Full Disclosure: by author

408 messages starting May 27 10 and ending May 11 10
Date index | Thread index | Author index


Adam Zabrocki

libopie __readrec() off-by one (FreeBSD ftpd remote PoC) Adam Zabrocki (May 27)

adidas37

0days for sale adidas37 (May 04)

Alberto Trivero

Re: Bonsai Information Security - OS Command Injection in Cacti <= 0.8.7e Alberto Trivero (May 06)

Alex Cachia

Re: Full-Disclosure Digest, Vol 63, Issue 16 Alex Cachia (May 13)
Re: Full-Disclosure Digest, Vol 63, Issue 16 Alex Cachia (May 13)

alien_technology

AlienTechnology ALR-9900 default root password and backdoor alien_technology (May 05)

Ali Polatel

[ANN] Pink's Tracing Library Ali Polatel (May 07)

Andrew Farmer

Re: Drupal Context Module XSS Andrew Farmer (May 10)

Andrew Horton

WhatWeb version 0.4.3 released Andrew Horton (May 24)

ben

Re: blackboard ben (May 30)

Benji

Re: Vulnerabilities in DS-Syndicate for Joomla Benji (May 23)
Re: Vulnerabilities in DS-Syndicate for Joomla Benji (May 26)
Re: 0days for sale Benji (May 04)

Bernd Marienfeldt

Re: iPhone data protection flaw Bernd Marienfeldt (May 18)
iPhone data protection flaw Bernd Marienfeldt (May 17)

Bipin Gautam

Re: Stealthier Internet access Bipin Gautam (May 25)
Stealthier Internet access Bipin Gautam (May 25)
Re: Stealthier Internet access Bipin Gautam (May 25)

Black Packeteer

Drupal storm 1.32 Black Packeteer (May 12)

BMF

Re: Stealthier Internet access BMF (May 25)
Re: Windows' future (reprise) BMF (May 15)
Re: Windows' future (reprise) BMF (May 15)

Cassidy MacFarlane

Recall: Windows' future (reprise) Cassidy MacFarlane (May 18)
Re: Windows' future (reprise) Cassidy MacFarlane (May 18)

Chiko McCormick

Re: 0days for sale Chiko McCormick (May 05)

Christian Sciberras

Re: Stealthier Internet access Christian Sciberras (May 25)
Re: What do you guys think about it? Christian Sciberras (May 31)
Re: WTF eEye Really? Christian Sciberras (May 04)
Re: JavaScript exploits via source code disclosure Christian Sciberras (May 06)
Re: Windows' future (reprise) Christian Sciberras (May 18)
Re: Windows' future (reprise) Christian Sciberras (May 18)
Re: denial-of-service vulnerability in the Microsoft Malicious Software Removal Tool Christian Sciberras (May 23)
Re: Websense Enterprise 6.3.3 Policy Bypass Christian Sciberras (May 30)
Re: go public to avoid jail Christian Sciberras (May 03)
Re: Windows' future (reprise) Christian Sciberras (May 16)
Re: Stealthier Internet access Christian Sciberras (May 25)
Re: go public to avoid jail Christian Sciberras (May 03)
Re: iPhone data protection flaw Christian Sciberras (May 18)
Re: JavaScript exploits via source code disclosure Christian Sciberras (May 06)
Re: denial-of-service vulnerability in theMicrosoft Malicious Software Removal Tool Christian Sciberras (May 23)
Re: Windows' future (reprise) Christian Sciberras (May 25)
Re: Windows' future (reprise) Christian Sciberras (May 16)
Re: go public to avoid jail Christian Sciberras (May 03)
Re: What do you guys think about it? Christian Sciberras (May 28)
Re: What are the basic vulnerabilities of a software? Christian Sciberras (May 31)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Multiple Vulnerabilities in Cisco Network Building Mediator Cisco Systems Product Security Incident Response Team (May 26)
Cisco Security Advisory: Multiple vulnerabilities in Cisco PGW Softswitch Cisco Systems Product Security Incident Response Team (May 12)

Code Audit Labs

[CAL-20100204-3]Adobe Shockwave Player Director File Parsing RCSL Pointer Overwrite Code Audit Labs (May 11)
[CAL-20100204-1]Adobe Shockwave Player Director File Parsing ATOM size infinite loop vulnerability Code Audit Labs (May 11)
[CAL-20100204-2]Adobe Shockwave Player Director File Parsing integer overflow vulnerability Code Audit Labs (May 11)

coderman

Re: newest category of security bugs considered elite ? coderman (May 01)

comex

Re: iPhone data protection flaw comex (May 18)

Core Security Technologies Advisories

Re: [CORE-2010-0405] Adobe Director Invalid Read Core Security Technologies Advisories (May 13)
[CORE-2010-0427] Windows SMTP Service DNS query Id vulnerabilities Core Security Technologies Advisories (May 04)

Core Security Technologies Advisories Team

[CORE-2010-0405] Adobe Director Invalid Read Core Security Technologies Advisories Team (May 11)
[CORE-2010-0428] Microsoft Office Visio DXF File Insertion Buffer Overflow Core Security Technologies Advisories Team (May 04)

Cristofaro Mune

IS-2010-001 - Netgear WG602v4 Saved Pass Stack Overflow Cristofaro Mune (May 30)

Danilo Massa

Events Manager Wordpress plugin Blind SQL Injection Danilo Massa (May 12)

Dan Kaminsky

Re: newest category of security bugs considered elite ? Dan Kaminsky (May 01)
Re: newest category of security bugs considered elite ? Dan Kaminsky (May 01)

dann frazier

[SECURITY] [DSA 2053-1] New Linux 2.6.26 packages fix several issues dann frazier (May 25)

Dan Rosenberg

Scientific Atlanta DPC2100 WebSTAR Cable Modem vulnerabilities Dan Rosenberg (May 24)
Re: Multiple memory corruption vulnerabilities in Ghostscript Dan Rosenberg (May 11)
Multiple memory corruption vulnerabilities in Ghostscript Dan Rosenberg (May 11)

David Guimaraes

SQL injection vulnerability in Zabbix <= 1.8.1 David Guimaraes (May 24)

David Mirza Ahmad

REC0N 2010 (MONTREAL) CFP Reminder & Preview David Mirza Ahmad (May 04)

Debasis Mohanty

C&S Smart Security Score Card Debasis Mohanty (May 26)

Devin Carraway

[SECURITY] [DSA 2044-1] New mplayer packages fix arbitrary code execution Devin Carraway (May 11)
[SECURITY] [DSA 2043-1] New vlc packages fix arbitrary code execution Devin Carraway (May 11)

Dietz Pröpper

Re: go public to avoid jail Dietz Pröpper (May 03)

dink

Re: Websense Enterprise 6.3.3 Policy Bypass dink (May 30)
Websense Enterprise 6.3.3 Policy Bypass dink (May 29)
Re: Websense Enterprise 6.3.3 Policy Bypass dink (May 30)
Re: Websense Enterprise 6.3.3 Policy Bypass dink (May 30)

Don Bailey

Re: newest category of security bugs considered elite ? Don Bailey (May 01)

Dragos Ruiu

EUSecWest 2010 MiniCFP (conf Jun 16/17) and PacSec 2010 CFP (conf Nov 10/11, deadline July 30) Dragos Ruiu (May 27)

Ed Carp

Re: JavaScript exploits via source code disclosure Ed Carp (May 06)
Re: go public to avoid jail Ed Carp (May 03)
Re: go public to avoid jail Ed Carp (May 03)
Re: 0days for sale Ed Carp (May 04)
JavaScript exploits via source code disclosure Ed Carp (May 05)
Re: go public to avoid jail Ed Carp (May 03)
Re: go public to avoid jail Ed Carp (May 03)
Re: go public to avoid jail Ed Carp (May 03)

ekoparty Security Conference

CFP for ekoparty 0x10 is now open! [ Buenos Aires, Argentina ] ekoparty Security Conference (May 11)

Elazar Broad

Re: JavaScript exploits via source code disclosure Elazar Broad (May 06)
Re: Stealthier Internet access Elazar Broad (May 25)
Re: JavaScript exploits via source code disclosure Elazar Broad (May 06)

epixoip

SDS Parent Connect SQL Injection epixoip (May 21)

Eren Türkay

Re: Month of PHP Security - Summary - 1st May - 10th May Eren Türkay (May 11)

☣frank^2

Re: To the police who torment, harass and stalk me. ☣frank^2 (May 26)

Geoff Plourde

Re: smp Capture The Flag (CTF) 2010 Hacker Olympics Geoff Plourde (May 31)
Re: To the police who torment, harass and stalk me. Geoff Plourde (May 30)

Georgi Guninski

Re: WTF eEye Really? Georgi Guninski (May 04)
newest category of security bugs considered elite ? Georgi Guninski (May 01)
Re: Mathematica on Linux /tmp/MathLink vulnerability Georgi Guninski (May 14)
Re: Windows' future (reprise) Georgi Guninski (May 18)
Re: Windows' future (reprise) Georgi Guninski (May 21)
Re: What do you guys think about it? Georgi Guninski (May 31)

Giuseppe Iuculano

[SECURITY] [DSA-2046-1] New phpgroupware packages fix several vulnerabilities Giuseppe Iuculano (May 13)

Gregor Schneider

Re: iPhone data protection flaw Gregor Schneider (May 18)
Re: iPhone data protection flaw Gregor Schneider (May 19)
Re: iPhone data protection flaw Gregor Schneider (May 18)

Hafez Kamal

[HITB-Announce] HITBSecConf2010 - Malaysia Call for Papers Hafez Kamal (May 19)

halfdog

PGP CPU time wasta (never refer to pgp key using 32bit key-id) halfdog (May 11)

Hanno Böck

CMS Made Simple: backend cross site scripting (XSS), CVE-2010-1482 Hanno Böck (May 07)
pmwiki: persistent cross site scripting (XSS), CVE-2010-1481 Hanno Böck (May 07)

Henri Salo

Re: Mathematica on Linux /tmp/MathLink vulnerability Henri Salo (May 13)
ftp-libopie.nse in response to CVE-2010-1938 Henri Salo (May 27)

icesurfer

sqlninja 0.2.5 released! icesurfer (May 09)

iDefense Labs

iDefense Security Advisory 05.11.10: Abobe Shockwave Player Heap Memory Indexing Vulnerability iDefense Labs (May 11)

Ivan .

Web Browsers Leave 'Fingerprints' Behind as You Surf the Net Ivan . (May 18)

Jacqui Caren-home

Re: go public to avoid jail Jacqui Caren-home (May 04)

jai

Re: Sun Solaris 10 libc/*convert (*cvt) buffer overflow jai (May 25)

James Lay

Re: Security Focus down? James Lay (May 17)
Security Focus down? James Lay (May 17)

Jamie Strandboge

[USN-938-1] KDENetwork vulnerability Jamie Strandboge (May 13)
[USN-945-1] ClamAV vulnerabilities Jamie Strandboge (May 27)
[USN-942-1] PostgreSQL vulnerabilities Jamie Strandboge (May 21)

Jan G.B.

Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome and Opera Jan G.B. (May 31)
Re: JavaScript exploits via source code disclosure Jan G.B. (May 06)
Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome and Opera Jan G.B. (May 31)

Jan Schejbal

PuTTY private key passphrase stealing attack Jan Schejbal (May 31)

Jeannette Jarvis

, Jeannette Jarvis (May 30)

Jeffrey Walton

Re: adobe pdf file format Jeffrey Walton (May 31)
Re: What are the basic vulnerabilities of a software? Jeffrey Walton (May 31)
Re: KHOBE - 8.0 earthquake for Windows desktop security software Jeffrey Walton (May 06)
Re: Windows' future (reprise) Jeffrey Walton (May 15)

John Cartwright

List Charter John Cartwright (May 09)

jonathan . plourde

Jonathan Plourde est absent(e). jonathan . plourde (May 18)

J Roger

Re: go public to avoid jail J Roger (May 03)
Re: go public to avoid jail J Roger (May 03)
Re: go public to avoid jail J Roger (May 05)
Re: go public to avoid jail J Roger (May 03)
Re: go public to avoid jail J Roger (May 03)
Re: WTF eEye Really? J Roger (May 05)
Re: go public to avoid jail J Roger (May 03)
Re: go public to avoid jail J Roger (May 05)

Juha-Matti Laurio

Re: ftp-libopie.nse in response to CVE-2010-1938 Juha-Matti Laurio (May 28)
Re: KHOBE - 8.0 earthquake for Windows desktop security software Juha-Matti Laurio (May 13)
Re: Anybody know about 'hack0wn' website please let me know Juha-Matti Laurio (May 24)
Re: Security Focus down? Juha-Matti Laurio (May 17)
Re: Security contact Bluecoat Juha-Matti Laurio (May 07)
Re: Security contact Bluecoat Juha-Matti Laurio (May 07)

Justin Chang

blackboard Justin Chang (May 28)

Justin C. Klein Keane

Re: Drupal Context Module XSS Justin C. Klein Keane (May 11)
Drupal Context Module XSS Justin C. Klein Keane (May 10)
Re: Drupal Context Module XSS Justin C. Klein Keane (May 11)
Re: WTF eEye Really? Justin C. Klein Keane (May 04)
Global Redirect 6.x-1.2 Arbitrary Redirection Justin C. Klein Keane (May 23)
Drupal Chaos Tools Suite (Ctools) Module Multiple Vulns Justin C. Klein Keane (May 20)
Re: Global Redirect 6.x-1.2 Arbitrary Redirection Justin C. Klein Keane (May 23)

Kees Cook

[USN-940-1] Kerberos vulnerabilities Kees Cook (May 19)
[USN-939-1] X.org vulnerabilities Kees Cook (May 18)
[USN-944-1] GNU C Library vulnerabilities Kees Cook (May 25)
[USN-919-1] Emacs vulnerability Kees Cook (May 06)

Kingcope

MDaemon Mailer Daemon Version 11.0.1 (LATEST) Remote File Disclosure Kingcope (May 02)

Konrad Rieck

Call for Papers: EC2ND 2010 Konrad Rieck (May 16)

Larry Seltzer

Re: denial-of-service vulnerability in theMicrosoft Malicious Software Removal Tool Larry Seltzer (May 23)
Re: KHOBE - 8.0 earthquake for Windows desktop security software Larry Seltzer (May 13)

laurent gaffie

Python fuzzing lib released laurent gaffie (May 12)

Leif Nixon

Re: Mathematica on Linux /tmp/MathLink vulnerability Leif Nixon (May 14)

lsi

Re: Windows' future (reprise) lsi (May 16)
Windows' future (reprise) lsi (May 15)
Re: Windows' future (reprise) lsi (May 15)
Re: denial-of-service vulnerability in the Microsoft Malicious Software Removal Tool lsi (May 23)
Re: Windows' future (reprise) lsi (May 15)
Re: Windows' future (reprise) lsi (May 17)
Re: Windows' future (reprise) lsi (May 15)
denial-of-service vulnerability in the Microsoft Malicious Software Removal Tool lsi (May 23)
Re: denial-of-service vulnerability in the Microsoft Malicious Software Removal Tool lsi (May 23)
Re: Windows' future (reprise) lsi (May 15)
Re: Windows' future (reprise) lsi (May 16)
Re: Windows' future (reprise) lsi (May 16)
Re: Windows' future (reprise) lsi (May 17)
Re: Windows' future (reprise) lsi (May 19)
Re: Windows' future (reprise) lsi (May 15)
Re: denial-of-service vulnerability in the Microsoft Malicious Software Removal Tool lsi (May 23)
Re: Windows' future (reprise) lsi (May 17)
Re: Windows' future (reprise) lsi (May 15)

Luciano Bello

[SECURITY] [DSA 2042-1] New iscsitarget packages fix arbitrary code execution Luciano Bello (May 06)

magik

smp Capture The Flag (CTF) 2010 Hacker Olympics magik (May 30)

Major Malfunction

London DEFCON May meet - DC4420 - Wed 26th May 2010 Major Malfunction (May 25)

Maksymilian Arciemowicz

Sun Solaris 10 libc/*convert (*cvt) buffer overflow Maksymilian Arciemowicz (May 21)
Sun Solaris 10 ftpd Cross-site request forgery Maksymilian Arciemowicz (May 21)
Sun Solaris 10 filesystem rm(1), find(1), etc, Denial-of-service Maksymilian Arciemowicz (May 21)

Manuel Fernández Fernández

Bypassing Google Chrome 4 Javascript Filter Manuel Fernández Fernández (May 26)

Marc Deslauriers

[USN-937-1] TeX Live vulnerabilities Marc Deslauriers (May 06)
[USN-936-1] dvipng vulnerability Marc Deslauriers (May 06)
[USN-941-1] MoinMoin vulnerability Marc Deslauriers (May 20)

Marc Olive

Re: JavaScript exploits via source code disclosure Marc Olive (May 06)

Marshall Whittaker

fcc.gov XSS Marshall Whittaker (May 24)

Marsh Ray

Re: Mathematica on Linux /tmp/MathLink vulnerability Marsh Ray (May 15)
Re: go public to avoid jail Marsh Ray (May 03)
Re: Multiple memory corruption vulnerabilities in Ghostscript Marsh Ray (May 11)
Re: KHOBE - 8.0 earthquake for Windows desktop security software Marsh Ray (May 13)
Re: Mathematica on Linux /tmp/MathLink vulnerability Marsh Ray (May 13)
Re: JavaScript exploits via source code disclosure Marsh Ray (May 06)
Re: newest category of security bugs considered elite ? Marsh Ray (May 04)
Re: Stealthier Internet access Marsh Ray (May 25)
Re: JavaScript exploits via source code disclosure Marsh Ray (May 06)
Re: What do you guys think about it? Marsh Ray (May 28)
Re: WTF eEye Really? Marsh Ray (May 04)
Re: go public to avoid jail Marsh Ray (May 03)
Re: WTF eEye Really? Marsh Ray (May 04)

M.B.Jr.

Re: Windows' future (reprise) M.B.Jr. (May 25)

mcfly

e107 Code Execution Exploit (discovered by mopb) mcfly (May 23)

Mercury Vapour

Re: To the police who torment, harass and stalk me. Mercury Vapour (May 26)

Michael Holstein

Re: iPhone data protection flaw Michael Holstein (May 18)

Michael Simpson

Re: Windows' future (reprise) Michael Simpson (May 18)

Michal

Re: To the police who torment, harass and stalk me. Michal (May 27)

Michal Zalewski

Re: WTF eEye Really? Michal Zalewski (May 04)

Mike Hale

Re: WTF eEye Really? Mike Hale (May 04)

Moritz Muehlenhoff

[SECURITY] [DSA 2051-1] New postgresql-8.3 packages fix several vulnerabilities Moritz Muehlenhoff (May 24)
[SECURITY] [DSA 2050-1] New kdegraphics packages fix several vulnerabilities Moritz Muehlenhoff (May 24)

MustDie

Re: DoS vulnerabilities in Firefox, Internet Explorer, Chrome and Opera MustDie (May 30)

MustLive

Vulnerabilities in t3m_cumulus_tagcloud for TYPO3 MustLive (May 05)
Vulnerability in tagcloud for Kasseler CMS MustLive (May 13)
Vulnerability in widget Flash Tag Cloud for Blogsa and other ASP.NET engines MustLive (May 21)
Testing of systems for searching of viruses at web sites MustLive (May 23)
Vulnerabilities in DS-Syndicate for Joomla MustLive (May 23)
New vulnerability in bots of search engines (for security bypass) MustLive (May 16)
Vulnerability in 3D user cloud for Joomla MustLive (May 16)
Cross-Site Scripting vulnerability in Mango MustLive (May 03)
Vulnerabilities in Sebo - webstore MustLive (May 09)
Re: Vulnerabilities in DS-Syndicate for Joomla MustLive (May 27)
Vulnerability in ArtDesign CMS MustLive (May 30)
DoS vulnerabilities in Firefox, Internet Explorer, Chrome and Opera MustLive (May 28)
New vulnerabilities in plugin DS-Syndicate for Joomla MustLive (May 23)
DoS vulnerabilities in Firefox, Internet Explorer, Chrome, Opera and other browsers MustLive (May 18)
Vulnerability in widget Cumulus for BlogEngine.NET MustLive (May 12)

mutiny

Re: go public to avoid jail mutiny (May 03)

n3ptun3

To the police who torment, harass and stalk me. n3ptun3 (May 26)

Nelson Brito

Sample videos for ENG++ Nelson Brito (May 23)

Nick FitzGerald

Re: newest category of security bugs considered elite ? Nick FitzGerald (May 01)
Re: JavaScript exploits via source code disclosure Nick FitzGerald (May 06)
Re: newest category of security bugs considered elite ? Nick FitzGerald (May 01)
Re: JavaScript exploits via source code disclosure Nick FitzGerald (May 06)
Re: adobe pdf file format Nick FitzGerald (May 31)
Re: What are the basic vulnerabilities of a software? Nick FitzGerald (May 31)

Oleksiuk Dmitry

ESET Smart Security LZH archive parsing PoC exploit Oleksiuk Dmitry (May 07)

Paul Schmehl

Re: Windows' future (reprise) Paul Schmehl (May 18)

paul . szabo

Re: Mathematica on Linux /tmp/MathLink vulnerability paul . szabo (May 13)
Re: Mathematica on Linux /tmp/MathLink vulnerability paul . szabo (May 14)
Mathematica on Linux /tmp/MathLink vulnerability paul . szabo (May 13)

Peter Besenbruch

Re: Windows' future (reprise) Peter Besenbruch (May 15)
Re: Multiple memory corruption vulnerabilities in Ghostscript Peter Besenbruch (May 11)
Re: Windows' future (reprise) Peter Besenbruch (May 15)

Pradip Sharma

Re: Security Focus down? Pradip Sharma (May 17)

PsychoBilly

Re: go public to avoid jail PsychoBilly (May 03)
Re: go public to avoid jail PsychoBilly (May 04)
Re: go public to avoid jail PsychoBilly (May 03)
Re: JavaScript exploits via source code disclosure PsychoBilly (May 06)
Re: go public to avoid jail PsychoBilly (May 05)
Re: JavaScript exploits via source code disclosure PsychoBilly (May 06)
Re: go public to avoid jail PsychoBilly (May 04)

Rafael Moraes

What do you guys think about it? Rafael Moraes (May 28)

rajendra prasad

adobe pdf file format rajendra prasad (May 31)
What are the basic vulnerabilities of a software? rajendra prasad (May 31)
Anybody know about "hack0wn" website please let me know rajendra prasad (May 24)

Raphael Geissert

[SECURITY] [DSA-2041-1] New mediawiki packages fix cross-site request forgery Raphael Geissert (May 04)

rdsears

Re: Windows' future (reprise) rdsears (May 15)

rebellis

Re: 0days for sale rebellis (May 04)

research

PR10-03: Authenticated Cross-Site Scripting (XSS) within the Apache Axis2 administration console research (May 21)
Multiple vulnerabilities within 3Com* iMC (Intelligent Management Center) research (May 20)

Robert Portvliet

Re: Security Focus down? Robert Portvliet (May 17)

Rob Fuller

Re: PuTTY private key passphrase stealing attack Rob Fuller (May 31)

Rodrigo Branco

GhostScript Vulnerability Clarification - CVE-2010-1869 Rodrigo Branco (May 18)
HP-UX, IBM AIX, SGI IRIX Remote Vulnerability - CVE-2010-1039 Rodrigo Branco (May 21)

rPath Update Announcements

rPSA-2010-0036-1 openssl openssl-scripts rPath Update Announcements (May 07)
rPSA-2010-0034-1 ntp ntp-utils rPath Update Announcements (May 07)
rPSA-2010-0039-1 openssl openssl-scripts rPath Update Announcements (May 24)
rPSA-2010-0037-1 kernel rPath Update Announcements (May 07)

s2-security

CVE-2010-1454: SpringSource tc Server unauthenticated remote access to JMX interface s2-security (May 18)

Sabahattin Gucukoglu

Re: Windows' future (reprise) Sabahattin Gucukoglu (May 15)

Sam Quigley

Re: Impossible to Maintain Secure Session With Twitter.com Web Interface Sam Quigley (May 03)

Sandra Sendra

[NPA] CFP: International Journal of Network Protocols and Algorithms Sandra Sendra (May 26)

Sebastien Delafond

[SECURITY] [DSA 2052-1] New krb5 packages fix denial of service Sebastien Delafond (May 25)
[SECURITY] [DSA 2045-1] New libtheora packages fix arbitrary code execution Sebastien Delafond (May 12)
[SECURITY] [DSA 2040-1] New squidguard packages fix several vulnerabilities Sebastien Delafond (May 03)
[SECURITY] [DSA 2048-1] New dvipng packages fix arbitrary code execution Sebastien Delafond (May 23)

Sébastien Duquette

Re: WTF eEye Really? Sébastien Duquette (May 05)
GVI 2010-02 Multiple vulnerabilities in Open-AudIT Sébastien Duquette (May 21)
GVI-2010-01 Multiple vulnerabilities in Kapitalist/capitalist Sébastien Duquette (May 13)

Sec News

WTF eEye Really? Sec News (May 04)

Secunia Research

Secunia Research: IrfanView PSD Image Parsing Sign-Extension Vulnerability Secunia Research (May 12)
Secunia Research: KDE KGet metalink "name" Directory Traversal Vulnerability Secunia Research (May 13)
Secunia Research: KDE KGet Insecure File Operation Vulnerability Secunia Research (May 13)
Secunia Research: Adobe Shockwave Player 3D Parsing Memory Corruption Secunia Research (May 12)
Secunia Research: Ziproxy Two Integer Overflow Vulnerabilities Secunia Research (May 24)
Secunia Research: TomatoCMS "q" SQL Injection Vulnerability Secunia Research (May 12)
Secunia Research: Orbit Downloader metalink "name" Directory Traversal Secunia Research (May 20)
Secunia Research: Free Download Manager Four Buffer Overflow Vulnerabilities Secunia Research (May 13)
Secunia Research: Adobe Shockwave Player Asset Entry Parsing Vulnerability Secunia Research (May 12)
Secunia Research: Free Download Manager metalink "name" Directory Traversal Secunia Research (May 13)
Secunia Research: TomatoCMS Script Insertion Vulnerabilities Secunia Research (May 12)
Secunia Research: Adobe Shockwave Player Array Indexing Vulnerability Secunia Research (May 12)
Secunia Research: IrfanView PSD RLE Decompression Buffer Overflow Secunia Research (May 12)
Secunia Research: aria2 metalink "name" Directory Traversal Vulnerability Secunia Research (May 13)
Secunia Research: Adobe Shockwave Player Signedness Error Vulnerability Secunia Research (May 12)
Secunia Research: Adobe Shockwave Player Font Processing Buffer Overflow Secunia Research (May 12)
Secunia Research: Adobe Shockwave Player Integer Overflow Vulnerability Secunia Research (May 12)

security

[ MDVSA-2010:106 ] aria2 security (May 24)
[ MDVSA-2010:092 ] cacti security (May 06)
[ MDVSA-2010:110 ] clamav security (May 27)
CORELAN-10-035 NolaPro Enterprise multiple vulnerabilities Security (May 01)
[ MDVSA-2010:098 ] kdenetwork4 security (May 18)
[ MDVSA-2010:091 ] openoffice.org security (May 04)
[ MDVSA-2010:105 ] openoffice.org security (May 21)
[ MDVSA-2010:109 ] gtk+2.0 security (May 27)
[ MDVSA-2010:107 ] mysql security (May 25)
[ MDVSA-2010:108 ] kolab-horde-framework security (May 26)
[ MDVSA-2010:097 ] pidgin security (May 18)
[ MDVSA-2010:104 ] dovecot security (May 21)
[ MDVSA-2010:099 ] wireshark security (May 18)
[ MDVSA-2010:093 ] mysql security (May 07)
[ MDVSA-2010:108 ] kolab-horde-framework security (May 26)
[ MDVSA-2010:101 ] mysql security (May 19)
[ MDVSA-2010:096 ] tetex security (May 17)
[ MDVSA-2010:102 ] ghostscript security (May 19)
[ MDVSA-2010:100 ] krb5 security (May 19)
[ MDVSA-2010:089 ] gnutls security (May 03)
[ MDVSA-2010:082-1 ] clamav security (May 20)
[ MDVSA-2010:108 ] kolab-horde-framework security (May 26)
[ MDVSA-2010:090 ] samba security (May 04)
[ MDVSA-2010:090-1 ] samba security (May 10)
[ MDVSA-2010:094 ] tetex security (May 12)
[ MDVSA-2010:095 ] libxext security (May 12)
[ MDVSA-2010:103 ] postgresql security (May 20)

shawn Davison

Re: Windows' future (reprise) shawn Davison (May 15)

Siddhartha Jain

Comcast / Scientific Atlanta DPC2100 WebSTAR Cable Modem vulnerabilities Siddhartha Jain (May 26)

Stefan Esser

Month of PHP Security - Summary - 11st May - 21th Stefan Esser (May 21)
Month of PHP Security - Summary - 1st May - 10th May Stefan Esser (May 10)

Steffen Joeris

[SECURITY] [DSA 2049-1] New barnowl packages fix arbitrary code execution Steffen Joeris (May 23)

Steve Tornio

Re: Security contact Bluecoat Steve Tornio (May 07)

stratsec Advisories

stratsec Security Advisory SS-2010-005: Samba Multiple DoS Vulnerabilities stratsec Advisories (May 12)

sunjester

Re: To the police who torment, harass and stalk me. sunjester (May 27)
Re: Anybody know about "hack0wn" website please let me know sunjester (May 24)

T Biehn

Re: What do you guys think about it? T Biehn (May 31)
Re: What are the basic vulnerabilities of a software? T Biehn (May 31)
Re: go public to avoid jail T Biehn (May 03)
Re: JavaScript exploits via source code disclosure T Biehn (May 06)
Re: Stealthier Internet access T Biehn (May 31)
Re: go public to avoid jail T Biehn (May 03)
Re: go public to avoid jail T Biehn (May 03)
Re: What do you guys think about it? T Biehn (May 31)

Thierry Zoller

Security contact Bluecoat Thierry Zoller (May 07)

Thijs Kinkhorst

[SECURITY] [DSA 2047-1] New aria2 packages fix directory traversal Thijs Kinkhorst (May 18)
[SECURITY] [DSA 2052-1] New krb5 packages fix denial of service Thijs Kinkhorst (May 25)
[SECURITY] [DSA 2038-2] New pidgin packages fix regression Thijs Kinkhorst (May 18)

Thor (Hammer of God)

Re: Windows' future (reprise) Thor (Hammer of God) (May 15)
Re: Websense Enterprise 6.3.3 Policy Bypass Thor (Hammer of God) (May 30)
Re: denial-of-service vulnerability in theMicrosoft Malicious Software Removal Tool Thor (Hammer of God) (May 23)
Re: Windows' future (reprise) Thor (Hammer of God) (May 15)
Re: newest category of security bugs considered elite ? Thor (Hammer of God) (May 01)
Re: Websense Enterprise 6.3.3 Policy Bypass Thor (Hammer of God) (May 30)
Re: Windows' future (reprise) Thor (Hammer of God) (May 19)
Re: Windows' future (reprise) Thor (Hammer Of God) (May 18)
Re: Websense Enterprise 6.3.3 Policy Bypass Thor (Hammer of God) (May 30)
Re: Windows' future (reprise) Thor (Hammer of God) (May 18)
Re: iPhone data protection flaw Thor (Hammer of God) (May 18)
Re: Windows' future (reprise) Thor (Hammer of God) (May 17)
Re: denial-of-service vulnerability in the Microsoft Malicious Software Removal Tool Thor (Hammer of God) (May 23)
Re: Windows' future (reprise) Thor (Hammer of God) (May 16)
Re: What do you guys think about it? Thor (Hammer of God) (May 28)
Re: iPhone data protection flaw Thor (Hammer of God) (May 18)
Re: Windows' future (reprise) Thor (Hammer of God) (May 15)
Re: Windows' future (reprise) Thor (Hammer of God) (May 15)
Re: Windows' future (reprise) Thor (Hammer Of God) (May 15)
Re: denial-of-service vulnerability in the Microsoft Malicious Software Removal Tool Thor (Hammer Of God) (May 23)

Tom Grace

Re: 0days for sale Tom Grace (May 04)

Tracy Reed

Re: Stealthier Internet access Tracy Reed (May 25)

usman

xitami-5.0a0-windows DOS usman (May 10)

Usman Saeed

Xitami-5.0a0-windows DOS Usman Saeed (May 10)

Valdis . Kletnieks

Re: iPhone data protection flaw Valdis . Kletnieks (May 18)
Re: JavaScript exploits via source code disclosure Valdis . Kletnieks (May 06)
Re: newest category of security bugs considered elite ? Valdis . Kletnieks (May 04)
Re: iPhone data protection flaw Valdis . Kletnieks (May 18)
Re: Windows' future (reprise) Valdis . Kletnieks (May 18)
Re: go public to avoid jail Valdis . Kletnieks (May 03)
Re: Windows' future (reprise) Valdis . Kletnieks (May 16)
Re: Stealthier Internet access Valdis . Kletnieks (May 25)
Re: Windows' future (reprise) Valdis . Kletnieks (May 16)
Re: iPhone data protection flaw Valdis . Kletnieks (May 18)
Re: Stealthier Internet access Valdis . Kletnieks (May 25)
Re: go public to avoid jail Valdis . Kletnieks (May 03)
Re: Stealthier Internet access Valdis . Kletnieks (May 25)

Vipul Kumra

Re: Security Focus down? Vipul Kumra (May 17)

VMware Security team

VMSA-2010-0008 VMware View 3.1.3 addresses an important cross-site scripting vulnerability VMware Security team (May 05)
VMSA-2010-0009 ESXi ntp and ESX Service Console third party updates VMware Security team (May 27)

vtlists

Re: iPhone data protection flaw vtlists (May 18)

webDEViL

Re: denial-of-service vulnerability in the Microsoft Malicious Software Removal Tool webDEViL (May 23)

werew01f

D-Link DI-724P+ Router - Cross Site Scripting Vulnerability werew01f (May 19)

www.matousec.com - Research

KHOBE - 8.0 earthquake for Windows desktop security software www.matousec.com - Research (May 05)

Zach C.

Re: iPhone data protection flaw Zach C. (May 18)
Re: fcc.gov XSS Zach C. (May 24)
Re: blackboard Zach C. (May 28)
Re: iPhone data protection flaw Zach C. (May 18)

ZDI Disclosures

ZDI-10-084: HP OpenView NNM getnnmdata.exe CGI Invalid MaxAge Remote Code Execution Vulnerability ZDI Disclosures (May 11)
ZDI-10-089: Adobe Shockwave Director PAMI Chunk Remote Code Execution Vulnerability ZDI Disclosures (May 11)
ZDI-10-085: HP OpenView NNM getnnmdata.exe CGI Invalid ICount Remote Code Execution Vulnerability ZDI Disclosures (May 11)
ZDI-10-087: Adobe Shockwave Invalid Offset Memory Corruption Remote Code Execution Vulnerability ZDI Disclosures (May 11)
ZDI-10-080: HP Mercury LoadRunner Agent Trusted Input Remote Code Execution Vulnerability ZDI Disclosures (May 06)
ZDI-10-088: Adobe Shockwave Player 3D Parsing Memory Corruption Vulnerability ZDI Disclosures (May 11)
ZDI-10-082: HP OpenView NNM netmon sel CGI Variable Remote Code Execution Vulnerability ZDI Disclosures (May 11)
ZDI-10-081: HP OpenView NNM ovet_demandpoll sel CGI Variable Format String Remote Code Execution Vulnerability ZDI Disclosures (May 11)
ZDI-10-083: HP OpenView NNM snmpviewer.exe CGI Multiple Variable Remote Code Execution Vulnerability ZDI Disclosures (May 11)
ZDI-10-086: HP OpenView NNM getnnmdata.exe CGI Invalid Hostname Remote Code Execution Vulnerability ZDI Disclosures (May 11)