Full Disclosure: by author

282 messages starting May 06 09 and ending May 20 09
Date index | Thread index | Author index


Aadil Noorkhan

Re: Howto Simulate a BotNet ? Aadil Noorkhan (May 06)

Ahmed Sheipani

Re: Whitepaper Ahmed Sheipani (May 30)

Alex Legler

[ GLSA 200905-09 ] libsndfile: User-assisted execution of arbitrary code Alex Legler (May 27)
[ GLSA 200905-05 ] FreeType: Multiple vulnerabilities Alex Legler (May 24)
[ GLSA 200905-04 ] GnuTLS: Multiple vulnerabilities Alex Legler (May 24)
[ GLSA 200905-03 ] IPSec Tools: Denial of Service Alex Legler (May 24)
[ GLSA 200905-07 ] Pidgin: Multiple vulnerabilities Alex Legler (May 25)
[ GLSA 200905-08 ] NTP: Remote execution of arbitrary code Alex Legler (May 26)

A . L . M . Buxey

Re: Who is destroying our internet? A . L . M . Buxey (May 18)

Andres Riancho

[TOOL] moth - vulnerable web application vmware Andres Riancho (May 07)

Andrew Farmer

Re: “Cross-Site Scripting” vulnerability in MyBB 1.4.5 Andrew Farmer (May 03)

ascii

FormMail 1.92 Multiple Vulnerabilities ascii (May 12)
Re: FormMail 1.92 Multiple Vulnerabilities ascii (May 13)

Benjilenoob

Durzosploit v0.1 alpha Benjilenoob (May 01)

Bernhard Mueller

SEC Consult SA-20090525-3 :: SonicWALL Global VPN Client Local Privilege Escalation Vulnerability Bernhard Mueller (May 26)
SEC Consult SA-20090525-0 :: Nortel Contact Center Manager Server Authentication Bypass Vulnerability Bernhard Mueller (May 26)
SEC Consult SA-20090525-4 :: SonicOS Format String Vulnerability Bernhard Mueller (May 26)
SEC Consult SA-20090525-2 :: SonicWALL Global Security Client Local Privilege Escalation Vulnerability Bernhard Mueller (May 26)
SEC Consult SA-20090525-1 :: Nortel Contact Center Manager Server Password Disclosure Vulnerability Bernhard Mueller (May 26)

Bkis

[Bkis-09-2009] XSS vulnerability in 'Monitor_Bandwidth' - PRTG Traffic Grapher Bkis (May 27)
[Bkis-08-2009] Microchip MPLAB IDE Buffer Overflow Vulnerability Bkis (May 10)

Brigette DéFaveur

OWASP LiveCD Vulnerabilities Brigette DéFaveur (May 22)

Cedric Blancher

Re: [NETRAGARD SECURITY ADVISORY] [AirCell GoGo Inflight Internet -- No Encryption ][NETRAGARD-2009042] Cedric Blancher (May 07)

Chris Evans

Re: [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Chris Evans (May 28)
Re: [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Chris Evans (May 27)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: CiscoWorks TFTP Directory Traversal Vulnerability Cisco Systems Product Security Incident Response Team (May 20)

CORE Security Technologies Advisories

CORE-2009-0401 - StoneTrip S3DPlayers remote command injection CORE Security Technologies Advisories (May 28)
CORE-2009-0109 - Multiple XSS in Sun Communications Express CORE Security Technologies Advisories (May 20)

dann frazier

[SECURITY] [DSA 1787-1] New Linux 2.6.24 packages fix several vulnerabilities dann frazier (May 03)
[SECURITY] [DSA 1800-1] New Linux 2.6.26 packages fix several vulnerabilities dann frazier (May 16)
[SECURITY] [DSA 1794-1] New Linux 2.6.18 packages fix several vulnerabilities dann frazier (May 07)

David Blanc

FFSpy Buster : Duarte Silva announces that the security of most software allowing plugins such as vim, emacs, gnome, eclipse, etc. is flawed David Blanc (May 29)
Re: FFSpy, a firefox malware PoC David Blanc (May 26)

David Cantrell

Re: FormMail 1.92 Multiple Vulnerabilities David Cantrell (May 13)

dd

Web App Version detection using fingerprinting dd (May 25)

DDI_Vulnerability_Alert

DDIVRT-2009-25 IPsession SQL Injection Vulnerability DDI_Vulnerability_Alert (May 22)

Devin Carraway

[SECURITY] [DSA 1795-1] New ldns packages fix arbitrary code execution Devin Carraway (May 07)

Dragos Ruiu

EUSecWest 2009 (May27/28) London Agenda and PacSec 2009 (Nov 4/5) Tokyo CFP deadline: June 1 2009 Dragos Ruiu (May 06)

Eitan Caspi

Re: PayPal donation form reveals beneficiary's email address Eitan Caspi (May 02)
PayPal donation form reveals beneficiary's email address Eitan Caspi (May 01)

Exploit Critics

SUPPORT exploitcritics.blogspot.com :) Exploit Critics (May 13)

exploit dev

Is javascript-analytics.com related to mebroot ? exploit dev (May 08)

Exploit Sweatshop

Exploit sweatshop open for business! Exploit Sweatshop (May 12)
Re: SUPPORT exploitcritics.blogspot.com :) Exploit Sweatshop (May 13)

Felipe M. Aragon

Syhunt: A-A-S (Application Access Server) Multiple Security Vulnerabilities Felipe M. Aragon (May 11)

FFSpy Buster

Is FFSpy a hoax? FFSpy Buster (May 30)

Fionnbharr

Re: OWASP LiveCD Vulnerabilities Fionnbharr (May 22)

Florian Weimer

[SECURITY] [DSA 1787-1] New quagga packages fix denial of service Florian Weimer (May 04)

Fosforo

Re: FFSpy, a firefox malware PoC Fosforo (May 25)

Frank Dietrich

Re: PayPal donation form reveals beneficiary's email address Frank Dietrich (May 02)

FUDder Guy

Re: FFSpy, a firefox malware PoC FUDder Guy (May 25)
Re: FFSpy, a firefox malware PoC FUDder Guy (May 25)

fukami

CFP 26C3 / 26th Chaos Communication Congress fukami (May 31)

Gabriel Lima

STEAM (Valve) - Phishing and Cross-site Scripting in internal browser Gabriel Lima (May 19)
STEAM (Valve) - Phishing and Cross-site Scripting in internal browser Gabriel Lima (May 19)

ghost

Re: PayPal donation form reveals beneficiary's email address ghost (May 02)

Giany

Re: IIS6 + webdav and unicode rides again in 2009 Giany (May 15)

hack.lu 2009 info

Call for Papers Hack.lu 2009 hack.lu 2009 info (May 04)

Herman A. Junge

Re: OWASP LiveCD Vulnerabilities Herman A. Junge (May 23)

iDefense Labs

iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Multiple Spreadsheet Buffer Overflow Vulnerabilities iDefense Labs (May 15)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint PPT95 Import Multiple Stack Buffer Overflow Vulnerabilities iDefense Labs (May 12)
iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Multiple Integer Overflow Vulnerabilities iDefense Labs (May 15)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint PPT 4.0 Importer Multiple Stack Buffer Overflow Vulnerabilities iDefense Labs (May 12)
iDefense Security Advisory 05.14.09: Apple Mac OS X xnu Kernel workqueue_additem/workqueue_removeitem Index Validation Vulnerability iDefense Labs (May 14)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint 4.2 Conversion Filter Stack Buffer Overflow Vulnerability iDefense Labs (May 12)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint 4.2 Conversion Filter Heap Corruption Vulnerability iDefense Labs (May 12)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint Integer Overflow Vulnerability iDefense Labs (May 12)
iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Spreadsheet Integer Overflow Vulnerability iDefense Labs (May 15)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint 4.2 Conversion Filter Stack Overflow iDefense Labs (May 12)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint PPT95 Import Multiple Stack Buffer Overflow Vulnerabilities iDefense Labs (May 12)
iDefense Security Advisory 05.14.09: Multiple Vendor Outside In Spreadsheet Buffer Overflow Vulnerability iDefense Labs (May 15)
iDefense Security Advisory 05.20.09: IBM AIX libc MALLOCDEBUG File Overwrite Vulnerability iDefense Labs (May 20)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint Notes Container Heap Corruption Vulnerability iDefense Labs (May 12)
iDefense Security Advisory 05.12.09: Microsoft PowerPoint Build List Memory Corruption Vulnerability iDefense Labs (May 12)

IEhrepus

mb_ereg(i)_replace() evaluate replacement string vulnerability IEhrepus (May 07)

J

BASE - Persistent and Reflective XSS J (May 23)

Jabra

BASE - 3 Persistent Cross Site Scripting Vulnerabilities Jabra (May 30)

Jacques Copeau

Survey: "MIME/Content-Type-Sniffing" Issues in Image Uploads in Forum Scripts Jacques Copeau (May 28)
Re: [Full-disclosure] “Cross-Site Scripting” vulnerability in MyBB 1.4.5 Jacques Copeau (May 04)
“Cross-Site Scripting” vulnerability in MyBB 1.4.5 Jacques Copeau (May 03)

James Matthews

Who is destroying our internet? James Matthews (May 18)
Re: Major Greek bank sites with SSL vulnerable to XSS and open redirects James Matthews (May 10)
Re: FFSpy, a firefox malware PoC James Matthews (May 26)

Jamie Strandboge

[USN-777-1] Ntp vulnerabilities Jamie Strandboge (May 19)
[USN-770-1] ClamAV vulnerability Jamie Strandboge (May 04)

Jan G.B.

Re: Howto Simulate a BotNet ? Jan G.B. (May 07)

Jared DeMott

Whitepaper Jared DeMott (May 28)
Re: Whitepaper Jared DeMott (May 30)

Jeffrey Walton

Re: Whitepaper Jeffrey Walton (May 30)

Jeremi Gosney

[Low-Hanging Fruit] Craigsphone Transcoder Open URL Redirection Jeremi Gosney (May 30)

Jeremy Brown

Re: IIS6 + webdav and unicode rides again in 2009 Jeremy Brown (May 15)
Re: HackersBlog: WhiteHat Scum Jeremy Brown (May 28)
Re: [TZO-27-2009] Firefox Denial of Service (Keygen) Jeremy Brown (May 27)

Jim Parkhurst

Re: Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Jim Parkhurst (May 27)
Re: Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Jim Parkhurst (May 27)

John Cartwright

List Charter John Cartwright (May 11)

John Jacobs

Snort Sigs for ISC Twitter/Google Diary Annoucements John Jacobs (May 15)
ISC Twitter/Google Snort Signatures John Jacobs (May 15)

John Lamb

Re: Big up to torpig authors John Lamb (May 05)

Justin C. Klein Keane

Drupal 5.17 Taxonomy Module XSS Vulnerability Justin C. Klein Keane (May 08)
MagpieRSS Multiple XSS Vulnerabilities Justin C. Klein Keane (May 08)
LAMPSecurity.org Capture the Flag Exercise Justin C. Klein Keane (May 12)
Drupal Embedded Media Field Module Multiple XSS Justin C. Klein Keane (May 28)
Drupal 6 CCK Module XSS Vulnerability Justin C. Klein Keane (May 18)

Justin Klein Keane

Drupal 6.12 (core) User Module XSS Vulnerability Justin Klein Keane (May 19)
Drupal 6 Content Access Module XSS Justin Klein Keane (May 26)

Kees Cook

[USN-776-1] KVM vulnerabilities Kees Cook (May 12)
[USN-775-1] Quagga vulnerability Kees Cook (May 12)

Kennith Greenwood

Re: [SECURITY] [DSA 1792-1] New drupal6 packages fix multiple vulnerabilities Kennith Greenwood (May 09)

Kingcope

IIS6 + webdav and unicode rides again in 2009 Kingcope (May 15)

laurent gaffie

Soulseek * P2P Remote Distributed Search Code Execution laurent gaffie (May 25)

Major Malfunction

DEFCON London - DC4420 - this Thursday 21st May 2009 Major Malfunction (May 18)

Maksymilian Arciemowicz

IPFilter (ippool) 4.1.31 lib/load_http.c buffer overflow Maksymilian Arciemowicz (May 22)

mamo

Vulnerability Assessment mamo (May 24)

Marc Deslauriers

[USN-772-1] MPFR vulnerability Marc Deslauriers (May 07)
[USN-773-1] Pango vulnerability Marc Deslauriers (May 07)
[USN-774-1] MoinMoin vulnerability Marc Deslauriers (May 11)
[USN-769-1] libwmf vulnerability Marc Deslauriers (May 04)
[USN-771-1] libmodplug vulnerabilities Marc Deslauriers (May 07)
[USN-776-2] KVM regression Marc Deslauriers (May 13)

Mario Alejandro Vilas Jerez

WinAppDbg module v1.1 is out! Mario Alejandro Vilas Jerez (May 15)

Mark Sec

Re: Howto Simulate a BotNet ? Mark Sec (May 07)
Howto Simulate a BotNet ? Mark Sec (May 06)
Re: Howto Simulate a BotNet ? Mark Sec (May 15)

Matthew S. Hallacy

Re: [SPAM] eggdrop/windrop remote crash vulnerability Matthew S. Hallacy (May 16)

M.B.Jr.

Re: Howto Simulate a BotNet ? M.B.Jr. (May 15)
Re: Howto Simulate a BotNet ? M.B.Jr. (May 07)

mbs

Re: Full-disclosure Anti virus installations on Windows servers mbs (May 04)

Michael Holstein

Re: Who is destroying our internet? Michael Holstein (May 18)

Michael Simpson

Re: [SECURITY] [DSA 1792-1] New drupal6 packages fix multiple vulnerabilities Michael Simpson (May 11)

Michal Zalewski

Re: [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Michal Zalewski (May 27)

Micheal Cottingham

Re: [Full-disclosure] “Cross-Site Scripting” vulnerability in MyBB 1.4.5 Micheal Cottingham (May 03)

Michelangelo Sidagni

W3af ninja training class in NYC Michelangelo Sidagni (May 26)

Mike Dee

AusCERT 2009 conference - audio recordings Mike Dee (May 25)

Mike N.

Re: Major Greek bank sites with SSL vulnerable toXSS and open redirects Mike N. (May 11)

militan c7

Security Advisory: Banks in Australia militan c7 (May 12)

Moritz Muehlenhoff

[SECURITY] [DSA 1799-1] New qemu packages fix several vulnerabilities Moritz Muehlenhoff (May 11)
[SECURITY] [DSA 1785-1] New wireshark packages fix several vulnerabilities Moritz Muehlenhoff (May 01)
[SECURITY] [DSA 1805-1] New pidgin packages fix several vulnerabilities Moritz Muehlenhoff (May 22)
[SECURITY] [DSA 1797-1] New xulrunner packages fix several vulnerabilities Moritz Muehlenhoff (May 09)
[SECURITY] [DSA 1806-1] New cscope packages fix arbitrary code execution Moritz Muehlenhoff (May 24)

Nam Nguyen

Re: Universal XSS in all Google Services Nam Nguyen (May 12)

Nelson Brito

Re: HackersBlog: WhiteHat Scum Nelson Brito (May 28)

Netragard Advisories

[NETRAGARD SECURITY ADVISORY] [AirCell GoGo Inflight Internet -- No Encryption ][NETRAGARD-2009042] Netragard Advisories (May 06)

Nico Golde

[SECURITY] [DSA 1796-1] New libwmf packages fix denial of service Nico Golde (May 08)
[SECURITY] [DSA 1784-1] New freetype packages fix arbitrary code execution Nico Golde (May 01)
Re: eggdrop/windrop remote crash vulnerability Nico Golde (May 15)
[SECURITY] [DSA 1804-1] New ipsec-tools packages fix denial of service Nico Golde (May 20)
Re: [TZO-27-2009] Firefox Denial of Service (Keygen) Nico Golde (May 28)

Nicolas Lidzborski

Re: [SECURITY] [DSA 1787-1] New quagga packages fixdenial of service Nicolas Lidzborski (May 04)

Niels Teusink

Grabit <= 1.7.2 beta 3 NZB file parsing stack overflow Niels Teusink (May 03)

Noah Meyerhans

[SECURITY] [DSA 1790-1] New xpdf packages fix multiple vulnerabilities Noah Meyerhans (May 06)
[SECURITY] [DSA 1793-1] New kdegraphics packages fix multiple vulnerabilities Noah Meyerhans (May 06)
[SECURITY] [DSA 1792-1] New drupal6 packages fix multiple vulnerabilities Noah Meyerhans (May 06)

Oliver Goebel

[IMF 2009] 3rd Call - Deadline Extended Oliver Goebel (May 26)

OTB

Re: [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) OTB (May 28)

Paul Craig

iKAT - The Interactive Kiosk Attack Tool v2.0 Released - http://ikat.ha.cked.net Paul Craig (May 27)

Paul Schmehl

Re: Major Greek bank sites with SSL vulnerable to XSS and open redirects Paul Schmehl (May 10)

Pavel Kankovsky

Re: Anti virus installations on Windows servers Pavel Kankovsky (May 02)
Re: Anti virus installations on Windows servers Pavel Kankovsky (May 01)

Pete Licoln

Re: [TZO-27-2009] Firefox Denial of Service (Keygen) Pete Licoln (May 27)
Re: Soulseek * P2P Remote Distributed Search Code Execution Pete Licoln (May 25)
Re: SUPPORT exploitcritics.blogspot.com :) Pete Licoln (May 13)

Pierre-Yves Rofes

[ GLSA 200905-06 ] acpid: Denial of Service Pierre-Yves Rofes (May 24)
[ GLSA 200905-02 ] Cscope: User-assisted execution of arbitrary code Pierre-Yves Rofes (May 24)

Piotr Bania

PAPER: Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs Piotr Bania (May 25)
Re: PAPER: Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs Piotr Bania (May 25)
PAPER: Dynamic Data Flow Analysis via Virtual Code Integration (aka The SpiderPig case) Piotr Bania (May 18)

postmaster

Re: Full-Disclosure Digest, Vol 51, Issue 2 (Action Required) postmaster (May 02)

RedTeam Pentesting GmbH

[RT-SA-2009-003] IceWarp WebMail Server: SQL Injection in Groupware Component RedTeam Pentesting GmbH (May 05)
[RT-SA-2009-001] IceWarp WebMail Server: Cross Site Scripting in Email View RedTeam Pentesting GmbH (May 05)
[RT-SA-2009-004] IceWarp WebMail Server: Client-Side Specification of "Forgot Password" eMail Content RedTeam Pentesting GmbH (May 05)
[RT-SA-2009-002] IceWarp WebMail Server: User-assisted Cross Site Scripting in RSS Feed Reader RedTeam Pentesting GmbH (May 05)

rembrandt

multiple vendor - PF NULL pointer dereference rembrandt (May 01)

Robert Buchholz

[ GLSA 200905-01 ] Asterisk: Multiple vulnerabilities Robert Buchholz (May 02)

Robert Hudock

Troj/Qbot-B Robert Hudock (May 14)

RoMeO

Re: HackersBlog: WhiteHat Scum RoMeO (May 28)

rPath Update Announcements

rPSA-2009-0091-1 cyrus-sasl cyrus-sasl-server rPath Update Announcements (May 27)
rPSA-2009-0095-1 tshark wireshark rPath Update Announcements (May 27)
rPSA-2009-0092-1 ntp ntp-utils rPath Update Announcements (May 27)
rPSA-2009-0086-1 postgresql postgresql-contrib postgresql-server rPath Update Announcements (May 20)
rPSA-2009-0084-1 kernel rPath Update Announcements (May 16)

saphex

Re: FFSpy, a firefox malware PoC saphex (May 26)
Re: Is FFSpy a hoax? saphex (May 30)
FFSpy, a firefox malware PoC saphex (May 19)
Re: FFSpy, a firefox malware PoC saphex (May 26)

Sebastian Krahmer

Re: iKAT - The Interactive Kiosk Attack Tool v2.0 Released - http://ikat.ha.cked.net Sebastian Krahmer (May 27)

Secunia Research

Secunia Research: Sun Solaris "sadmind" Buffer Overflow Vulnerability Secunia Research (May 24)
Secunia Research: IBM Tivoli Storage Manager Remote Agent Service Buffer Overflows Secunia Research (May 04)
Secunia Research: Sun Solaris "sadmind" Integer Overflow Vulnerability Secunia Research (May 24)
Secunia Research: Microsoft PowerPoint Atom Parsing Buffer Overflows Secunia Research (May 13)
Secunia Research: Garmin Communicator Plug-In Domain Locking Security Bypass Secunia Research (May 07)

security

[ MDVSA-2009:118 ] kernel security (May 19)
[ MDVSA-2009:120 ] openssl security (May 21)
[ MDVSA-2009:122 ] squirrelmail security (May 23)
[ MDVSA-2009:116 ] gnutls security (May 18)
[ MDVSA-2009:106 ] libwmf security (May 05)
[ MDVSA-2009:121 ] lcms security (May 21)
n.runs-SA-2009.001 - OS X CFNetwork advisory security (May 15)
[ MDVSA-2009:117 ] ntp security (May 19)
[ MDVSA-2009:111-1 ] firefox security (May 13)
[ MDVSA-2009:113 ] cyrus-sasl security (May 18)
[ MDVSA-2009:123 ] opensc security (May 27)
[ MDVSA-2009:111 ] firefox security (May 12)
[ MDVSA-2009:114 ] ipsec-tools security (May 18)
[ MDVSA-2009:109 ] quagga security (May 10)
[ MDVSA-2009:110 ] squirrelmail security (May 12)
[ MDVSA-2009:125 ] wireshark security (May 31)
[ MDVSA-2009:108 ] zsh security (May 07)
[ MDVSA-2009:115 ] phpMyAdmin security (May 18)
[ MDVSA-2009:124 ] apache security (May 31)
[ MDVSA-2009:107 ] acpid security (May 06)
[ MDVSA-2009:105 ] memcached security (May 04)
[ MDVSA-2009:102 ] apache security (May 01)
[ MDVSA-2009:112 ] ipsec-tools security (May 13)
[ MDVSA-2009:122 ] squirrelmail security (May 23)
[ MDVSA-2009:119 ] kernel security (May 19)

Shatter

Team SHATTER Security Advisory: Oracle Database SQL Injection vulnerability in LT.ROLLBACKWORKSPACE Shatter (May 08)

Shell Code

Re: FFSpy, a firefox malware PoC Shell Code (May 25)
Re: FFSpy, a firefox malware PoC Shell Code (May 26)

Shyaam

Re: Howto Simulate a BotNet ? Shyaam (May 08)
Re: Howto Simulate a BotNet ? Shyaam (May 07)

silky

Re: Major Greek bank sites with SSL vulnerable to XSS and open redirects silky (May 11)
Re: Major Greek bank sites with SSL vulnerable to XSS and open redirects silky (May 10)

SmOk3

Arcade Trade Script XSS SmOk3 (May 25)

Stefan Frei

New Browser Security Paper: Why Silent Updates Boost Security Stefan Frei (May 05)

Steffen Joeris

[SECURITY] [DSA 1798-1] New pango1.0 packages fix arbitrary code execution Steffen Joeris (May 11)
[SECURITY] [DSA 1791-1] New moin packages fix cross-site scripting Steffen Joeris (May 06)
[SECURITY] [DSA 1786-1] New acpid packages fix denial of service Steffen Joeris (May 03)

Stuart Dunkeld

Re: Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Stuart Dunkeld (May 27)

Tavis Ormandy

Re: [TZO-27-2009] Firefox Denial of Service (Keygen) Tavis Ormandy (May 28)
Re: [TZO-27-2009] Firefox Denial of Service (Keygen) Tavis Ormandy (May 28)
Re: [TZO-27-2009] Firefox Denial of Service (Keygen) Tavis Ormandy (May 28)

T Biehn

Re: Full-disclosure Anti virus installations on Windows servers T Biehn (May 04)
Re: Anti virus installations on Windows servers T Biehn (May 01)
Re: Howto Simulate a BotNet ? T Biehn (May 07)
Big up to torpig authors T Biehn (May 04)

Thierry Zoller

[TZO-20-2009] AVG ZIP evasion / bypass Thierry Zoller (May 09)
Re: Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Thierry Zoller (May 27)
[TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Thierry Zoller (May 26)
Re: [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Thierry Zoller (May 27)
Re: PAPER: Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs Thierry Zoller (May 25)
Update: [TZO-15-2009] Aladdin eSafe generic bypass - Forced release Thierry Zoller (May 07)
[TZO-27-2009] Firefox Denial of Service (Keygen) Thierry Zoller (May 27)
Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Thierry Zoller (May 26)
[TZO-25-2009] Panda generic evasion (TAR) Thierry Zoller (May 22)
[TZO-23-2009] Avira antivir generic evasion of heuristics (for PDF) Thierry Zoller (May 18)
[TZO-22-2009] Bitdefender generic evasion of heuristics (for PDF) Thierry Zoller (May 18)
Re: Is FFSpy a hoax? Thierry Zoller (May 30)
Re: IIS6 + webdav and unicode rides again in 2009 Thierry Zoller (May 15)
[TZO-24-2009] Panda generic evasion (CAB) Thierry Zoller (May 22)
Re: [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Thierry Zoller (May 26)
Request : Microsoft Forefront (all) anybody? Thierry Zoller (May 09)
Re: PAPER: Generic Unpacking of Self-modifying, Aggressive, Packed Binary Programs Thierry Zoller (May 25)
[TZO-21-2009] Fprot CAB bypass / evasion Thierry Zoller (May 09)
Re: IIS6 + webdav and unicode rides again in 2009 Thierry Zoller (May 15)
Changes : [TZO-17-2009]Trendmicro multiple bypass/evasions Thierry Zoller (May 09)
Re: [TZO-27-2009] Firefox Denial of Service (Keygen) Thierry Zoller (May 28)

Thijs Kinkhorst

[SECURITY] [DSA 1802-1] New squirrelmail packages fix several vulnerabilities Thijs Kinkhorst (May 20)
[SECURITY] [DSA 1789-1] New php5 packages fix several vulnerabilities Thijs Kinkhorst (May 05)
[SECURITY] [DSA 1801-1] New ntp packages fix several vulnerabilities Thijs Kinkhorst (May 20)
[SECURITY] [DSA 1802-2] New squirrelmail packages correct incomplete fix Thijs Kinkhorst (May 22)
[SECURITY] [DSA 1803-1] New nsd packages fix denial of service Thijs Kinkhorst (May 20)

Thomas Sader

eggdrop/windrop remote crash vulnerability Thomas Sader (May 14)

Tomas L. Byrnes

Re: OWASP LiveCD Vulnerabilities Tomas L. Byrnes (May 23)
Re: Howto Simulate a BotNet ? Tomas L. Byrnes (May 08)
Re: Vulnerability Assessment Tomas L. Byrnes (May 24)

Valdis . Kletnieks

Re: Major Greek bank sites with SSL vulnerable to XSS and open redirects Valdis . Kletnieks (May 11)
Re: Howto Simulate a BotNet ? Valdis . Kletnieks (May 06)
Re: Possible DoS in TamperData Add-on v10.1.0 for FireFox 3.0.8 Valdis . Kletnieks (May 03)
Re: [SECURITY] [DSA 1792-1] New drupal6 packages fix multiple vulnerabilities Valdis . Kletnieks (May 12)

Vladimir '3APA3A' Dubrovin

Re: Addendum : [TZO-26-2009] Firefox (all?) Denial of Service through unclamped loop (SVG) Vladimir '3APA3A' Dubrovin (May 27)

VMware Security team

VMSA-2009-0007 VMware Hosted products and ESX and ESXi patches resolve security issues VMware Security team (May 28)

whitehatscum

HackersBlog: WhiteHat Scum whitehatscum (May 28)

Williams, James K

CA20090126-01: CA Anti-Virus Engine Detection Evasion Multiple Vulnerabilities [Updated] Williams, James K (May 12)

Xia Shing Zee

Possible DoS in TamperData Add-on v10.1.0 for FireFox 3.0.8 Xia Shing Zee (May 03)

xssed

Major Greek bank sites with SSL vulnerable to XSS and open redirects xssed (May 10)

ZDI Disclosures

ZDI-09-022: Apple Safari Malformed SVGList Parsing Code Execution Vulnerability ZDI Disclosures (May 20)
ZDI-09-021: Apple QuickTime PICT Unspecified Tag Heap Overflow Vulnerability ZDI Disclosures (May 27)
ZDI-09-020: Microsoft Office PowerPoint Notes Container Heap Overflow Vulnerability ZDI Disclosures (May 13)
ZDI-09-019: Microsoft Office PowerPoint OutlineTextRefAtom Parsing Memory Corruption Vulnerability ZDI Disclosures (May 13)
ZDI-09-023: Apple OS X ATSServer Compact Font Format Parsing Memory Corruption Vulnerability ZDI Disclosures (May 20)