Full Disclosure mailing list archives

Re: Persistent XSS and CSRF and on network appliance


From: scott <redhowlingwolves () bellsouth net>
Date: Thu, 28 Jun 2007 00:40:37 -0400

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Even better ,if you push a hash on us,do tell whether it's a 0-day or a
known exploit.

Regards,
  Redhowlingwolves              
______________________
It's all about (IN)Security

http://www.hacking-passion.com







Brian Eaton wrote:
On 6/27/07, bugtraq () cgisecurity net <bugtraq () cgisecurity net> wrote:
For the love of god people can we stop with the hashing already?

The hashes would be less annoying if they had an easily filtered subject line.

Let me suggest that anyone who wants to publish a hash of
vulnerability report on full disclosure include the string "MORH" in
the subject line, in honor of the "Month of Random Hashes" project.
Presumably anyone with enough of a clue to want to publish a hash of a
vulnerability disclosure also has enough of a clue to do so with a
standard subject line.

Cheers,
Brian

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.6 (GNU/Linux)
Comment: Using GnuPG with Mozilla - http://enigmail.mozdev.org

iD8DBQFGgzvFelSgjADJQKsRAk55AJ9Q5Sx7QEQ6y62W80vVutwtLk6wcACfY0sF
jksMVerCQhWjfG3d+Hw+tdc=
=OcE3
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: