Dec 07)

Fetch, Brandon

Re: Compromise of Tor, anonymizing networks/utilities Fetch, Brandon (Dec 08)

Florian Weimer

[SECURITY] [DSA 1438-1] New tar packages fix several vulnerabilities Florian Weimer (Dec 28)

Fredrick Diggle

Re: on xss and its technical merit Fredrick Diggle (Dec 13)
Re: on xss and its technical merit Fredrick Diggle (Dec 12)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) Fredrick Diggle (Dec 20)
Re: Small Design Bug in Postfix - REMOTE Fredrick Diggle (Dec 13)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Fredrick Diggle (Dec 12)
Re: Sendmail/Postfix FORWARD Remote Exploit Fredrick Diggle (Dec 13)
Re: on xss and its technical merit Fredrick Diggle (Dec 13)
Re: on xss and its technical merit Fredrick Diggle (Dec 12)
Re: on xss and its technical merit Fredrick Diggle (Dec 13)
Re: Sendmail/Postfix FORWARD Remote Exploit Fredrick Diggle (Dec 13)
Re: on xss and its technical merit Fredrick Diggle (Dec 13)
[FDSA] The Internet - Version 4 - Multiple Remotely Exploitable Critical Security Vulnerabilities Fredrick Diggle (Dec 14)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) Fredrick Diggle (Dec 20)
Re: on xss and its technical merit Fredrick Diggle (Dec 12)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Fredrick Diggle (Dec 13)
[FDSA] Multiple Vulnerabilities in Fred Diggle Software Foundation Execve Exploit Fredrick Diggle (Dec 14)

fukami

Re: Design flaw in AS3 socket handling allows port probing fukami (Dec 20)

gjgowey

Re: Anyone have a reason for 2x the email flow today? gjgowey (Dec 03)

gmaggro

Re: High Value Target Selection gmaggro (Dec 01)
Re: High Value Target Selection gmaggro (Dec 01)
Re: SCADA refresher gmaggro (Dec 04)
Re: Compromise of Tor, anonymizing networks/utilities gmaggro (Dec 08)
Captive Portal bypassing gmaggro (Dec 10)
Re: Captive Portal bypassing gmaggro (Dec 10)
Compromise of Tor, anonymizing networks/utilities gmaggro (Dec 08)
Re: High Value Target Selection gmaggro (Dec 01)
Re: Captive Portal bypassing gmaggro (Dec 11)
Re: Compromise of Tor, anonymizing networks/utilities gmaggro (Dec 08)
BackTrack3 beta gmaggro (Dec 16)
SCADA refresher gmaggro (Dec 02)
Re: High Value Target Selection gmaggro (Dec 06)
Re: Captive Portal bypassing gmaggro (Dec 10)
For Christmas.. gmaggro (Dec 19)
Re: For Christmas.. gmaggro (Dec 20)

Gobbles is back

more gobbles .. Gobbles is back (Dec 14)
Phioust is now getting really emotional ... Gobbles is back (Dec 01)
Phioust gets all emotional to gobbles and friends ... Gobbles is back (Dec 01)
Phioust is dead, long live Matasano !!! Gobbles is back (Dec 03)
GOBBLE ALERT FOR PEOPLES !! Gobbles is back (Dec 06)
Thomas Ptacek and Wikipedia Gobbles is back (Dec 15)
Phioust is now getting really emotional ... Gobbles is back (Dec 01)

Goebbels Amadeus

Hell Camp: A Terrifying Story of Lies and Middle-Men Goebbels Amadeus (Dec 01)

GomoR

Re: pcap flow extraction, Net::Frame is your friend GomoR (Dec 06)

Guasconi Vincent

Re: For Christmas.. Guasconi Vincent (Dec 20)

guiness . stout

Re: [Professional IT Security Providers -Exposed] Cybertrust ( C + ) guiness . stout (Dec 20)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) guiness . stout (Dec 20)
Appian Enterprise Business Suite 5.6 SP1 is vulnerable to a guiness . stout (Dec 17)

gwen hastings

trolls and procmail Re: [Professional IT Security Reviewers - Exposed] SecReview ( A + ) gwen hastings (Dec 22)

Ham Beast

Re: 0day XSS for MPAA.org Ham Beast (Dec 05)

Hanno Böck

CVE-2007-6205 Hanno Böck (Dec 10)

happy nino

need help in managing administrators happy nino (Dec 02)
Re: need help in managing administrators happy nino (Dec 05)

HASEGAWA Yosuke

XSS with UTF-7 in Google HASEGAWA Yosuke (Dec 27)

H D Moore

Windows XP SP2 - SP3 Compatible Return Addresses H D Moore (Dec 19)
Windows XP SP3 - DCERPC Changes H D Moore (Dec 19)

Hernan Ochoa

Release uhooker v1.3 Hernan Ochoa (Dec 17)

Hubbard, Dan

Re: Fwd: Websense 6.3.1 Filtering Bypass Hubbard, Dan (Dec 13)
Re: Fwd: Websense 6.3.1 Filtering Bypass Hubbard, Dan (Dec 13)

Humberto Abdelnur

Re: Nokia N95 cellphone remote DoS using the SIP Stack Humberto Abdelnur (Dec 06)

I. D.

Re: SCADA refresher I. D. (Dec 03)

iDefense Labs

iDefense Security Advisory 12.11.07: Microsoft DirectX 7 and 8 DirectShow Stack Buffer Overflow Vulnerability iDefense Labs (Dec 12)
iDefense Security Advisory 12.11.07: Microsoft Internet Explorer JavaScript setExpression Heap Corruption Vulnerability iDefense Labs (Dec 12)
iDefense Security Advisory 12.18.07: ClamAV libclamav MEW PE File Integer Overflow Vulnerability iDefense Labs (Dec 18)
iDefense Security Advisory 12.17.07: Apple Mac OS X mount_smbfs Stack Based Buffer Overflow Vulnerability iDefense Labs (Dec 18)

Ifriends Exploit

iFriends free video chat exploit Ifriends Exploit (Dec 28)

IRM Research

PGMfuzz - a tool for testing Pragmatic General Multicast protocol implementations IRM Research (Dec 11)
TIBCO Rendezvous Exploitation Video IRM Research (Dec 04)

ISR-noreply

[ISR] - Novell Groupwise client remote stack overflow silently patched. ISR-noreply (Dec 14)

Ivan .

Re: pcap flow extraction Ivan . (Dec 09)
pcap flow extraction Ivan . (Dec 05)

James C. Slora Jr.

Re: Anyone have a reason for 2x the email flow today? James C. Slora Jr. (Dec 05)

James Matthews

Re: MD5 algorithm considered toxic (and harmful) James Matthews (Dec 01)
Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) James Matthews (Dec 02)
Re: Blog Entry of Interest James Matthews (Dec 31)
Re: New TV show "Tiger Team": social engineering, wired/wireless hacking, physical break-in James Matthews (Dec 27)
Re: need help in managing administrators James Matthews (Dec 02)

Jamie Strandboge

[USN-557-1] GD library vulnerability Jamie Strandboge (Dec 18)
[USN-559-1] MySQL vulnerabilities Jamie Strandboge (Dec 20)
[USN-554-1] teTeX and TeX Live vulnerabilities Jamie Strandboge (Dec 06)
[USN-551-1] OpenLDAP vulnerabilities Jamie Strandboge (Dec 03)

Jason

Re: The Cookie Tools v0.3 -- first public release Jason (Dec 10)

Jay

Re: on xss and its technical merit Jay (Dec 12)
Re: on xss and its technical merit Jay (Dec 13)
Re: New TV show "Tiger Team": social engineering, wired/wireless hacking, physical break-in Jay (Dec 27)
Re: on xss and its technical merit Jay (Dec 12)

Jerry L. Ivey

Re: Anyone have a reason for 2x the email flow today? Jerry L. Ivey (Dec 05)

jf

Re: Compromise of Tor, anonymizing networks/utilities jf (Dec 08)
Re: Compromise of Tor, anonymizing networks/utilities jf (Dec 08)
Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) jf (Dec 02)
Re: Flash that simulates virus scan jf (Dec 09)

Jim Popovitch

Re: Small Design Bug in Postfix - REMOTE Jim Popovitch (Dec 13)

jipe foo

Re: Google / GMail bug, all accounts vulnerable jipe foo (Dec 12)

jkouns

OSVDB 2.0 RELEASED jkouns (Dec 17)

jmoss

Black Hat Briefings Call for Papers jmoss (Dec 11)

Joao Inacio

Re: on xss and its technical merit Joao Inacio (Dec 12)

Joel R. Helgeson

Re: need help in managing administrators Joel R. Helgeson (Dec 02)

Joey Mengele

Re: SCADA refresher Joey Mengele (Dec 04)
Re: Sendmail/Postfix FORWARD Remote Exploit Joey Mengele (Dec 14)
Re: Anyone have a reason for 2x the email flow today? Joey Mengele (Dec 03)

John Cartwright

List Charter John Cartwright (Dec 11)

John Kinsella

Re: pcap flow extraction John Kinsella (Dec 06)

Jonathan Smith

Re: MIT Kerberos 5: Multiple vulnerabilities Jonathan Smith (Dec 07)

J. Oquendo

Re: on xss and its technical merit J. Oquendo (Dec 12)

Joseph Hick

Re: Google / GMail bug, all accounts vulnerable Joseph Hick (Dec 07)

Joseph Pierini

HackerSafe Labs - Security Advisory - Xigla Absolute Banner Manager v4.0 Joseph Pierini (Dec 06)

Joshua Levitsky

Re: HP Photosmart vulnerabilities Joshua Levitsky (Dec 28)
Re: HP Photosmart vulnerabilities Joshua Levitsky (Dec 28)

Juan Galiana

FAQMasterFlexPlus multiple vulnerabilities Juan Galiana (Dec 27)
OpenBiblio 0.5.2-pre4 and prior multiple vulnerabilities Juan Galiana (Dec 27)

Juergen Marester

0day to sell Juergen Marester (Dec 11)

Juha-Matti Laurio

Re: Firefox 2.0.0.11 File Focus Stealing vulnerability Juha-Matti Laurio (Dec 01)
Re: Firefox 2.0.0.11 File Focus Stealing vulnerability Juha-Matti Laurio (Dec 01)
The recent number of unpatched QuickTime flaws is: two Juha-Matti Laurio (Dec 04)
Re: Firefox 2.0.0.11 File Focus Stealing vulnerability Juha-Matti Laurio (Dec 02)

Just1n T1mberlake

Re: Small Design Bug in Postfix - REMOTE Just1n T1mberlake (Dec 13)

kcope

Small Design Bug in Postfix - REMOTE kcope (Dec 13)
Sendmail/Postfix FORWARD Remote Exploit kcope (Dec 13)
Watching You kcope (Dec 20)
Watching You Well - - kcope (Dec 20)
Re: Small Design Bug in Postfix - REMOTE kcope (Dec 13)
Sendmail/Postfix Storybook kcope (Dec 15)

Kees Cook

[USN-550-3] Cairo regression Kees Cook (Dec 12)
[USN-552-1] Perl vulnerability Kees Cook (Dec 04)
[USN-558-1] Linux kernel vulnerabilities Kees Cook (Dec 19)
[USN-555-1] e2fsprogs vulnerability Kees Cook (Dec 07)
[USN-553-1] Mono vulnerability Kees Cook (Dec 04)
[USN-550-1] Cairo vulnerability Kees Cook (Dec 03)
[USN-549-2] PHP regression Kees Cook (Dec 03)
[USN-556-1] Samba vulnerability Kees Cook (Dec 18)
[USN-550-2] Cairo regression Kees Cook (Dec 10)
[USN-546-2] Firefox regression Kees Cook (Dec 04)

Kevin Pawloski

Re: Security of online casinos Kevin Pawloski (Dec 21)

Kosala Atapattu

Re: Anyone have a reason for 2x the email flow today? Kosala Atapattu (Dec 05)

Kristian Erik Hermansen

Re: Google / GMail bug, all accounts vulnerable Kristian Erik Hermansen (Dec 11)
Re: Google / GMail bug, all accounts vulnerable Kristian Erik Hermansen (Dec 12)
0day XSS for MPAA.org Kristian Erik Hermansen (Dec 04)
Re: Google / GMail bug, all accounts vulnerable Kristian Erik Hermansen (Dec 07)
Re: Google / GMail bug, all accounts vulnerable Kristian Erik Hermansen (Dec 07)
Re: 0day XSS for MPAA.org Kristian Erik Hermansen (Dec 05)
Re: Signature or checksum? Kristian Erik Hermansen (Dec 02)
Re: Google / GMail bug, all accounts vulnerable Kristian Erik Hermansen (Dec 11)
MD5 algorithm considered toxic (and harmful) Kristian Erik Hermansen (Dec 01)
Re: Full-Disclosure Digest, Vol 34, Issue 31 Kristian Erik Hermansen (Dec 13)
Google / GMail bug, all accounts vulnerable Kristian Erik Hermansen (Dec 06)
Internet Explorer Vuln Report, Debunked [Jeff R. Jones is becoming FUD-master] Kristian Erik Hermansen (Dec 04)
Re: Full-Disclosure Digest, Vol 34, Issue 31 Kristian Erik Hermansen (Dec 12)
Re: MD5 algorithm considered toxic (and harmful) Kristian Erik Hermansen (Dec 01)

Kurt Dillard

Re: [Professional IT Security Providers -Exposed] Cybertrust ( C + ) Kurt Dillard (Dec 20)
Re: [Professional IT Security Reviewers - Exposed] SecReview ( F - ) Kurt Dillard (Dec 20)
Re: [Professional IT Security Reviewers - Exposed] SecReview ( A + ) Kurt Dillard (Dec 21)

Lamer Buster

SecNiche Garbage Dumps on mailinglists Lamer Buster (Dec 04)

Lebbeous Weekley

[SECURITY] [DSA 1430-1] New libnss-ldap packages fix denial of service Lebbeous Weekley (Dec 11)

Liquidmatrix Security Digest

CiscoWorks Server XSS Vulnerability Liquidmatrix Security Digest (Dec 05)
Advisory: Websense XSS Vulnerability Liquidmatrix Security Digest (Dec 10)

Lolek of TK53

TK53 Advisory #2: Multiple vulnerabilities in ClamAV Lolek of TK53 (Dec 30)
TK53 Advisory #2: Multiple vulnerabilities in ClamAV Lolek of TK53 (Dec 30)
TK53 Advisory #2: Multiple vulnerabilities in ClamAV Lolek of TK53 (Dec 30)

lsi

Inside the "Ron Paul" Spam Botnet lsi (Dec 05)

Luigi Auriemma

Double directory traversal in ImgSvr 0.6.21 Luigi Auriemma (Dec 24)
Heap overflow in PeerCast 0.1217 Luigi Auriemma (Dec 17)
Buffer-overflow in Extended Module Player 2.5.1 Luigi Auriemma (Dec 27)
Unicode buffer-overflow in Zoom Player 6.00b2 Luigi Auriemma (Dec 24)
Multiple vulnerabilities in Firefly Media Server (mt-daapd) 2.4.1 / SVN 1699 Luigi Auriemma (Dec 07)
Buffer-overflow in WinUAE 1.4.4 Luigi Auriemma (Dec 21)
Array overflow in id3lib (devel CVS) Luigi Auriemma (Dec 19)
Buffer-overflow and format string in VideoLAN VLC 0.8.6d Luigi Auriemma (Dec 24)
Multiple vulnerabilities in BarracudaDrive 3.7.2 Luigi Auriemma (Dec 10)
Upload directory traversal in Easy File Sharing 4.5 Luigi Auriemma (Dec 07)
Multiple vulnerabilities in Feng 0.1.15 Luigi Auriemma (Dec 27)
Two vulnerabilities in Simple HTTPD 1.38 Luigi Auriemma (Dec 07)
Multiple vulnerabilities in BadBlue 2.72b Luigi Auriemma (Dec 10)
Buffer-overflow in CoolPlayer 217 Luigi Auriemma (Dec 28)
Filesystem access in DOSBox 0.72 Luigi Auriemma (Dec 10)
Limited upload directory traversal in HTTP File Server 2.2a / 2.3 beta (build #146) Luigi Auriemma (Dec 07)
Multiple vulnerabilities in libnemesi 0.6.4-rc1 Luigi Auriemma (Dec 27)

Major Malfunction

DC4420 - London DEFCON chapter Christmas Party - 11th December Major Malfunction (Dec 01)

Makousky, Steve C

unsubscribe full-disclosure Makousky, Steve C (Dec 03)

Maloney, Michael

Re: Anyone have a reason for 2x the email flow today? Maloney, Michael (Dec 04)

Marc Ruef

httprecon project Marc Ruef (Dec 11)

Martin Schulze

[SECURITY] [DSA 1421-1] New wesnoth packages fix arbitrary file disclosure Martin Schulze (Dec 06)
[SECURITY] [DSA 1419-1] New OpenOffice.org packages fix arbitrary Java code execution Martin Schulze (Dec 05)

Mati Aharoni

BackTrack 3 Beta Released Mati Aharoni (Dec 14)
BackTrack 3 Beta Released Mati Aharoni (Dec 14)

Matteo G.

Security of online casinos Matteo G. (Dec 20)

Matthew Hall

Re: For Christmas.. Matthew Hall (Dec 20)

M . B . Jr .

Re: Google / GMail bug, all accounts vulnerable M . B . Jr . (Dec 07)

Michael Evanchik

AOL Instant Messenger AIM 6.0 or 6.5 Beta or higher local zone XSS Michael Evanchik (Dec 21)

Michael Neal Vasquez

Checkpoint security email Michael Neal Vasquez (Dec 13)

Michal Majchrowicz

XSS in YouTube.com Michal Majchrowicz (Dec 14)
Re: XSS in YouTube.com Michal Majchrowicz (Dec 17)

Micheal Espinola Jr

Re: THE BIG ONE Micheal Espinola Jr (Dec 28)

michele dallachiesa

The Cookie Tools v0.3 -- first public release michele dallachiesa (Dec 10)

Mike Vasquez

Re: [Professional IT Security Reviewers - Exposed] SecReview ( F - ) Mike Vasquez (Dec 20)
Re: [Professional IT Security Providers -Exposed] Cybertrust ( C + ) Mike Vasquez (Dec 20)
Re: [Professional IT Security Providers - Exposed] Audit Serve, Inc. ( F- ) Mike Vasquez (Dec 18)

Moritz Muehlenhoff

[SECURITY] [DSA 1425-1] New xulrunner packages fix several vulnerabilities Moritz Muehlenhoff (Dec 08)
[SECURITY] [DSA 1435-1] New clamav packages fix several vulnerabilities Moritz Muehlenhoff (Dec 19)
[SECURITY] [DSA 1440-1] New inotify-tools packages fix arbitrary code execution Moritz Muehlenhoff (Dec 28)
[SECURITY] [DSA 1442-2] New libsndfile packages fix arbitrary code execution Moritz Muehlenhoff (Dec 28)
[SECURITY] [DSA 1424-1] New iceweasel packages fix several vulnerabilities Moritz Muehlenhoff (Dec 08)
[SECURITY] [DSA 1426-1] New qt-x11-free packages fix several vulnerabilities Moritz Muehlenhoff (Dec 08)
[SECURITY] [DSA 1427-1] New samba packages fix arbitrary code execution Moritz Muehlenhoff (Dec 10)
[SECURITY] [DSA 1437-1] New cupsys packages fix several vulnerabilities Moritz Muehlenhoff (Dec 26)
[SECURITY] [DSA 1417-1] New asterisk packages fix SQL injection Moritz Muehlenhoff (Dec 02)

Morning Wood

Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Morning Wood (Dec 11)
Re: on xss and its technical merit Morning Wood (Dec 13)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Morning Wood (Dec 12)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Morning Wood (Dec 13)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability Morning Wood (Dec 13)

Mo.Ron Hubbard

Re: HP Photosmart vulnerabilities Mo.Ron Hubbard (Dec 28)
Re: THE BIG ONE Mo.Ron Hubbard (Dec 28)
Re: Troy Riser Mo.Ron Hubbard (Dec 28)

Mukul Dharwadkar

Re: Google / GMail bug, all accounts vulnerable Mukul Dharwadkar (Dec 07)

Narf Dude

NoseRub Login SQL Injection Vulnerability Narf Dude (Dec 28)

Nate McFeters

Re: Firefox 2.0.0.11 File Focus Stealing vulnerability Nate McFeters (Dec 01)
Re: [Professional IT Security Reviewers - Exposed] SecReview ( A + ) Nate McFeters (Dec 21)

Nick FitzGerald

Re: need help in managing administrators Nick FitzGerald (Dec 05)
Re: Google / GMail bug, all accounts vulnerable Nick FitzGerald (Dec 11)

nnp

Re: Nokia N95 cellphone remote DoS using the SIP Stack nnp (Dec 05)

onion ring

Re: here onion ring (Dec 20)
here onion ring (Dec 20)

Paul Melson

Re: [Professional IT Security Providers - Exposed] Denim Group ( A - ) Paul Melson (Dec 16)
Re: [Professional IT Security Reviewers - Exposed] SecReview ( F - ) Paul Melson (Dec 21)

Paul Schmehl

Re: need help in managing administrators Paul Schmehl (Dec 02)
Re: MD5 algorithm considered toxic (and harmful) Paul Schmehl (Dec 01)

Paul Szabo

Firefox explicit charset inheritance Paul Szabo (Dec 01)
Firefox UTF-7 Universal XSS Paul Szabo (Dec 04)

pdp (architect)

Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) pdp (architect) (Dec 02)

Peter Besenbruch

Re: Captive Portal bypassing Peter Besenbruch (Dec 10)
Re: Compromise of Tor, anonymizing networks/utilities Peter Besenbruch (Dec 09)
Re: Compromise of Tor, anonymizing networks/utilities Peter Besenbruch (Dec 08)
Re: Google / GMail bug, all accounts vulnerable Peter Besenbruch (Dec 12)
Re: Google / GMail bug, all accounts vulnerable Peter Besenbruch (Dec 12)

Peter Dawson

Re: [Professional IT Security Providers -Exposed] Cybertrust ( C + ) Peter Dawson (Dec 20)
Re: [Professional IT Security Providers - Exposed] Denim Group ( A - ) Peter Dawson (Dec 14)

php0t

Re: Fwd: Chat with Dude VanWinkle php0t (Dec 21)

Pierre-Yves Rofes

[ GLSA 200712-04 ] Cairo: User-assisted execution of arbitrary code Pierre-Yves Rofes (Dec 09)
[ GLSA 200712-08 ] AMD64 x86 emulation Qt library: Multiple vulnerabilities Pierre-Yves Rofes (Dec 09)
[ GLSA 200712-05 ] PEAR::MDB2: Information disclosure Pierre-Yves Rofes (Dec 09)
[ GLSA 200712-25 ] OpenOffice.org: User-assisted arbitrary code execution Pierre-Yves Rofes (Dec 30)
[ GLSA 200712-16 ] Exiv2: Integer overflow Pierre-Yves Rofes (Dec 29)
[ GLSA 200712-02 ] Cacti: SQL injection Pierre-Yves Rofes (Dec 05)
[ GLSA 200712-06 ] Firebird: Multiple buffer overflows Pierre-Yves Rofes (Dec 09)
[ GLSA 200712-09 ] Ruby-GNOME2: Format string error Pierre-Yves Rofes (Dec 09)
[ GLSA 200712-17 ] exiftags: Multiple vulnerabilities Pierre-Yves Rofes (Dec 29)
[ GLSA 200712-11 ] Portage: Information disclosure Pierre-Yves Rofes (Dec 13)
UPDATE: [ GLSA 200711-29 ] Samba: Execution of arbitrary code Pierre-Yves Rofes (Dec 05)
[ GLSA 200712-01 ] Hugin: Insecure temporary file creation Pierre-Yves Rofes (Dec 05)
[ GLSA 200712-22 ] Opera: Multiple vulnerabilities Pierre-Yves Rofes (Dec 30)
[ GLSA 200712-10 ] Samba: Execution of arbitrary code Pierre-Yves Rofes (Dec 10)
[ GLSA 200712-07 ] Lookup: Insecure temporary file creation Pierre-Yves Rofes (Dec 09)
[ GLSA 200712-03 ] GNU Emacs: Multiple vulnerabilities Pierre-Yves Rofes (Dec 09)
[ GLSA 200712-12 ] IRC Services: Denial of Service Pierre-Yves Rofes (Dec 13)
[ GLSA 200712-15 ] libexif: Multiple vulnerabilities Pierre-Yves Rofes (Dec 29)

pons.alt

Re: XSS in YouTube.com pons.alt (Dec 16)

Porco Graxa

Re: Google / GMail bug, all accounts vulnerable Porco Graxa (Dec 11)

Radu State

Nokia N95 cellphone remote DoS using the SIP Stack Radu State (Dec 05)
Cisco Phone 7940 remote DOS Radu State (Dec 05)

Randal, Phil

Re: Firefox 2.0.0.11 File Focus Stealing vulnerability Randal, Phil (Dec 01)

Randal T. Rioux

Re: [Professional IT Security Providers - Exposed]QuietMove ( D - ) Randal T. Rioux (Dec 31)

Randy Mueller

Re: Full-Disclosure Digest, Vol 34, Issue 1 Randy Mueller (Dec 01)

reepex

Re: TCP Port randomization paper reepex (Dec 08)
Fwd: beyond security sucks at coding reepex (Dec 28)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) reepex (Dec 20)
Re: Flash that simulates virus scan reepex (Dec 09)
Re: High Value Target Selection reepex (Dec 03)
Re: Nokia N95 cellphone remote DoS using the SIP Stack reepex (Dec 05)
Re: [Professional IT Security Providers - Exposed] Cyberklix ( F+ ) reepex (Dec 15)
Re: iDefense Security Advisory 12.17.07: Apple Mac OS X mount_smbfs Stack Based Buffer Overflow Vulnerability reepex (Dec 18)
Re: Nokia N95 cellphone remote DoS using the SIP Stack reepex (Dec 05)
Re: Nokia N95 cellphone remote DoS using the SIP Stack reepex (Dec 05)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability reepex (Dec 12)
Re: on xss and its technical merit reepex (Dec 09)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability reepex (Dec 11)
Re: Sendmail/Postfix Storybook reepex (Dec 15)
Re: Fwd: Websense 6.3.1 Filtering Bypass reepex (Dec 13)
Re: iFriends free video chat exploit reepex (Dec 28)
hey irmplc reepex (Dec 22)
Re: AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows reepex (Dec 27)
Re: Flash that simulates virus scan reepex (Dec 09)
Re: pcap flow extraction reepex (Dec 08)
Re: (no subject) reepex (Dec 09)
Re: AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows reepex (Dec 25)
Re: IBM Domino Web Access Upload Module inotes6w.dll SEH Overwrite Exploit reepex (Dec 31)
Re: Microsoft FTP Client Multiple Bufferoverflow Vulnerability reepex (Dec 13)
Re: Small Design Bug in Postfix - REMOTE reepex (Dec 15)
Re: (no subject) reepex (Dec 08)
Re: Flash that simulates virus scan reepex (Dec 09)
Re: Flash that simulates virus scan reepex (Dec 09)
Re: (no subject) reepex (Dec 08)
Re: TOP 10 Vulnerability Trends for 2008 reepex (Dec 11)
beyond security sucks at coding reepex (Dec 23)
Re: (no subject) reepex (Dec 09)
Re: For Christmas.. reepex (Dec 20)
Re: Flash that simulates virus scan reepex (Dec 09)

Richard Bejtlich

Re: pcap flow extraction Richard Bejtlich (Dec 08)

Robert Buchholz

[ GLSA 200712-24 ] AMD64 x86 emulation GTK+ library: User-assisted execution of arbitrary code Robert Buchholz (Dec 30)
[ GLSA 200712-14 ] CUPS: Multiple vulnerabilities Robert Buchholz (Dec 18)
[ GLSA 200712-20 ] ClamAV: Multiple vulnerabilities Robert Buchholz (Dec 29)
[ GLSA 200712-13 ] E2fsprogs: Multiple buffer overflows Robert Buchholz (Dec 18)
[ GLSA 200712-18 ] Multi-Threaded DAAP Daemon: Multiple vulnerabilities Robert Buchholz (Dec 29)
[ GLSA 200712-21 ] Mozilla Firefox, SeaMonkey: Multiple vulnerabilities Robert Buchholz (Dec 29)
[ GLSA 200712-23 ] Wireshark: Multiple vulnerabilities Robert Buchholz (Dec 30)
[ GLSA 200712-19 ] Syslog-ng: Denial of Service Robert Buchholz (Dec 29)

Roll Offle

Hal Turner exposé no. 2 (courtesy of GAPP & goudatr0n) Roll Offle (Dec 31)

rPath Update Announcements

rPSA-2007-0269-1 kernel rPath Update Announcements (Dec 19)
rPSA-2007-0262-1 e2fsprogs rPath Update Announcements (Dec 11)
rPSA-2007-0255-1 nss_ldap rPath Update Announcements (Dec 01)
rPSA-2007-0268-1 kdebase rPath Update Announcements (Dec 18)
rPSA-2007-0264-1 mod_dav_svn subversion rPath Update Announcements (Dec 12)
rPSA-2007-0266-1 tetex tetex-afm tetex-dvips tetex-fonts tetex-latex tetex-xdvi rPath Update Announcements (Dec 18)
rPSA-2007-0257-1 rsync rPath Update Announcements (Dec 04)
rPSA-2007-0260-1 firefox rPath Update Announcements (Dec 06)
rPSA-2007-0261-1 samba samba-swat rPath Update Announcements (Dec 10)

Santa Clause

Re: Ho Ho H0-Day - ZyXEL P-330W multiple XSS and XSRF vulnerabilities Santa Clause (Dec 27)
Ho Ho H0-Day - ZyXEL P-330W multiple XSS and XSRF vulnerabilities Santa Clause (Dec 25)

Sarasa

[Security Advisorie] OpenNewsletter v2.5 Multipe XSS Attacks Sarasa (Dec 06)

Secniche Bogus

Uber Lamer Ass of the Year. Vote! Secniche Bogus (Dec 22)

SecReview

Professional IT Security Service Providers Exposed -- Revised Grades SecReview (Dec 26)
Re: [Professional IT Security Providers -Exposed] Cybertrust ( C + ) SecReview (Dec 20)
Re: Professional IT Security Service Providers - Exposed secreview (Dec 04)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) SecReview (Dec 20)
[Professional IT Security Providers - Exposed] Cybertrust ( C + ) secreview (Dec 19)
Re: Professional IT Security Service Providers - Exposed SecReview (Dec 05)
IT Security Consulting Market Size SecReview (Dec 19)
Re: [Professional IT Security Providers - Exposed] Audit Serve, Inc. ( F- ) SecReview (Dec 18)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) SecReview (Dec 20)
Re: [Professional IT Security Providers - Exposed] Denim Group ( A - ) SecReview (Dec 14)
Request From People SecReview (Dec 18)
[Professional IT Security Providers - Exposed] Denim Group ( A - ) secreview (Dec 14)
[Professional IT Security Providers - Exposed] Cyberklix ( F+ ) secreview (Dec 13)
[Professional IT Security Providers - Exposed] QuietMove ( D - ) secreview (Dec 31)
Re: [Professional IT Security Reviewers - Exposed] SecReview ( A + ) SecReview (Dec 21)
Professional IT Security Service Providers - Exposed secreview (Dec 04)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) SecReview (Dec 20)
Re: [Professional IT Security Providers -Exposed] Cybertrust ( C + ) SecReview (Dec 20)
Re: [Professional IT Security Providers - Exposed] Cyberklix ( F+ ) SecReview (Dec 15)
Re: [Professional IT Security Reviewers - Exposed] SecReview ( F - ) SecReview (Dec 20)
[Professional IT Security Providers - Exposed] Audit Serve, Inc. ( F- ) secreview (Dec 17)
Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) SecReview (Dec 20)

Sec Review Sucks

[Professional IT Security Reviewers - Exposed] SecReview ( F - ) Sec Review Sucks (Dec 20)
Re: [Professional IT Security Reviewers - Exposed] SecReview ( F - ) Sec Review Sucks (Dec 20)
Re: [Professional IT Security Reviewers - Exposed] SecReview ( F - ) Sec Review Sucks (Dec 20)

Secunia Research

Secunia Research: Samba "send_mailslot()" Buffer Overflow Vulnerability Secunia Research (Dec 10)

security

[ MDKSA-2007:242 ] - Updated e2fsprogs packages fix vulnerability security (Dec 10)
[ MDKSA-2007:237 ] - Updated openssl packages fix DTLS vulnerability security (Dec 04)
[ MDKSA-2007:243 ] - Updated MySQL packages fix multiple vulnerabilities security (Dec 10)
[ MDKSA-2007:235 ] - Updated apache packages fix vulnerabilities security (Dec 03)
XSS Early Warning Mailing List Now Open security (Dec 04)
[ MDKSA-2007:244 ] - Updated samba packages fix vulnerability security (Dec 11)
[ MDKSA-2007:238 ] - Updated liblcms package fixes buffer overflow security (Dec 06)
[ MDKSA-2007:245 ] - Updated wpa_supplicant package fixes remote denial of service security (Dec 13)
[ MDKSA-2007:234 ] - Updated vixie-cron packages fix DoS vulnerability security (Dec 03)
[ MDKSA-2007:241 ] - Updated tomcat5 packages fix multiple vulnerabilities security (Dec 10)
[ MDKSA-2007:236 ] - Updated openssh packages fix X11 cookie vulnerability security (Dec 04)
[ MDKSA-2007:246 ] - Updated Firefox packages fix multiple vulnerabilities security (Dec 13)
[ MDKSA-2007:239 ] - Updated heimdal packages fix potential vulnerability security (Dec 06)
[ MDKSA-2007:240 ] - Updated libnfsidmap packages fix username lookup flaw security (Dec 07)

Security Officer

AST-2007-027 - Database matching order permits host-based authentication to be ignored Security Officer (Dec 18)

SilentRunner

Re: [Professional IT Security Providers - Exposed] Audit Serve, Inc. ( F- ) SilentRunner (Dec 18)
Re: pcap flow extraction SilentRunner (Dec 06)
Re: [Professional IT Security Providers - Exposed] Audit Serve, Inc. ( F- ) SilentRunner (Dec 21)

Simon Smith

Re: (no subject) Simon Smith (Dec 09)
Re: (no subject) Simon Smith (Dec 09)
Re: [SECUNIA] Vendors still use the "legal" weapon Simon Smith (Dec 06)
Re: Flash that simulates virus scan Simon Smith (Dec 09)
Re: Flash that simulates virus scan Simon Smith (Dec 09)
Re: (no subject) Simon Smith (Dec 09)
Re: (no subject) Simon Smith (Dec 09)
Re: (no subject) Simon Smith (Dec 09)

Slythers Bro

Re: PlayStation 3 predicts next US president (fwd) Slythers Bro (Dec 01)

Sowhat

TrendMicro AntiVirus UUE Processing Vulnerability Sowhat (Dec 11)
Avast! AntiVirus TAR Processing Remote Heap Corruption Sowhat (Dec 05)
TOP 10 Vulnerability Trends for 2008 Sowhat (Dec 11)
Re: TOP 10 Vulnerability Trends for 2008 Sowhat (Dec 11)

state

Re: Nokia N95 cellphone remote DoS using the SIP Stack state (Dec 05)

Static Rez

XSS @ DHL Static Rez (Dec 24)
Re: Firefox 2.0.0.11 File Focus Stealing vulnerability Static Rez (Dec 01)

Stefano Di Paola

The first release of SWFIntruder is out ! Stefano Di Paola (Dec 04)

Steve Kemp

[SECURITY] [DSA 1430-1] New libnss-ldap packages fix denial of service Steve Kemp (Dec 11)
[SECURITY] [DSA 1432-1] New link-grammar packages fix execution of code Steve Kemp (Dec 16)
[SECURITY] [DSA 1422-1] New e2fsprogs packages fix arbitrary code execution Steve Kemp (Dec 07)
[SECURITY] [DSA 1429-1] New htdig packages fix cross site scripting Steve Kemp (Dec 11)
[SECURITY] [DSA 1431-1] New ruby-gnome2 packages fix execution of arbitrary code Steve Kemp (Dec 11)
[SECURITY] [DSA 1423-1] New sitebar packages fix several vulnerabilities Steve Kemp (Dec 07)
[SECURITY] [DSA 1433-1] New centericq packages fix execution of code Steve Kemp (Dec 16)

Steven Adair

Re: Google / GMail bug, all accounts vulnerable Steven Adair (Dec 12)
Re: Captive Portal bypassing Steven Adair (Dec 10)
Re: MD5 algorithm considered toxic (and harmful) Steven Adair (Dec 01)
Re: Google / GMail bug, all accounts vulnerable Steven Adair (Dec 12)

Sven Meeus

Re: Anyone have a reason for 2x the email flow today? Sven Meeus (Dec 06)

Tadek Pietraszek

DIMVA 2008 - Call For Papers Tadek Pietraszek (Dec 30)

T Biehn

Re: Captive Portal bypassing T Biehn (Dec 10)
Re: need help in managing administrators T Biehn (Dec 02)
Re: need help in managing administrators T Biehn (Dec 05)
Re: need help in managing administrators T Biehn (Dec 02)
Re: need help in managing administrators T Biehn (Dec 05)
Re: need help in managing administrators T Biehn (Dec 02)
Re: need help in managing administrators T Biehn (Dec 02)

The Security Community

Fwd: Websense 6.3.1 Filtering Bypass The Security Community (Dec 12)

Thijs Kinkhorst

[SECURITY] [DSA 1418-1] New cacti packages fix SQL injection Thijs Kinkhorst (Dec 02)
[SECURITY] [DSA 1405-3] New zope-cmfplone packages fix regression Thijs Kinkhorst (Dec 28)
[SECURITY] [DSA 1434-1] New mydns packages fix denial of service Thijs Kinkhorst (Dec 16)
[SECURITY] [DSA 1439-1] New typo3-src packages fix SQL injection Thijs Kinkhorst (Dec 28)
[SECURITY] [DSA 1420-1] New zabbix packages fix privilege escalation Thijs Kinkhorst (Dec 05)
[SECURITY] [DSA 1441-1] New peercast packages fix arbitrary code execution Thijs Kinkhorst (Dec 28)

Thomas Biege

SUSE Security Announcement: samba (SUSE-SA:2007:065) Thomas Biege (Dec 05)
SUSE Security Announcement: samba (SUSE-SA:2007:068) Thomas Biege (Dec 12)

Thomas Kristensen

[SECUNIA] Vendors still use the "legal" weapon Thomas Kristensen (Dec 06)

Tim

Re: MD5 algorithm considered toxic (and harmful) Tim (Dec 01)
Re: [FDSA] Multiple Vulnerabilities in Fred Diggle Software Foundation Execve Exploit Tim (Dec 14)

Todd Troxell

usb shorting to ground Todd Troxell (Dec 27)

Tom Yu

Venustech reports of MIT krb5 vulns [CVE-2007-5894 CVE-2007-5901 CVE-2007-5902 CVE-2007-5971 CVE-2007-5972] Tom Yu (Dec 11)

trains

Re: [Professional IT Security Providers - Exposed] Cybertrust ( C + ) trains (Dec 20)
Re: Professional IT Security Service Providers - Exposed trains (Dec 04)

tsrt

TPTI-07-21: Adobe Flash Player JPG Processing Heap Overflow Vulnerability tsrt (Dec 19)

twiz

Re: Hikaru twiz (Dec 23)

uday kumar

Information about recent malware exploited vulnerabilities - a blog post uday kumar (Dec 05)

uncleron

HP Photosmart vulnerabilities uncleron (Dec 28)
Re: HP Photosmart vulnerabilities uncleron (Dec 28)

Valdis . Kletnieks

Re: AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows Valdis . Kletnieks (Dec 27)
Re: on xss and its technical merit Valdis . Kletnieks (Dec 12)
Re: need help in managing administrators Valdis . Kletnieks (Dec 02)
Re: need help in managing administrators Valdis . Kletnieks (Dec 05)
Re: need help in managing administrators Valdis . Kletnieks (Dec 02)
Re: need help in managing administrators Valdis . Kletnieks (Dec 05)
Re: MD5 algorithm considered toxic (and harmful) Valdis . Kletnieks (Dec 01)
Re: Professional IT Security Service Providers - Exposed Valdis . Kletnieks (Dec 05)
Re: authentic hackers still do it for the love ... (was: Hell Camp: It never pays enough) Valdis . Kletnieks (Dec 02)
Re: AOL YGP Picture Editor YGPPicEdit.dll Multiple Buffer Overflows Valdis . Kletnieks (Dec 25)
Re: need help in managing administrators Valdis . Kletnieks (Dec 05)
Re: need help in managing administrators Valdis . Kletnieks (Dec 05)
Re: For Christmas.. Valdis . Kletnieks (Dec 20)
Re: Small Design Bug in Postfix - REMOTE Valdis . Kletnieks (Dec 14)
Re: High Value Target Selection Valdis . Kletnieks (Dec 01)
Re: need help in managing administrators Valdis . Kletnieks (Dec 02)
Re: Fwd: Chat with Dude VanWinkle Valdis . Kletnieks (Dec 21)
Re: iFriends free video chat exploit Valdis . Kletnieks (Dec 28)

Vincent Archer

Re: High Value Target Selection Vincent Archer (Dec 03)

Vladimir Vitkov

Re: TCP Port randomization paper Vladimir Vitkov (Dec 06)

Williams, James K

[CAID 35724, 35725, 35726]: CA BrightStor ARCserve Backup Multiple Vulnerabilities Williams, James K (Dec 06)
[CAID 35970]: CA Products That Embed Ingres Authentication Vulnerability Williams, James K (Dec 21)
Re: ZDI-07-069: CA BrightStor ARCserve Backup Message Engine Insecure Method Exposure Vulnerability Williams, James K (Dec 01)

worried security

Re: iFriends free video chat exploit worried security (Dec 28)
Fwd: Chat with Dude VanWinkle worried security (Dec 21)
Defense board sounds louder alarm about foreign software development worried security (Dec 05)
Re: Fwd: Chat with Dude VanWinkle worried security (Dec 21)
Re: Fwd: Chat with Dude VanWinkle worried security (Dec 22)
Cisco awarded stupidist title in infosec worried security (Dec 19)
Re: Fwd: Chat with Dude VanWinkle worried security (Dec 21)
Report: Foreign Countries Develop U.S. Defense Systems Software worried security (Dec 05)
Round up of messages by n3td3v for winter season 2007 worried security (Dec 16)
Re: Google / GMail bug, all accounts vulnerable worried security (Dec 07)
Sign the Downing Street E-Petition Submitted by Neil Stinchcombe of Infosecurity Europe worried security (Dec 07)

xiaojunli.air

MIT Kerberos 5: Multiple vulnerabilities xiaojunli.air (Dec 07)
netkit-ftpd/ftp uninitialized vulnerability xiaojunli.air (Dec 07)
Heimdal ftpd uninitialized vulnerability xiaojunli.air (Dec 07)

zdi-disclosures

ZDI-07-079: Hewlett-Packard HP-UX swagentd Buffer Overflow Vulnerability zdi-disclosures (Dec 17)
ZDI-07-076: Microsoft Windows Message Queuing Service Stack Overflow Vulnerability zdi-disclosures (Dec 11)
ZDI-07-078: St. Bernard Open File Manager Heap Overflow Vulnerability zdi-disclosures (Dec 17)
ZDI-07-071: HP OpenView Network Node Manager Multiple CGI Buffer Overflows zdi-disclosures (Dec 06)
ZDI-07-070: Skype skype4com URI Handler Remote Heap Corruption Vulnerability zdi-disclosures (Dec 06)
ZDI-07-074: Microsoft Internet Explorer Node Manipulation Memory Corruption zdi-disclosures (Dec 11)
ZDI-07-077: Trend Micro ServerProtect StRpcSrv.dll Insecure Method Exposure Vulnerability zdi-disclosures (Dec 17)
ZDI-07-072: Novell Netmail AntiVirus Agent Multiple Overflow Vulnerabilities zdi-disclosures (Dec 10)
ZDI-07-073: Microsoft Internet Explorer setExpression Vulnerability zdi-disclosures (Dec 11)
ZDI-07-075: Microsoft Internet Explorer Element Tags Vulnerability zdi-disclosures (Dec 11)