Full Disclosure: by date

561 messages starting Apr 01 11 and ending Apr 30 11
Date index | Thread index | Author index


Friday, 01 April

BSD derived RFC3173 IPComp encapsulation will expand arbitrarily nested payload Tavis Ormandy
Re: itunes.apple.com owned by webapp malicious host matador matador
Re: itunes.apple.com owned by webapp malicious host Benji
Re: itunes.apple.com owned by webapp malicious host matador matador
Re: itunes.apple.com owned by webapp malicious host Benji
Re: itunes.apple.com owned by webapp malicious host matador matador
Re: BSD derived RFC3173 IPComp encapsulation will expand arbitrarily nested payload Jeffrey Walton
Re: Vulnerabilities in MaxSite Anti Spam Image for WordPress John Belushae
Re: I got hacked McGhee, Eddie
Re: Vulnerabilities in *McAfee.com Cal Leeming
Re: INSECT Pro 2.5 Release - Web scanner tool Esteban Cañizal
password.incleartext.com Inc leartext
Re: INSECT Pro 2.5 Release - Web scanner tool rdsears
Re: I got hacked Valery Marchuk
The US Government Officially Confirms the Existence of Extraterrestrial Civilizations Valery Marchuk
The US Government Officially Confirms the Existence of Extraterrestrial Civilizations Valery Marchuk
Vulnerabilities in MyBB MustLive
Re: Vulnerabilities in MaxSite Anti Spam Image for WordPress Valdis . Kletnieks
[ MDVSA-2011:058 ] quagga security
ZDI-11-041: (0day) Multiple Browser Node Processing Stack Overflow Vulnerability ZDI Disclosures
Re: The US Government Officially Confirms the Existence of Extraterrestrial Civilizations McGhee, Eddie
Re: The US Government Officially Confirms the Existence of Extraterrestrial Civilizations McGhee, Eddie
Re: The US Government Officially Confirms the Existence of Extraterrestrial Civilizations Maksim . Filenko
Re: The US Government Officially Confirms the Existence of Extraterrestrial Civilizations Cal Leeming
Plumber Injection Attack in Bowser's Castle Nelson Elhage
Whitepaper: Assessing Cloud Node Security Context IS - Disclosure
WWWroot spring cleaning of neglected files TOR
Re: INSECT Pro 2.5 Release - Web scanner tool Esteban Cañizal
Re: ZDI-11-041: (0day) Multiple Browser Node Processing Stack Overflow Vulnerability Christian Sciberras
Re: Vulnerabilities in MaxSite Anti Spam Image for WordPress MustLive
Re: The US Government Officially Confirms the Existence of Extraterrestrial Civilizations Cal Leeming
Re: BSD derived RFC3173 IPComp encapsulation will expand arbitrarily nested payload Tavis Ormandy
Re: Vulnerabilities in MaxSite Anti Spam Image for WordPress Thor (Hammer of God)
Re: Plumber Injection Attack in Bowser's Castle Dan Kaminsky
Re: Vulnerabilities in MaxSite Anti Spam Image for WordPress Григорий Братислава
Re: INSECT Pro 2.5 Release - Web scanner tool Mario Vilas
Re: Plumber Injection Attack in Bowser's Castle Zach C.
Microsoft VISTA TCP/IP heap buffer underflow J. Oquendo
Re: Microsoft VISTA TCP/IP heap buffer underflow Thor (Hammer of God)
[ MDVSA-2011:059 ] ffmpeg security
Re: ZDI-11-041: (0day) Multiple Browser Node Processing Stack Overflow Vulnerability McGhee, Eddie
Re: The US Government Officially Confirms the Existence of Extraterrestrial Civilizations Dan Becker
[ MDVSA-2011:060 ] ffmpeg security
[USN-1101-1] Qt vulnerabilities Micah Gersten
[ MDVSA-2011:061 ] ffmpeg security
[ MDVSA-2011:062 ] ffmpeg security
ZDI-11-114: RealNetworks Helix Server x-wap-profile Format String Remote Code Execution Vulnerability Fly, Kate
ZDI-11-115: IBM solidDB solid.exe Authentication Bypass Remote Code Execution Vulnerability ZDI Disclosures

Saturday, 02 April

Released Asterisk Password Spy ! Nagareshwar Talekar
[SECURITY] [DSA 2209-1] tgt security update Moritz Muehlenhoff
Re: bcwars.com & pokerrpg.com hacked 200k Email and Plain text passwords Slatki4ka Slatki4ka
Defcon CTF moves to the Rio for 2011 and HBGary is awarded contract to clean CTF sheep stalls! vulc@n ddtek
Defcon CTF moves to the Rio for 2011 and HBGary is awarded contract to clean CTF sheep stalls! vulc@n ddtek
AoF, IAA, XML Injection and XSS vulnerabilities in MyBB MustLive

Sunday, 03 April

[SECURITY] [DSA 2210-1] tiff security update Thijs Kinkhorst
Cisco ACS 1121 Appliance BMC default credentials Jonathan Waldo
Facebook URL redirection issue kiran Maraju
Re: Facebook URL redirection issue Javier Bassi
USBsploit 0.6b - added: Autosploit CLI and customized infections of the original EXE and PDF USB files xpo xpo
Re: Facebook URL redirection issue Chris Evans
Re: Facebook URL redirection issue Christian Sciberras

Monday, 04 April

[ MDVSA-2011:063 ] xmlsec1 security
[HITB-Announce] HITBSecConf2011 - Malaysia Call for Papers Now Open Hafez Kamal
DC4420 - London DEFCON - April meet - Wednesday 22nd April 2011 Major Malfunction
Re: DC4420 - London DEFCON - April meet - Wednesday 20th April 2011 Major Malfunction
SLAAC Attack - 0day Windows Network Interception Configuration Vulnerability Adam Behnke
[ MDVSA-2011:064 ] libtiff security
Re: DC4420 - London DEFCON - April meet - Wednesday 20th April 2011 Adam Laurie
Re: SLAAC Attack - 0day Windows Network Interception Configuration Vulnerability ascii
Re: SLAAC Attack - 0day Windows Network Interception Configuration Vulnerability Valdis . Kletnieks
ZDI-11-116: Novell File Reporter Agent XML Parsing Remote Code Execution Vulnerability ZDI Disclosures
Microsoft Windows shmedia.dll Division By Zero, Explore.exe DOS exploit . fb1h2s Hack 2 Secure
[USN-1102-1] tiff vulnerability Marc Deslauriers
[USN-1103-1] tex-common vulnerability Marc Deslauriers
[USN-1104-1] FFmpeg vulnerabilities Marc Deslauriers

Tuesday, 05 April

seriously? Ian French
VMWare Manage Subscriptions - Info Disclosure p8x
Re: seriously? Benji
Re: seriously? Juha-Matti Laurio
Re: seriously? Michael Lenz
WhatWeb v0.4.7 Released. Performance enhancements and bug fixes Andrew Horton
[ MDVSA-2011:065 ] logrotate security
[ MDVSA-2011:066 ] rsync security
[USN-1105-1] Linux kernel vulnerabilities Kees Cook

Wednesday, 06 April

XSS Vulnerability in Redmine 1.0.1 to 1.1.1 Netsparker Advisories
[ MDVSA-2011:067 ] subversion security
ICMPv6 Router Announcement flooding denial of service affecting multiple systems Marc Heuse
Re: seriously? Albert Sunseri
Re: WhatWeb v0.4.7 Released. Performance enhancements and bug fixes Nima Talebi
Warning - t00ls.org hidden callback in shells Seanybob
Re: Vulnerabilities in *McAfee.com MustLive
Re: password.incleartext.com Maksim . Filenko
Re: password.incleartext.com Romain Bourdy
Re: password.incleartext.com Mario Vilas
Re: password.incleartext.com Thor (Hammer of God)
[USN-1106-1] NSS vulnerabilities Micah Gersten
[SECURITY] CVE-2011-1183 Apache Tomcat security constraint bypass Mark Thomas
[SECURITY] CVE-2011-1475 Apache Tomcat information disclosure Mark Thomas
ISC DHCP Client [3.0.x to 4.2.x] Arbitrary Command Execution (CVE-2011-0997) Ryan Sears
Re: ISC DHCP Client [3.0.x to 4.2.x] Arbitrary Command Execution (CVE-2011-0997) Marcus Meissner
[USN-1107-1] x11-xserver-utils vulnerability Marc Deslauriers
Re: password.incleartext.com Peter Osterberg
Re: password.incleartext.com T Biehn
Re: ISC DHCP Client [3.0.x to 4.2.x] Arbitrary Command Execution (CVE-2011-0997) Valdis . Kletnieks
Re: ISC DHCP Client [3.0.x to 4.2.x] Arbitrary Command Execution (CVE-2011-0997) coderman
Re: ISC DHCP Client [3.0.x to 4.2.x] Arbitrary Command Execution (CVE-2011-0997) Valdis . Kletnieks
Re: password.incleartext.com Romain Bourdy
Re: ISC DHCP Client [3.0.x to 4.2.x] Arbitrary Command Execution (CVE-2011-0997) coderman
Re: password.incleartext.com Valdis . Kletnieks
[SECURITY] [DSA 2211-1] vlc security update Moritz Muehlenhoff
Re: ISC DHCP Client [3.0.x to 4.2.x] Arbitrary Command Execution (CVE-2011-0997) Nick FitzGerald
Re: password.incleartext.com Thor (Hammer of God)

Thursday, 07 April

Re: password.incleartext.com Peter Osterberg
SEC Consult SA-20110407-0 :: Libmodplug ReadS3M Stack Overflow SEC Consult Vulnerability Lab
Re: password.incleartext.com Cal Leeming
Re: password.incleartext.com Cal Leeming
Re: password.incleartext.com Cal Leeming
Re: password.incleartext.com Inc Leartext
Cipher detection Maksim . Filenko
new facebook and twitter flaw StrawHat
[ MDVSA-2011:068 ] firefox security
Re: password.incleartext.com Valdis . Kletnieks
Re: password.incleartext.com Cal Leeming
Re: Cipher detection Thor (Hammer of God)
Re: Cipher detection Tim
Re: Cipher detection Valdis . Kletnieks
Maia Mailguard is affected by a XSS vulnerability in version 1.0.2a Mario López Jiménez
Re: Cipher detection Cal Leeming
O2 classic router: persistent cross site scripting (XSS) and cross site request forgery (CSRF) Hanno Böck
phplist: cross site request forgery (CSRF), CVE-2011-0748 Hanno Böck

Friday, 08 April

[ MDVSA-2011:069 ] php security
[ MDVSA-2011:070 ] gdm security
Fiberhome HG-110 (adsl/router) vulnerabilities Zerial.
[ MDVSA-2011:071 ] kdelibs4 security
[ MDVSA-2011:072 ] gwenhywfar security
[SECURITY] [DSA 2212-1] tmux security update Nico Golde
Re: Cipher detection Maksim . Filenko
ITSEC vendor presentation for dummies Z
Re: Cipher detection ichib0d crane
Google URL Redirection satyam pujari
Announcing TakeDownCon Dallas - May 14-19 - Dallas, TX EC-Council USA
[SECURITY] [DSA 2213-1] x11-xserver-utils security update Nico Golde
[SECURITY] [DSA 2214-1] ikiwiki security update Nico Golde
Re: ITSEC vendor presentation for dummies Atul Agarwal
Re: Cipher detection Tim
Re: Cipher detection Brandon Enright

Saturday, 09 April

Google Search Feature Exploitation Scenario satyam pujari
Re: ITSEC vendor presentation for dummies Z
Vulnerabilities in Live Wire Edition theme for WordPress MustLive
Re: Google Search Feature Exploitation Scenario Nick FitzGerald
Gmail login status detect IEhrepus
[SECURITY] [DSA 2215-1] gitolite security update Nico Golde

Sunday, 10 April

Re: Google Search Feature Exploitation Scenario satyam pujari
Re: Fiberhome HG-110 (adsl/router) vulnerabilities Zerial.
[NETRAGARD-20110910 SECURITY ADVISORY] [Sonexis ConferenceManager Blind SQL Injection Vulnerability] [ http://www.netragard.com ] Netragard Advisories
[NETRAGARD-20110910 (Corrected) SECURITY ADVISORY] [Sonexis ConferenceManager Blind SQL Injection Vulnerability] [ http://www.netragard.com ] Netragard Advisories
how would browser vendors deal with $O(10^k)$ fake certs? Georgi Guninski
Re: how would browser vendors deal with $O(10^k)$ fake certs? Pavel Kankovsky

Monday, 11 April

[SECURITY] [DSA 2216-1] isc-dhcp security update Nico Golde
[SECURITY] [DSA 2217-1] dhcp3 security update Nico Golde
Add URL to Google.com Captcha Bypass sandeep l337
[Tool] sqlmap 0.9 released Miroslav Stampar
[ MDVSA-2011:073 ] dhcp security
ZDI-11-117: McAfee Firewall Reporter GeneralUtilities.pm isValidClient Authentication Bypass Vulnerability ZDI Disclosures
ZDI-11-118: Novell ZENworks Asset Management Path Traversal File Overwrite Remote Code Execution Vulnerability ZDI Disclosures
Vulnerabilities in The Gazette Edition theme for WordPress MustLive
[USN-1108-1] DHCP vulnerability Marc Deslauriers
INSECT Pro 2.5.1 released runlvl
rPSA-2011-0013-1 openssl openssl-scripts rPath Update Announcements
rPSA-2011-0014-1 httpd mod_ssl rPath Update Announcements
Medium severity flaw in Konqueror Tim Brown
Re: INSECT Pro 2.5.1 released kralor
Re: Medium severity flaw in Konqueror Vincent Danen
Re: INSECT Pro 2.5.1 released Pete Smith

Tuesday, 12 April

Re: INSECT Pro 2.5.1 released Michal Zalewski
Re: Google Search Feature Exploitation Scenario Leon Kaiser
Re: Google Search Feature Exploitation Scenario david.klein () Ipfocus com au
Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) Steven Pinkham
Re: Google Search Feature Exploitation Scenario Nick FitzGerald
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) phil
[SECURITY] [DSA 2218-1] vlc security update Nico Golde
Re: Medium severity flaw in Konqueror Tim Brown
Re: Google Search Feature Exploitation Scenario Cal Leeming
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) Christopher Truncer
List Charter John Cartwright
Re: Google Search Feature Exploitation Scenario satyam pujari
Re: Google Search Feature Exploitation Scenario satyam pujari
Re: Google Search Feature Exploitation Scenario Valdis . Kletnieks
[IMF 2011] Call for Participation Oliver Goebel
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) Tim
[ MDVSA-2011:074 ] qt4 security
Re: [ MDVSA-2011:074 ] qt4 Zach C.
Vulnerabilities in Live Wire 2.0 and Live Wire Style themes for WordPress MustLive
ZDI-11-119: (Pwn2Own) Microsoft Internet Explorer onPropertyChange Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-120: Microsoft Office Excel RealTimeData Record Parsing Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-121: Microsoft Office XP Data Validation Record Parsing Remote Code Execution Vulnerability ZDI Disclosures
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) Steve Pinkham
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) rancor
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) Ryan Sears
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) Michal Zalewski
ZDI-11-122: RealNetworks RealPlayer OpenURLInDefaultBrowser Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-123: Microsoft PowerPoint TimeCommandBehaviorContainer Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-124: Microsoft PowerPoint TimeColorBehaviorContainer Floating Point Record Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-125: Microsoft Office PowerPoint PersistDirectoryEntry Remote Code Execution Vulnerability ZDI Disclosures
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) Pete Smith
Re: Google Search Feature Exploitation Scenario Nick FitzGerald
Re: Google Search Feature Exploitation Scenario Cal Leeming
guess what this does.. Cal Leeming
Re: Announcement posts and the charter (was Re: INSECT Pro 2.5.1 released) Raj Mathur (राज माथुर)
Re: guess what this does.. Christian Sciberras

Wednesday, 13 April

Re: guess what this does.. Christian Sciberras
nSense-2011-001: VeryPDF pdf2tif Henri Lindberg
Re: Google Search Feature Exploitation Scenario Javier Bassi
[USN-1109-1] GIMP vulnerabilities Marc Deslauriers
[DCA-2011-0010] TOTVS Microsiga Protheus ERP - Memory Corruption Flavio do Carmo Junior aka waKKu
Re: guess what this does.. Cal Leeming
Re: guess what this does.. -= Glowing Doom =-
[WEB SECURITY] Secure Browsing Announcement: Comitari released new version which includes support for Firefox Shlomi Narkolayev
Re: Google Search Feature Exploitation Scenario Cal Leeming
Re: guess what this does.. Cal Leeming
Decrypting the password of encrypted pdf Jav Angelo
Re: guess what this does.. Christian Sciberras
Re: guess what this does.. Christian Sciberras
[PRE-SA-2011-03] Denial-of-service vulnerability in EFI partition handling code of the Linux kernel Timo Warns
CYBSEC Advisory 2011 0401 Cross-Site Scripting (XSS) in Blackberry WebDesktop CYBSEC Labs
Microsoft Patches Binary Planting Issues In Various Vendors' Products ACROS Security Lists
Re: guess what this does.. Chris M
Vulnerabilities in TimThumb and multiple themes for WordPress MustLive
WordPress.com root level compromise nix
Re: guess what this does.. Cal Leeming
Re: guess what this does.. Cal Leeming
Re: guess what this does.. Cal Leeming
Re: guess what this does.. Cal Leeming
ZDI-11-126: CA Total Defense Suite Heartbeat Web Service Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-128: CA Total Defense Suite UnassignFunctionalUsers Stored Procedure SQL Injection Vulnerability ZDI Disclosures
ZDI-11-127: CA Total Defense Suite UNCWS Web Service getDBConfigSettings Credential Disclosure Vulnerability ZDI Disclosures
ZDI-11-129: CA Total Defense Suite UnassignAdminRoles Stored Procedure SQL Injection Vulnerability ZDI Disclosures
ZDI-11-130: CA Total Defense Suite UNC Management Console DeleteFilter SQL Injection Vulnerability ZDI Disclosures
ZDI-11-131: CA Total Defense Suite NonAssignedUserList Stored Procedure SQL Injection Vulnerability ZDI Disclosures
ZDI-11-132: CA Total Defense Suite UNC Management Console DeleteReportLayout SQL Injection Vulnerability ZDI Disclosures
ZDI-11-133: CA Total Defense Suite UNC Management Console DeleteReports SQL Injection Vulnerability ZDI Disclosures
ZDI-11-134: CA Total Defense Suite UNC Management Console RegenerateReport SQL Injection Vulnerability ZDI Disclosures
CA20110413-01: Security Notice for CA Total Defense Kotas, Kevin J
Re: how would browser vendors deal with $O(10^k)$ fake certs? Marsh Ray

Thursday, 14 April

300 Comparative Tests Driven Against Suricata and Snort Sebastien Damaye
Hacking The Trading Floor Talk code wanted James Kerry
Recon 2011 - Accepted Talks , Training, Call For Papers Reminder - July 8 to 10, 2011 - Montreal, Quebec hfortier
[USN-1110-1] KDE-Libs vulnerabilities Jamie Strandboge
Vulnerabilities in Mimbo Pro theme for WordPress MustLive
Re: Vulnerabilities in Mimbo Pro theme for WordPress Michele Orru
Hullo how are ya Phil
ZDI-11-135: (Pwn2Own) WebKit WBR Tag Removal Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-104: (Pwn2Own) Webkit CSS Text Element Count Remote Code Execution Vulnerability ZDI Disclosures
cPassMan v1.82 Arbitrary File Download - SOS-11-004 Lists
Another Microsoft (and other) IPv6 security issue: sniffer detection Marc Heuse

Saturday, 16 April

XSS, AoF and IAA vulnerabilities in PHP-Nuke MustLive

Sunday, 17 April

CFP: Extended deadline for i-Society 2011 Call for papers
Call for workshop proposals: The 4th IEEE International Conference on Cyber, Physical, and Social Computing (CPSCom 2011) Jaime Lloret Mauri
Re: New vulnerabilities in eSitesBuilder security curmudgeon
ClubHack Magazine Issue 15-April 2011 released Abhijeet Patil
Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Bgr R
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Benji
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Jeffrey Walton
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Benji
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Benji
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Benji
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Valdis . Kletnieks
Re: how would browser vendors deal with $O(10^k)$ fake certs? Pavel Kankovsky
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Valdis . Kletnieks
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED kitetoa () kitetoa com
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Jeffrey Walton
Launched DirectoryScanner - Free Directory Server fingerprinting tool SecurityXploded Inc
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Cal Leeming
Nuclear Strike on Libya (XSS) security
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Thor (Hammer of God)
Vulnerabilities in multiple themes for Drupal MustLive
Re: New vulnerabilities in eSitesBuilder Henri Salo
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Valdis . Kletnieks
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Rob Nelson
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Thor (Hammer of God)
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Thor (Hammer of God)
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Thor (Hammer of God)
Re: Nuclear Strike on Libya (XSS) Christian Sciberras
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Christian Sciberras

Monday, 18 April

Re: MSA-2524375 fraudulent digital certification updates on Windows Phone アドリアンヘンドリック
Re: DC4420 - London DEFCON - April meet - Wednesday 20th April 2011 Major Malfunction
Re: guess what this does.. huj huj huj
Re: guess what this does.. huj huj huj
[USN-1113-1] Postfix vulnerabilities Marc Deslauriers
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Cal Leeming
European Space Agency (ESA.INT) Hacked by TinKode TinKode InSecurity
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Patrick R
Analise Viral Hacxx 20
Plone CVE-2011-0720 details Mark Jenkins
Re: guess what this does.. Cal Leeming
Windows Credentials Editor (WCE) v1.2 release Hernan Ochoa
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED satyam pujari
ZDI-11-136: IBM Tivoli Directory Server ibmslapd.exe SASL Bind Request Remote Code Execution Vulnerability ZDI Disclosures
[USN-1114-1] KDENetwork vulnerability Jamie Strandboge
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Cal Leeming
[SECURITY] [DSA 2219-1] xmlsec1 security update Thijs Kinkhorst
JDownloader Password Decryptor - New Tool from SecurityXploded SecurityXploded Group

Tuesday, 19 April

Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED satyam pujari
Windows Synchronization Object Vulnerabilites in Antivirus Suites Lists
MS mhtml patch bypass sec yun
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Cal Leeming
Re: Florida Power & Light Company (FPL) Fort Sumner Wind turbine Control SCADA was HACKED Paul Schmehl
[Annoucement] ClubHack Magazine - Call for Articles Abhijeet Patil
[SECURITY] [DSA 2220-1] Request Tracker security update Florian Weimer
[USN-1115-1] language-selector vulnerability Kees Cook
Insect Pro - Looking for partners runlvl
[USN-1108-2] DHCP vulnerability Marc Deslauriers
Re: Insect Pro - Looking for partners John Jacobs
Re: Insect Pro - Looking for partners Oscar Marques
Re: Insect Pro - Looking for partners Manichattan at gotham.us
ZDI-11-137: Oracle Application Server Authentication Bypass Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-138: Webkit Undefined DOM Prototype Attach Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-139: Webkit Anonymous Frame Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-140: Webkit Detached Body Element Remote Code Execution Vulnerability ZDI Disclosures
Re: Insect Pro - Looking for partners phil
[SECURITY] [DSA 2221-1] Mojolicious security update Moritz Muehlenhoff
[USN-1116-1] Kerberos vulnerability Kees Cook
Re: New vulnerabilities in eSitesBuilder MustLive
[USN-1117-1] PolicyKit vulnerability Kees Cook
Insecure Defaults In PPLiveAV Client dink

Wednesday, 20 April

Re: Insect Pro - Looking for partners gold flake
[USN-1118-1] OpenSLP vulnerability Marc Deslauriers
Cybsec Advisory 2011 0403 OracleJSP Demos Reflected XSS CYBSEC Labs
Cybsec Advisory 2011 0402 Multiple XSSs in Oracle JD Edwards EnterpriseOne CYBSEC Labs
XSS on NIC Chile Zerial.
[ MDVSA-2011:075 ] kdelibs4 security
Re: XSS on NIC Chile Zerial.
Vulnerabilities in multiple themes for ExpressionEngine MustLive
[SECURITY] [DSA 2222-1] tinyproxy security update Moritz Muehlenhoff
[SECURITY] [DSA 2223-1] doctrine security update Florian Weimer
Reversing x64 TDSS at InfoSec Institute Adam Behnke
iPhone Geolocation storage Thor (Hammer of God)
Re: iPhone Geolocation storage Michele Orru
Re: iPhone Geolocation storage Michael Holstein
[USN-1119-1] Linux kernel (OMAP4) vulnerabilities Kees Cook
[SECURITY] [DSA 2224-1] openjdk-6 security update Florian Weimer
Re: iPhone Geolocation storage Thor (Hammer of God)
Got an iPhone or 3G iPad? Apple is recording your moves Ivan .
Re: iPhone Geolocation storage Marcio B. Jr.
Re: iPhone Geolocation storage Ivan .
Re: iPhone Geolocation storage Zach C.
Re: iPhone Geolocation storage Ivan .
Re: iPhone Geolocation storage Jeffrey Walton
Re: iPhone Geolocation storage Marcio B. Jr.
Re: iPhone Geolocation storage Zach C.
CA20110420-02: Security Notice for CA Output Management Web Viewer Williams, James K
Re: iPhone Geolocation storage Marcio B. Jr.
CA20110420-01: Security Notice for CA SiteMinder Williams, James K
Re: iPhone Geolocation storage Ivan .

Thursday, 21 April

[USN-1120-1] tiff vulnerability Marc Deslauriers
[ MDVSA-2011:076 ] xrdb security
Re: iPhone Geolocation storage darthludi
Re: iPhone Geolocation storage Jeffrey Walton
Re: iPhone Geolocation storage Michael Holstein
AST-2011-005: File Descriptor Resource Exhaustion Asterisk Security Team
AST-2011-006: Asterisk Manager User Shell Access Asterisk Security Team
Re: Got an iPhone or 3G iPad? Apple is recording your moves nix
Re: Got an iPhone or 3G iPad? Apple is recording your moves Michal Zalewski
Re: Got an iPhone or 3G iPad? Apple is recording your moves Thor (Hammer of God)
Re: iPhone Geolocation storage Brandon Matthews
Re: XSS on NIC Chile ksha
Re: iPhone Geolocation storage Cal Leeming
Re: iPhone Geolocation storage Cal Leeming
inject sql in buenosaires.gov.ar injec7or hell
Vulnerable Sites Database Highlights april 2011 Tomy
Launched IDM Password Decryptor ! SecurityXploded Group
hack.lu 2011 CFP hack.lu 2011 information team
Re: iPhone Geolocation storage mark seiden

Friday, 22 April

[ MDVSA-2011:077 ] krb5 security
Re: Got an iPhone or 3G iPad? Apple is recording your moves Brian Anderson
Re: Got an iPhone or 3G iPad? Apple is recording your moves mark seiden
Gomez eats the weak Psuedo Hahaha Fairy
Multiple vulnerabilities in MyBB MustLive
Re: Gomez eats the weak Valdis . Kletnieks
Released Pcprox RFID Reader – New Tool for reading RFID/HID Card SecurityXploded Group
inject sql in utn.edu.ar injec7or hell

Saturday, 23 April

[ MDVSA-2011:078 ] libtiff security
Anonymous Rulez Pietro de Medici
Re: Anonymous Rulez the nlhcrew
Re: Gomez eats the weak ichib0d crane
Re: Gomez eats the weak Albert Sunseri
Re: inject sql in utn.edu.ar CnCxzSec衰仔
inject sql in mininterior.gov.ar injec7or hell
java.com | Arbitrary URL Redirect Vulnerability YGN Ethical Hacker Group
Re: inject sql in utn.edu.ar fernando
Re: Multiple vulnerabilities in MyBB Andrew Farmer
Re: inject sql in utn.edu.ar injec7or hell
Re: Got an iPhone or 3G iPad? Apple is recording your moves Ivan .
XSS in Webmin 1.540 + exploit for privilege escalation Javier Bassi
Unbelivable, Pangolin 3.2.3 free edition released Beatyou Man

Sunday, 24 April

Vulnerabilities in multiple themes and components for Joomla MustLive
Released Pcprox RFID Reader – New Tool for reading RFID/HID Card SecurityXploded Group
inject sql in mecon.gov.ar injec7or hell
Re: Unbelivable, Pangolin 3.2.3 free edition released Steven Pinkham
infosec rot (was Re: Gomez eats the weak) coderman
Re: Unbelivable, Pangolin 3.2.3 free edition released Beatyou Man

Monday, 25 April

Re: Unbelivable, Pangolin 3.2.3 free edition released Jacqui Caren-home
Re: [webmin-devel] XSS in Webmin 1.540 + exploit for privilege escalation Jamie Cameron
[ACM CCS'11] Reminder: Deadline Approaching (May 6, 2011) ACM CCS 2011
Re: Unbelivable, Pangolin 3.2.3 free edition released Rain Liu
Re: Unbelivable, Pangolin 3.2.3 free edition released Jacqui Caren-home
[TOOL RELEASE] T50 - an Experimental Mixed Packet Injector ( v5.3) Nelson Brito
Re: Unbelivable, Pangolin 3.2.3 free edition released Steven Pinkham
Disabling iPhone Tracking ? Do it Yourself (DiT?DiY) Laurent OUDOT at TEHTRI-Security
CVE-2010-0216 MediaCast Password Dump Vulnerability Daniel Clemens
Re: persistent tracking playas WAS: Got an iPhone or 3G iPad? Apple is recording your moves [Full-Disclosure Digest, Vol 74, Issue 43] SMiller
Unbelivable, Pangolin 3.2.3 free edition released Cal Leeming
Re: Disabling iPhone Tracking ? Do it Yourself (DiT?DiY) Jeffrey Walton
Re: Multiple vulnerabilities in MyBB MustLive
Released Xfire Password Decryptor – Xfire Password Recovery Software SecurityXploded Group
Re: Unbelivable, Pangolin 3.2.3 free edition released Zach C.
inject sql in juventud.gov.ar injec7or hell
Re: Multiple vulnerabilities in MyBB Zach C.
inject SQL in ddrr.poderjudicial.gob.bo injec7or hell
Re: Got an iPhone or 3G iPad? Apple is recording your moves Ivan .
Re: Got an iPhone or 3G iPad? Apple is recording your moves Jeffrey Walton

Tuesday, 26 April

Re: iPhone Geolocation storage Ivan .
iPhone Geolocation storage: Levinson write-up [Re: Full-Disclosure Digest, Vol 74, Issue 47] SMiller
[SECURITY] [DSA 2225-1] asterisk security update Moritz Muehlenhoff
[SECURITY] [DSA 2226-1] libmodplug security update Moritz Muehlenhoff
Default config bug leaves 394, 000 computers open proxies Adam Behnke
CA20110426-01: Security Notice for CA Arcot WebFort Versatile Authentication Server Kotas, Kevin J
Re: iPhone Geolocation storage Ivan .
Trustwave WebDefend Privilege Escalation Vulnerability Nathan Power
Re: Warning - t00ls.org hidden callback in shells Seanybob
Multiple XSS+XSRF found at Movistar Chile ksha

Wednesday, 27 April

B-Sides Vienna | NinjaCon 11 Call For Participation astera
Insomnia : ISVA-110427.1 - IGSS ODBC Service Remote Overflow Vulnerability advisories
Insomnia : ISVA-110427.2 - Up.Time Administration Interface Authentication Bypass Vulnerability advisories
Stress Testing Tools Sec Tools
New malware research posted on Resources at InfoSec Institute Terrence Miltner
Re: iPhone Geolocation storage nix
Re: Stress Testing Tools Xavier Mertens
Re: Disabling iPhone Tracking ? Do it Yourself (DiT?DiY) Charles Polisher
Re: Disabling iPhone Tracking ? Do it Yourself (DiT?DiY) Christian Sciberras
[USN-1124-1] rsync vulnerability Marc Deslauriers
Cisco Security Advisory: Cisco Wireless LAN Controllers Denial of Service Vulnerability Cisco Systems Product Security Incident Response Team
Cisco Security Advisory: Multiple Vulnerabilities in Cisco Unified Communications Manager Cisco Systems Product Security Incident Response Team
Re: Multiple vulnerabilities in MyBB Henri Salo
Re: Multiple vulnerabilities in MyBB Zach C.
[USN-1125-1] PCSC-Lite vulnerability Marc Deslauriers
Re: Multiple vulnerabilities in MyBB MustLive
Re: iPhone Geolocation storage Ivan .
[Onapsis Security Advisory 2011-003] SAP WebAS ITS Mobile Start Service Multiple Vulnerabilities Onapsis Research Labs
[Onapsis Security Advisory 2011-004] SAP WebAS ITS Mobile Test Service Multiple Vulnerabilities Onapsis Research Labs
[Onapsis Security Advisory 2011-005] SAP Enterprise Portal Path Disclosure Onapsis Research Labs
[Onapsis Security Advisory 2011-006] Oracle JD Edwards JDENET Kernel Denial of Service Onapsis Research Labs
[Onapsis Security Advisory 2011-007] Oracle JD Edwards JDENET Kernel Shutdown Onapsis Research Labs
[Onapsis Security Advisory 2011-008] Oracle JD Edwards JDENET Kernel Shutdown Onapsis Research Labs
[Onapsis Security Advisory 2011-009] Oracle JD Edwards JDENET SawKernel Remote Password Disclosure Onapsis Research Labs

Thursday, 28 April

[Onapsis Security Advisory 2011-010] Oracle JD Edwards JDENET Remote Logging Deactivation Onapsis Research Labs
[Onapsis Security Advisory 2011-011] Oracle JD Edwards JDENET Buffer Overflow Onapsis Research Labs
[Onapsis Security Advisory 2011-012] Oracle JD Edwards JDENET Firewall Bypass Onapsis Research Labs
[Onapsis Security Advisory 2011-013] Oracle JD Edwards JDENET USRBROADCAST Denial of Service Onapsis Research Labs
Re: Stress Testing Tools Oscar
Barracuda backdoor Tõnu Samuel
Insect Pro - Advisory 2011 0427 Persistent Cross-Site Scripting (XSS) in xMatters AlarmPoint Juan Sacco
Re: Barracuda backdoor Benji
Re: Stress Testing Tools BGA
Re: Barracuda backdoor Tõnu Samuel
Re: Barracuda backdoor Christian Sciberras
Re: Barracuda backdoor James Lay
Re: Barracuda backdoor Tõnu Samuel
hashdays 2011 - Call for Papers (#days CFP) Hashdays CFP
Re: Barracuda backdoor corpus.defero
Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient Juan Sacco
Requesting/Reserving CVE Question ctruncer
Re: Barracuda backdoor ichib0d crane
Re: Requesting/Reserving CVE Question Henri Salo
ZDI-11-143: Cisco Unified CallManager xmldirectorylist.jsp SQL Injection Vulnerability ZDI Disclosures
Re: Barracuda backdoor corpus.defero
Re: Barracuda backdoor Valdis . Kletnieks
VMSA-2011-0007 VMware ESXi and ESX Denial of Service and third party updates for Likewise components and ESX Service Console VMware Security Team
Cisco Linksys WRT54G XSS Vulnerability Justin Klein Keane
Re: Barracuda backdoor Marsh Ray
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient Mario Vilas
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient Valdis . Kletnieks
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient ichib0d crane
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient ghost
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient ichib0d crane
Re: iPhone Geolocation storage Ivan .
Re: Barracuda backdoor bk
Re: Barracuda backdoor bk
Re: Stress Testing Tools Gaurang Pandya
Re: Barracuda backdoor Valdis . Kletnieks
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient Mario Vilas
Re: iPhone Geolocation storage Christian Sciberras
Re: Requesting/Reserving CVE Question Marcus Meissner

Friday, 29 April

Computer name should match with your real identity? taneja . security
Re: iPhone Geolocation storage Valdis . Kletnieks
Re: iPhone Geolocation storage Christian Sciberras
Re: Computer name should match with your real identity? Guy
Re: Pangolin spam TOR
Re: Pangolin spam Raj Mathur (राज माथुर)
Re: Barracuda backdoor Tõnu Samuel
Re: Barracuda backdoor Tõnu Samuel
Re: Barracuda backdoor Cal Leeming
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient Cal Leeming
Re: Barracuda backdoor Tõnu Samuel
Re: Barracuda backdoor Hartley, Christopher J.
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient Cal Leeming
Re: Stress Testing Tools -= Glowing Doom =-
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient -= Glowing Doom =-
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient -= Glowing Doom =-
Re: Computer name should match with your real identity? -= Glowing Doom =-
Re: Stress Testing Tools Shinnok
Re: Pangolin spam Cal Leeming
Re: Barracuda backdoor Cal Leeming
Re: Computer name should match with your real identity? Cal Leeming
Re: Computer name should match with your real identity? Brian Anderson
Re: Barracuda backdoor bk
Re: Pangolin spam Peter Osterberg
Re: Barracuda backdoor Valdis . Kletnieks
Re: Insect Pro - Advisory 2011 0428 - Zero Day - Heap Buffer Overflow in xMatters APClient R0me0 ***
Re: Barracuda backdoor bk
Code Execution vulnerability в WordPress MustLive
ZDI-11-144: HP Data Protector Backup Client Service EXEC_BAR Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-145: HP Data Protector Backup Client Service GET_FILE Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-147: HP Data Protector Backup Client Service EXEC_INTEGUTIL Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-146: HP Data Protector Backup Client Service EXEC_SCRIPT Remote Code Execution Vulnerability ZDI Disclosures
Re: Cisco Linksys WRT54G XSS Vulnerability Nick Boyce
ZDI-11-148: HP Data Protector Backup Client Service stutil Message Processing Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-149: HP Data Protector Backup Client Service HPFGConfig Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-150: HP Data Protector Backup Client Service omniiaputil Message Processing Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-151: HP Data Protector Backup Client Service bm Message Processing Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-152: HP Data Protector Backup Client Service GET_FILE Directory Traversal Vulnerability ZDI Disclosures
ZDI-11-153: Embarcadero Interbase connect Request Parsing Remote Code Execution Vulnerability ZDI Disclosures
Re: Computer name should match with your real identity? Michael Holstein
[USN-1126-1] PHP vulnerabilities Steve Beattie
Re: Computer name should match with your real identity? phil
Re: [Full-disclosure] Code Execution vulnerability в WordPress Christian Sciberras
Re: Barracuda backdoor Cal Leeming
Re: Stress Testing Tools Teófilo Couto
Re: Barracuda backdoor Cal Leeming
Re: Computer name should match with your real identity? Csirt, Star
Re: [Full-disclosure] Code Execution vulnerability в WordPress -= Glowing Doom =-
[USN-1112-1] Firefox and Xulrunner vulnerabilities Micah Gersten
[USN-1123-1] xulrunner-1.9.1 vulnerabilities Micah Gersten
Re: Barracuda backdoor Benji
psnhack - playstation network hack satyam pujari
Re: psnhack - playstation network hack Benji
[USN-1121-1] firefox vulnerabilities Micah Gersten
Re: psnhack - playstation network hack satyam pujari
Stress Testing / DoS Tools comparison Sec Tools
Re: Computer name should match with your real identity? lists
pytbull, IDS/IPS Testing Framework Sebastien Damaye

Saturday, 30 April

BEGIN PGP PRIVATE KEY BLOCK satyam pujari
Re: Code Execution vulnerability в WordPress Milan Berger
Re: psnhack - playstation network hack Benji
Re: psnhack - playstation network hack satyam pujari
[ MDVSA-2011:079 ] firefox security
[SECURITY] [DSA 2227-1] iceape security update Moritz Muehlenhoff
Re: psnhack - playstation network hack Thor (Hammer of God)
Re: Unbelivable, Pangolin 3.2.3 free edition released Jacqui Caren-home
Re: BEGIN PGP PRIVATE KEY BLOCK Valdis . Kletnieks
Re: BEGIN PGP PRIVATE KEY BLOCK Gary Baribault