Full Disclosure: by date

367 messages starting Jul 01 11 and ending Jul 31 11
Date index | Thread index | Author index


Friday, 01 July

Re: OpenSSH 3.5p1 Remote Root Exploit for FreeBSD Darren Tucker
Re: [Spanish] Curso gratuito: Linux exploit development - ASCII Armor Bypass Return-To-PLT Pavel Carrillo
SEC Consult SA-20110701-0 :: Multiple SQL injection vulnerabilities in WordPress SEC Consult Vulnerability Lab
Vulnerabilities in developer.apple.com YGN Ethical Hacker Group
NetBSD 5.1 libc/net multiple functions stack buffer overflow Maksymilian Arciemowicz
Re: S3cC0n Security Conference s3cc0n Conference
Working Remote Root Exploit for OpenSSH 3.4p1 (FreeBSD) HI-TECH .
Re: Working Remote Root Exploit for OpenSSH 3.4p1 (FreeBSD) HI-TECH .
Re: Working Remote Root Exploit for OpenSSH 3.4p1 (FreeBSD) Benji
ZDI-11-232: HP iNode Management Center iNodeMngChecker.exe Remote Code Execution Vulnerability ZDI Disclosures
[SECURITY] [DSA 2267-1] perl security update Moritz Muehlenhoff
[SECURITY] [DSA 2268-1] iceweasel security update Moritz Muehlenhoff
[SECURITY] [DSA 2262-2] php5 update Moritz Muehlenhoff
[SECURITY] [DSA 2269-1] iceape security update Moritz Muehlenhoff
[SECURITY] [DSA 2270-1] qemu-kvm security update Moritz Muehlenhoff
Calcuttatelephones.com Database Disclosure, BSNL- Dotsoft (Super Admin) Auth Bypass Vulnerability Pradip Sharma

Saturday, 02 July

[SECURITY] [DSA 2271-1] curl security update Giuseppe Iuculano
WebSurgery v0.5 - web app testing SuRGeoNiX
SnoopServlet vuln to xss Saleh
security in 2011 Oliver Pinter
Re: security in 2011 phocean

Sunday, 03 July

noise Jonathan Brossard
Re: noise Jeffrey Walton
Re: noise Stefan Jon Silverman
looking for old school disco jonny

Monday, 04 July

Possible Code Execution vulnerability in WordPress ? Marc Manthey
Portech MV-372 Mobile VoIP Multiple Vulnerabilities Zsolt Imre
an old bug for a new job ? cve-2004-0194 exploit dev
You a trollin' t0hitsugu
Re: You a trollin' James Matthews
Re: security in 2011 Cédric Jeanneret
VSFTPd backdoor AD
Re: security in 2011 Nahuel Grisolia
stuxnet source code phocean
Re: stuxnet source code the nlhcrew
Re: stuxnet source code Laurelai
Re: stuxnet source code phocean

Tuesday, 05 July

Re: security in 2011 josen
Security Advisory: CVE-2011-2465 ISC BIND 9 Remote Crash with Certain RPZ Configurations Barry Greene
Security Advisory: CVE-2011-2464 - ISC BIND 9 Remote packet Denial of Service against Authoritative and Recursive Servers Barry Greene
[SECURITY] [DSA 2272-1] bind9 security update Florian Weimer
Fwd: RFC 6274 on Security Assessment of the Internet Protocol Version 4 Fernando Gont
PenTestIT.com RSS feed suspicius ector dulac
Re: PenTestIT.com RSS feed suspicius Andrew Farmer
Re: PenTestIT.com RSS feed suspicius The Security Community
Re: PenTestIT.com RSS feed suspicius The Security Community
Ubuntu: reseed(8), random.org, and HTTP request Jeffrey Walton
Re: PenTestIT.com RSS feed suspicius Nick FitzGerald
Re: PenTestIT.com RSS feed suspicius Andrew Farmer

Wednesday, 06 July

Re: Ubuntu: reseed(8), random.org, and HTTP request coderman
Re: Ubuntu: reseed(8), random.org, and HTTP request Jeffrey Walton
Re: OpenSSH 3.5p1 Remote Root Exploit for FreeBSD Dag-Erling Smørgrav
Re: PenTestIT.com RSS feed suspicius Metahuman
Re: Ubuntu: reseed(8), random.org, and HTTP request Jeffrey Walton
Re: Joomla! 1.6.3 and lower | Multiple Cross Site Scripting (XSS) Vulnerabilities Henri Salo
Re: in_midi multiple vulnerabilities in Winamp 5.61 Henri Salo
Re: Ubuntu: reseed(8), random.org, and HTTP request Jamie Strandboge
Re: SEC Consult SA-20110701-0 :: Multiple SQL injection vulnerabilities in WordPress Henri Salo
Cisco Security Advisory: Cisco Content Services Gateway Denial of Service Vulnerability Cisco Systems Product Security Incident Response Team
Re: Ubuntu: reseed(8), random.org, and HTTP request Jonathan Le Vigouroux
A oracle injection on CNN WooYun
[SECURITY] [DSA 2273-1] icedove security update Moritz Muehlenhoff
Re: Ubuntu: reseed(8), random.org, and HTTP request Michal Zalewski
Re: Ubuntu: reseed(8), random.org, and HTTP request Michal Zalewski
Re: OpenSSH 3.5p1 Remote Root Exploit for FreeBSD Markus Friedl

Thursday, 07 July

Is there a system or program which presents HTTP response count 김무성
Security Advisory: CVE-2011-2516 Cantor, Scott E.
Re: Is there a system or program which presents HTTP response count Jacqui Caren-home
Re: Is there a system or program which presents HTTP response count Jacqui Caren-home
Re: Is there a system or program which presents HTTP response count Jacqui Caren-home
Re: Is there a system or program which presents HTTP response count Ed Carp
phpMyAdmin 3.x Multiple Remote Code Executions Mango
Re: Is there a system or program which presents HTTP response count adam
[SECURITY] [DSA 2274-1] wireshark security update Moritz Muehlenhoff
ZDI-11-233: Symantec Web Gateway forget.php SQL Injection Vulnerability ZDI Disclosures
Re: Is there a system or program which presentsHTTP response count kz20fl
Dell iDRAC6 phil
Re: Dell iDRAC6 Jeffrey Walton
Re: Dell iDRAC6 chris

Friday, 08 July

Re: Is there a system or program which presents HTTP response count William Reyor
[SECURITY] [DSA 2275-1] openoffice.org security update Nico Golde
Detailes of the latest phpMyAdmin flaws Mango
Extended: hashdays 2011 - Call for Papers (#days CFP) Hashdays CFP
Binary Planting Goes "Any File Type" ACROS Security Lists
XerXes DoS tool Leak. not so 0day now! anonymous-tips
Re: Binary Planting Goes "Any File Type" kyle kemmerer
Re: XerXes DoS tool Leak. not so 0day now! Laurelai Storm
ABZs of Cybersecurity Pete Herzog
Re: XerXes DoS tool Leak. not so 0day now! Laurelai Storm
Re: Binary Planting Goes "Any File Type" Dan Kaminsky
Re: Binary Planting Goes "Any File Type" anonymous-tips
Re: XerXes DoS tool Leak. not so 0day now! anonymous-tips
Re: Binary Planting Goes "Any File Type" Tim
Re: XerXes DoS tool Leak. not so 0day now! Laurelai
Re: XerXes DoS tool Leak. not so 0day now! anonymous-tips
phpMyAdmin 3.x preg_replace RCE POC Mango
Re: Binary Planting Goes "Any File Type" Dan Kaminsky
Re: Binary Planting Goes "Any File Type" Mitja Kolsek
Re: XerXes DoS tool Leak. not so 0day now! Sanguinarious Rose
EC-Council's Sanjay Bavisi Hacking Series: Identifying Target IPs and Monitoring Google IPs Ron Goldstien
Re: XerXes DoS tool Leak. not so 0day now! Sanguinarious Rose
Re: XerXes DoS tool Leak. not so 0day now! Laurelai

Saturday, 09 July

Re: Binary Planting Goes "Any File Type" Mario Vilas
Re: EC-Council's Sanjay Bavisi Hacking Series: Identifying Target IPs and Monitoring Google IPs Christian Sciberras
Re: Binary Planting Goes "Any File Type" Mitja Kolsek
Re: Binary Planting Goes "Any File Type" Mitja Kolsek
List Charter John Cartwright
Re: phpMyAdmin 3.x preg_replace RCE POC nix
Multiple Cross-Site Scripting vulnerabilities in WebCalendar sschurtz () t-online de
Re: Binary Planting Goes "Any File Type" Tim
Re: phpMyAdmin 3.x preg_replace RCE POC Ryan Sears
Re: phpMyAdmin 3.x preg_replace RCE POC Mango
Re: phpMyAdmin 3.x preg_replace RCE POC Mango
Re: phpMyAdmin 3.x preg_replace RCE POC Tweedle Doh

Sunday, 10 July

Re: Binary Planting Goes "Any File Type" Thierry Zoller
Re: Binary Planting Goes "Any File Type" Mitja Kolsek
Re: Binary Planting Goes "Any File Type" Mitja Kolsek
Joomla Content Manager 1.5 Mail Fun Tomm Foo
phpMyAdmin 3.x preg_replace RCE POC Mango
Re: Joomla Content Manager 1.5 Mail Fun Nick FitzGerald
Re: EC-Council's Sanjay Bavisi Hacking Series: Identifying Target IPs and Monitoring Google IPs Michael Thomas

Monday, 11 July

Semi 0day DNS Invalid Compression attack David
[SECURITY] [DSA 2276-1] asterisk security update Luciano Bello
[SECURITY] [DSA 2277-1] xml-security-c security update Nico Golde
Learning Social Engineering? Maxim Veksler
Re: Learning Social Engineering? Dobbins, Roland
Re: Semi 0day DNS Invalid Compression attack Kai
Re: Learning Social Engineering? Sherwyn
[HITB-Announce] REMINDER: HITB2011 - Malaysia Call for Papers Closes on the 15th Hafez Kamal
Re: Learning Social Engineering? w0lfd33m
ZDI-11-234: Trend Micro Control Manager CasLogDirectInsertHandler.cs Remote Code Execution Vulnerability ZDI Disclosures
Prontus CMS: Cross-Site Scripting vulnerability Zerial.
Re: Prontus CMS: Cross-Site Scripting vulnerability Zerial.
paypal RandallM
Re: paypal Gary Baribault
Re: paypal corrupt
Alice (Telefonica Germany) Modem 1111 DoS + XSS Moritz Naumann

Tuesday, 12 July

[SECURITY] [DSA 2276-2] asterisk regression update Luciano Bello
Re: Learning Social Engineering? Maxim Veksler
Re: paypal Neusbeer
Re: Binary Planting Goes "Any File Type" Aleksandr Yampolskiy
Mobilkom Austria XSSes bosti . be
Re: (Something or other) w0lfd33m
Re: (Something or other) w0lfd33m
[Announcement] ClubHack Magazine Issue 18-July2011 Released Abhijeet Patil
Encrypted files and the 5th amendment Thor (Hammer of God)
Re: Encrypted files and the 5th amendment Thor (Hammer of God)
Re: Encrypted files and the 5th amendment James Rankin
Re: Encrypted files and the 5th amendment Tim
ZDI-11-235: TrendMicro Control Manager CASProcessor.exe BLOB Remote Code Execution Vulnerability ZDI Disclosures
Re: Encrypted files and the 5th amendment Paul Schmehl
Re: Encrypted files and the 5th amendment Abdelkader Boudih
Re: Encrypted files and the 5th amendment Tim
Re: Encrypted files and the 5th amendment Thor (Hammer of God)
Re: Encrypted files and the 5th amendment Christian Sciberras
Re: (Something or other) Tomm Foo
Analyzing the Biggest Bank Robbery in History Pete Herzog
Re: Encrypted files and the 5th amendment james
Re: Encrypted files and the 5th amendment Chris Harries
printers used for espionage Jason Ellison
Re: Encrypted files and the 5th amendment Michael Holstein
Re: Encrypted files and the 5th amendment Tim
Re: printers used for espionage Volker Tanger
Re: Encrypted files and the 5th amendment Tim
Re: Encrypted files and the 5th amendment Thor (Hammer of God)
Re: Encrypted files and the 5th amendment Abdelkader Boudih
Re: Encrypted files and the 5th amendment Tim
Re: Encrypted files and the 5th amendment Ferenc Kovacs
Re: Encrypted files and the 5th amendment Thor (Hammer of God)
Re: (Something or other) Jaded
Re: Encrypted files and the 5th amendment Callum Finlayson
Re: Encrypted files and the 5th amendment Louis McCoy
Re: Encrypted files and the 5th amendment Mike Ingram
Re: Encrypted files and the 5th amendment Tim
Re: Encrypted files and the 5th amendment Tim
Re: Encrypted files and the 5th amendment phil
Re: Encrypted files and the 5th amendment Tim
Re: printers used for espionage Elazar Broad
Re: printers used for espionage Nicolas RUFF

Wednesday, 13 July

Re: Encrypted files and the 5th amendment Mike
Re: Encrypted files and the 5th amendment 夜神 岩男
New link, No Login required: Analyzing the Biggest Bank Robbery in History Pete Herzog
[Annoucement] ClubHack Magazine - Call for Articles Abhijeet Patil
Re: Encrypted files and the 5th amendment Michael Krymson
DC4420 - London DEFCON - July meet - Tuesday 19th July 2011 Major Malfunction
Re: DC4420 - London DEFCON - July meet - Tuesday 19th July 2011 Major Malfunction
Spooks really call em "Whizz" and "do cyber" Jacqui Caren-home
Vodafone Phone Hacking Scandal - Femto hacked rm
Re: Analyzing the Biggest Bank Robbery in History John Lowry
Skype <= 5.3.0.120 persistent Cross-Site Scripting Issue Levent Kayan
Torque Server Buffer Overflow Vulnerability Adam Zabrocki
Re: (Something or other) Jin Fu Tan
Re: Vodafone Phone Hacking Scandal - Femto hacked Jacqui Caren-home
Re: Vodafone Phone Hacking Scandal - Femto hacked Michael Holstein
Re: (Something or other) Jeff Blaum

Thursday, 14 July

Re: Semi 0day DNS Invalid Compression attack Francisco J . Gómez Rodríguez
Re: Skype <= 5.3.0.120 persistent Cross-Site Scripting Issue Levent Kayan
code.google.com 500 Internal Server Error Shlomi Fish
code.google.com 500 Internal Server Error Shlomi Fish

Friday, 15 July

SOngs.pk Hacked ! By Indian Hacker Team (Due to Mumbai Terror) Silic0n
Re: Spooks really call em "Whizz" and "do cyber" Georgi Guninski
Re: SOngs.pk Hacked ! By Indian Hacker Team (Due to Mumbai Terror) webDEViL
Re: SOngs.pk Hacked ! By Indian Hacker Team (Due to Mumbai Terror) Valdis . Kletnieks
Re: SOngs.pk Hacked ! By Indian Hacker Team (Due to Mumbai Terror) Naresh Jha
Re: SOngs.pk Hacked ! By Indian Hacker Team (Dueto Mumbai Terror) w0lfd33m

Saturday, 16 July

MyST BlogSite | Multiple Vulnerabilities YGN Ethical Hacker Group
SQL injection in DBIS Anonymous
Interactive World SQL Injection Vulnerability [ Multiple Vulnerabilities ] cyber netron
[SECURITY] [DSA 2254-2] oprofile security update Luciano Bello
Code Execution vulnerabilities in TinyBrowser MustLive
Re: SOngs.pk Hacked ! By Indian Hacker Team (Due to Mumbai Terror) Georgi Guninski
Re: SOngs.pk Hacked ! By Indian Hacker Team (Dueto Mumbai Terror) Andrew Farmer
Re: SOngs.pk Hacked ! By Indian Hacker Team (Dueto Mumbai Terror) w0lfd33m

Sunday, 17 July

Multiple CSRF and XSS vulnerabilities in ADSL modem Callisto 821+ MustLive
[SECURITY] [DSA 2278-1] horde3 security update Steffen Joeris
Digging Inside VxWorks (OS + Firmware) - The Holistic Security SecNiche Security Labs
Re: SOngs.pk Hacked ! By Indian Hacker Team (Due to Mumbai Terror) Xa Buri

Monday, 18 July

Reminder - DeepSec 2011 Call For Papers DeepSec Conference
ZDI-11-236: EMC Documentum eRoom Indexing Server OpenText HummingBird Connector Remote Code Execution Vulnerability ZDI Disclosures
[ MDVSA-2011:112 ] blender security
[ MDVSA-2011:114 ] blender security
Multiple CSRF and XSS vulnerabilities in ADSL modem Callisto 821+ MustLive
bsuite <= 4.0.7 Permanent XSS (Remote add admin) - Wordpress plugin R00T_ATI
wp-e-commerce <= 3.8.4 Sql injection - Wordpress plugin R00T_ATI
Friendly sudo reminder ... Doug Huff
Friendly sudo reminder ... Doug Huff
Re: Friendly sudo reminder ... Doug Huff

Tuesday, 19 July

[SECURITY] [DSA 2279-1] libapache2-mod-authnz-external security update Steffen Joeris
"full-disclosure () lists grok org uk" <full-disclosure () lists grok org uk>, cyber netron
Neudimenxion CMS SQL Injection cyber netron
Centralia Sql Injenction cyber netron
Call for Papers: ICITST-2011 Call for papers
Re: Possible Code Execution vulnerability in WordPress ? Henri Salo
It's just getting worse Thor (Hammer of God)
[SECURITY] [DSA 2280-1] libvirt security update Steffen Joeris
innerHTML allocation size overflow crashes some browsers Susam Pal
Hacked servers mining for bitcoins? Robin
Re: Hacked servers mining for bitcoins? Zach C.
Re: Hacked servers mining for bitcoins? Chris M
Re: Hacked servers mining for bitcoins? Peter Dawson
H2HC Brazil (Hackers 2 Hackers Conference) 8th Edition - Call for Papers Rodrigo Rubira Branco (BSDaemon)
Re: It's just getting worse Jeffrey Walton
Oracle Sun GlassFish Enterprise Server Stored XSS Vulnerability - Security Advisory - SOS-11-009 Lists

Wednesday, 20 July

Re: [BMSA-2009-07] Backdoor in PyForum Henri Salo
Re: It's just getting worse Valdis . Kletnieks
Fwd: Joomla! Security News Henri Salo
Phone Scam Dave
Re: Phone Scam Henri Salo
Re: It's just getting worse Jeffrey Walton
Re: Phone Scam Jacqui Caren-home
Re: Phone Scam Andy McKnight
[ MDVSA-2011:115 ] bind security
[Spanish content] Curso gratuito: Exploit development - Linux / Windows runlvl
Re: Phone Scam Thor (Hammer of God)
Re: Phone Scam Dave
Cisco Security Advisory: Cisco ASR 9000 Series Routers Line Card IP Version 4 Denial of Service Vulnerability Cisco Systems Product Security Incident Response Team
Cisco Security Advisory: Cisco SA 500 Series Security Appliances Web Management Interface Vulnerabilities Cisco Systems Product Security Incident Response Team
ZDI-11-237: CA Total Defense Suite Gateway Security Malformed HTTP Packet Remote Code Execution Vulnerability ZDI Disclosures
CA20110720-01: Security Notice for CA Gateway Security and Total Defense Kotas, Kevin J
Securstar - DriveCrypt - Local Kernel Denial of Service/Memory Disclosure/Privilege Escalation Digit Security Research
Re: Phone Scam Nick FitzGerald
Re: Hacked servers mining for bitcoins? Andy Isaacson

Thursday, 21 July

Multipath-ROP: Tools available? halfdog
Re: Multipath-ROP: Tools available? Stefan Esser
Re: Full-Disclosure Digest, Vol 77, Issue 23 Almaz
Re: Multipath-ROP: Tools available? Dan Rosenberg
[SECURITY] [DSA 2281-1] opie security update Steffen Joeris
ZDI-11-238: Oracle Secure Backup validate_login Command Injection Remote Code Execution Vulnerability ZDI Disclosures
Re: Multipath-ROP: Tools available? halfdog
Re: Multipath-ROP: Tools available? halfdog
Joomla! 1.7.0-RC and lower | Multiple Cross Site Scripting (XSS) Vulnerabilities YGN Ethical Hacker Group
Joomla! 1.7.0-RC and lower | Multiple Cross Site Scripting (XSS) Vulnerabilities YGN Ethical Hacker Group
A pound of flesh: how Cisco's "unmitigated gall" derailed one man's life Ivan .

Friday, 22 July

Fwd: Re: phone scam and RC server Dave
Permutation Oriented Programming Nelson Brito
[ISecAuditors Security Advisories] Facebook social network vulnerable to Open Redirect ISecAuditors Security Advisories
Re: A pound of flesh: how Cisco's "unmitigated gall" derailed one man's life sunjester
Re: A pound of flesh: how Cisco's "unmitigated gall" derailed one man's life Gary Baribault
[ MDVSA-2011:116 ] curl security
[ MDVSA-2011:117 ] krb5-appl security
Re: A pound of flesh: how Cisco's "unmitigated gall" derailed one man's life kyle kemmerer
Hiding Backdoors in plain sight, again CoreTex Team
URL Spoofing vulnerability in different browsers MustLive
Re: Hiding Backdoors in plain sight, again Valdis . Kletnieks
Re: URL Spoofing vulnerability in different browsers Gynvael Coldwind
Re: URL Spoofing vulnerability in different browsers Chris Evans
Re: URL Spoofing vulnerability in different browsers Chris Truncer
Why Block Mail-archive.com? Sabahattin Gucukoglu
Re: URL Spoofing vulnerability in different browsers Mario Vilas
Re: URL Spoofing vulnerability in different browsers Michal Zalewski
Re: Multipath-ROP: Tools available? halfdog
Re: URL Spoofing vulnerability in different browsers Ryan Sears

Saturday, 23 July

Re: Multipath-ROP: Tools available? halfdog
Re: URL Spoofing vulnerability in different browsers James Voss
2nd CfP: CYBERLAWS 2012 || January 30 - February 4, 2012 - Valencia, Spain Sandra Sendra
Comnexx Content Management System SQL Injection cyber netron

Sunday, 24 July

Re: [Bkis] sNews 1.7.1 XSS vulnerability Henri Salo
Re: Drupal Data Module Multiple Vulnerabilities Henri Salo
[ MDVSA-2011:118 ] wireshark security
Universidad Santiago de Chile - PWNED by AntisecCL antiseccl
phpMyAdmin 3.x Conditional Session Manipulation Mango
Declarative Security - Browser Addons (Firefox) SecNiche Security Labs

Monday, 25 July

CISS Research Team Advisory: CVE-2011-0222 CISSRT Hot Summer
CFP Securitybyte India Papers, Call For
[SECURITY] [DSA 2282-1] qemu-kvm security update Moritz Muehlenhoff
[SECURITY] [DSA 2283-1] krb5-appl security update Moritz Muehlenhoff
Advisory to is expose Sabu others is Pizdas Григорий Братислава
[SECURITY] [DSA 2284-1] opensaml2 security update Moritz Muehlenhoff
[ MDVSA-2011:119 ] libsndfile security
Re: Advisory to is expose Sabu others is Pizdas root
Re: Hiding Backdoors in plain sight, again Ariel Waissbein
OWASP AppSec USA Pre-conference Challenge #3 - July Adam Baso
Full disclosure is arrest of Sabu Григорий Братислава
Re: Full disclosure is arrest of Sabu Laurelai Storm
Re: Full disclosure is arrest of Sabu Laurelai Storm
TWSL2011-007: iOS SSL Implementation Does Not Validate Certificate Chain Trustwave Advisories
[SECURITY] [DSA 2285-1] mapserver security update Nico Golde
SQL Injection on http://www.salk.edu/events/index.php?id=150 Madhur Ahuja
Google.com - Open Redirect Piotr Duszynski

Tuesday, 26 July

[RAID 2011] Call for Participation RAID 2011
null informal meets (Jakarta | Las Vegas) null Team
ICQ 7.5 Client - remote client hijacking vulnerability (0day) Levent Kayan
[Tool] DoS for OpenSLP (and others) Nicolas Grégoire
Hacking IPv6 Networks (slides) Fernando Gont
[SECURITY] [DSA 2286-1] phpmyadmin security update Thijs Kinkhorst
Re: [ article ] How to secure medical data on your iPhone Jeffrey Walton

Wednesday, 27 July

[ MDVSA-2011:120 ] freetype2 security
[ MDVSA-2011:121 ] samba security
ZDI-11-239: Apple Safari Webkit FrameOwner Element Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-240: Apple Safari Webkit SVG Marker Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-241: Webkit setAttributes attributeChanged Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-242: Apple Safari Rendering Object Body Detachment Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-243: WebKit ContentEditable Inline Style Remote Code Execution Vulnerability ZDI Disclosures
DEFCON Travelers.. Don't just go Nathan Power
TeamSHATTER Security Advisory: Oracle Enterprise Manager vulnerable to Cross-site request forgery Shatter
TeamSHATTER Security Advisory: Oracle Enterprise Manager vulnerable to XSS (notifRuleInfo$mode page) Shatter
TeamSHATTER Security Advisory: Oracle Enterprise Manager vulnerable to XSS (sitemap page) Shatter
TeamSHATTER Security Advisory: Oracle Enterprise Manager vulnerable to XSS (metricDetail$type page) Shatter
[Onapsis Research Labs] New SAP Security In-Depth issue - The Invoker Servlet: A Dangerous Detour into SAP Java Solutions Onapsis Research Labs

Thursday, 28 July

Re: [BMSA-2009-07] Backdoor in PyForum Henri Salo
Two security issues fixed in ioQuake3 engine Thilo Schulz
Skype - local & remote Denial Of Service vulnerability - crash exploit (0day) Levent Kayan
NEW TOOL FOR PEN TEST runlvl
n.runs-SA-2011.002 - Citrix XenApp / XenDesktop XML Service Heap Corruption security
n.runs-SA-2011.001 - Citrix XenApp / XenDesktop Stack-Based Buffer Overflow security
[SECURITY] [DSA 2287-1] libpng security update Luciano Bello
ZDI-11-244: (0day) FlexNet License Server Manager lmadmin Remote Code Execution Vulnerability ZDI Disclosures
Re: NEW TOOL FOR PEN TEST root
Re: Skype - local & remote Denial Of Service vulnerability - crash exploit (0day) -= Glowing Sex =-
[SECURITY] [DSA 2288-1] libsndfile security update Moritz Muehlenhoff
ICQ <= 7.5 remote Denial of Service (0day) Levent Kayan
PacSec CFP note, deadline Aug 3; conf Nov 9/10 Tokyo Dragos Ruiu

Friday, 29 July

Telstra thompson gateway - root exploit (0day) xD 0x41
Sitecore CMS 6.4 Open URL Redirect Vulnerability Tom Neaves
Cisco Security Advisory: Cisco TelePresence Recording Server Default Credentials for Root Account Vulnerability Cisco Systems Product Security Incident Response Team
AppSec USA 2011 Open Source Showcase Call for Demos Adam Baso
ZDI-11-245: Sybase Adaptive Server Backup and Monitor Server Translation Array Remote Code Execution Vulnerability ZDI Disclosures
ZDI-11-246: Sybase Adaptive Server Backup and Monitor Server NULL Write Remote Code Execution Vulnerability ZDI Disclosures
Re: Telstra thompson gateway - root exploit (0day) Jeremy Visser
Re: Telstra thompson gateway - root exploit (0day) -= Glowing Sex =-
Multiple CSRF and XSS vulnerabilities in ADSL modem Callisto 821+ MustLive
Re: Multiple CSRF and XSS vulnerabilities in ADSL modem Callisto 821+ -= Glowing Sex =-

Saturday, 30 July

Elgg 1.7.9 <= | Multiple Cross Site Scripting Vulnerabilities YGN Ethical Hacker Group
CFP open for ClubHack2011 Abhijeet Patil
Silver Bullet : Call for Papers : Nov 12/13 : São Paulo : Brazil Luiz Eduardo
Hong Kong Firms Internet Services CMS Sql Injection Vulnerability cyber netron

Sunday, 31 July

Multiple CSRF and XSS vulnerabilities in ADSL modem Callisto 821+ MustLive