Full Disclosure: by author

162 messages starting Feb 08 13 and ending Feb 02 13
Date index | Thread index | Author index


303.100 () gmail com

Re: [SECURITY] [DSA 2618-1] ircd-hybrid security update 303.100 () gmail com (Feb 08)

Adam Laurie

Atmel "secure" crypto co-processor series microprocessors (AT91SAM7XC) leaking keys, plus bonus DESFire hack Adam Laurie (Feb 11)
Re: Atmel "secure" crypto co-processor series microprocessors (AT91SAM7XC) leaking keys, plus bonus DESFire hack Adam Laurie (Feb 12)
Sniffing HDCP crypto keys with a $30 Bus Pirate and a broken HDMI cable Adam Laurie (Feb 18)

Ajin Abraham

Defcon Kerala Information Security Meet 2013 Call For Papers Ajin Abraham (Feb 02)

Ali-Reza Anghaie

Re: SilentCircle (Encrypted VoIP auditing) - Please cooperate Ali-Reza Anghaie (Feb 16)

andfarm

Re: Apple iOS v6.1 (10B143) - Code Lock Bypass Vulnerability #2 andfarm (Feb 18)

Anonymous Remailer (austria)

McAfee Vulnerability in VSE and Host IPS Anonymous Remailer (austria) (Feb 15)

Ariel Berkman

Paper - Hiding Data in Hard-drive Service Areas Ariel Berkman (Feb 19)

auto61149890

Re: Arbitrary command execution and trivial password guessing on Brother printers auto61149890 (Feb 28)
Arbitrary command execution and trivial password guessing on Brother printers auto61149890 (Feb 10)

BugsNotHugs

Armor Safe Technologies CacheTALK III Default Admin Password BugsNotHugs (Feb 02)
Cisco 3560 DoS BugsNotHugs (Feb 27)

cfp

GrrCON 2013: Grand Rapids, MI - Sept 12 -13 cfp (Feb 15)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Cisco Unified Presence Server Denial of Service Vulnerability Cisco Systems Product Security Incident Response Team (Feb 27)
Cisco Security Advisory: Cisco ATA 187 Analog Telephone Adaptor Remote Access Vulnerability Cisco Systems Product Security Incident Response Team (Feb 06)
Cisco Security Advisory: Cisco Prime Central for Hosted Collaboration Solution Assurance Excessive CPU Utilization Vulnerability Cisco Systems Product Security Incident Response Team (Feb 27)

coderman

Re: test coderman (Feb 27)

Colm O hEigeartaigh

New security advisories for Apache CXF Colm O hEigeartaigh (Feb 10)

CORE Security Technologies Advisories

CORE-2012-1128 - SAP Netweaver Message Server Multiple Vulnerabilities CORE Security Technologies Advisories (Feb 15)

CYBSEC Labs

Cybsec Advisory#2013-0208 Multiple Cross Site Request Forgery vulnerabilities in TP-LINK Admin Panel]] CYBSEC Labs (Feb 08)

Daniel Corbe

Re: ifIndex overflow (Linux Kernel - net/core/dev.c) [maybe offtopic] Daniel Corbe (Feb 10)

Daniel Preussker

ifIndex overflow (Linux Kernel - net/core/dev.c) [maybe offtopic] Daniel Preussker (Feb 08)
Re: ifIndex overflow (Linux Kernel - net/core/dev.c) [maybe offtopic] Daniel Preussker (Feb 11)

dann frazier

[SECURITY] [DSA 2632-1] linux-2.6 security update dann frazier (Feb 27)

DefenseCode

DefenseCode Security Advisory: Cisco Linksys Remote Preauth 0day Root Exploit Follow-Up DefenseCode (Feb 07)

dh

Hacking Xerox MFP Firmware Patch Process - percX at foofus.net dh (Feb 27)

Diening, Holm

Simple password obfuscation in Enterprise Architect Diening, Holm (Feb 14)

Dirk-Willem van Gulik

Crafted certificate can cause network exploitable exec/dos (Siemens Business Services Trust Center Root-CA V1.1.1) -- anniversary Dirk-Willem van Gulik (Feb 12)

Fernando Gont

Scanning the IPv6 Internet with the scan6 tool (SI6 IPv6 toolkit) Fernando Gont (Feb 16)
LACSEC 2013: 8th Network Security Event for Latin America and the Caribbean (CFP) Fernando Gont (Feb 19)
SI6 Networks IPv6 Toolkit v1.3 released! Fernando Gont (Feb 16)

Florian Weimer

[SECURITY] [DSA 2623-1] openconnect security update Florian Weimer (Feb 14)
[SECURITY] [DSA 2620-1] rails security update Florian Weimer (Feb 12)

George Clark

Foswiki Security: Alert CVE-2013-1666 - Remote Code Execution Vulnerability in MAKETEXT macro. George Clark (Feb 19)

Georgi Guninski

George Bush's family emails, pics ransacked - and spewed online Georgi Guninski (Feb 09)

Gino O'Donnell

OSX (ML) assertion bug Gino O'Donnell (Feb 04)

Hey, Lukas (KRZ)

Re: test Hey, Lukas (KRZ) (Feb 28)

Ian French

Smoke Loader C&C panel lfi and arbitrary file deletion Ian French (Feb 17)

imipak

test imipak (Feb 27)

Inshell Security

[IA46] Photodex ProShow Producer v5.0.3297 ColorPickerProc() Memory Corruption Inshell Security (Feb 14)
[IA47] Photodex ProShow Producer v5.0.3297 PXT File title Value Handling Buffer Overflow Inshell Security (Feb 16)

iphelix

PACK 0.0.3 - Password Analysis and Cracking Kit iphelix (Feb 18)

Janek Vind

[waraxe-2013-SA#097] - Multiple Vulnerabilities in PHP-Fusion 7.02.05 Janek Vind (Feb 28)

Jan van Niekerk

list patch Jan van Niekerk (Feb 28)

Jeffrey Walton

Re: #warning -- DICE.COM insecure passwords Jeffrey Walton (Feb 12)
Re: petition to remove Aaron Swartz prosecutor Jeffrey Walton (Feb 02)
Re: Arbitrary command execution and trivial password guessing on Brother printers Jeffrey Walton (Feb 28)
Re: petition to remove Aaron Swartz prosecutor Jeffrey Walton (Feb 02)
Re: test Jeffrey Walton (Feb 27)
Re: ifIndex overflow (Linux Kernel - net/core/dev.c) [maybe offtopic] Jeffrey Walton (Feb 10)

JJ Turla

ROOTCON 7 Call for Papers JJ Turla (Feb 28)

John Cartwright

List Charter John Cartwright (Feb 12)

Jonathan Brossard

NoSuchCon CFP 2.0 / 15-17 May 2013 / Paris, France Jonathan Brossard (Feb 27)

Jonathan Wiltshire

[SECURITY] [DSA 2616-1] nagios3 security update Jonathan Wiltshire (Feb 03)

Juha-Matti Laurio

Re: Apple iOS v6.1 (10B143) - Code Lock Bypass Vulnerability #2 Juha-Matti Laurio (Feb 18)

Julius Kivimäki

Re: Apple iOS v6.1 (10B143) - Code Lock Bypass Vulnerability #2 Julius Kivimäki (Feb 18)

Kacper R.

Sonar v.3.4.1 => XSS (CWE-79) Kacper R. (Feb 15)

Kirils Solovjovs

Re: Apple iOS v6.1 (10B143) - Code Lock Bypass Vulnerability #2 Kirils Solovjovs (Feb 18)

Kotas, Kevin J

CA20130213-01: Security Notice for CA ControlMinder Kotas, Kevin J (Feb 13)

Larry W. Cashdollar

Oracle Auto Service Request /tmp file clobbering vulnerability Larry W. Cashdollar (Feb 28)
Gambas 3.3.4 Directory hijack vulnerability Larry W. Cashdollar (Feb 27)
Fileutils ruby gem possible remote command execution and insecure file handling in /tmp Larry W. Cashdollar (Feb 28)

Luciano Bello

[SECURITY] [DSA 2618-1] ircd-hybrid security update Luciano Bello (Feb 08)
[SECURITY] [DSA 2617-1] samba security update Luciano Bello (Feb 02)

Major Malfunction

DC4420 - London DEFCON Tuesday 26th Feb 2013 Major Malfunction (Feb 27)

Maksim . Filenko

АВТО: Я временно отсутствую (возврат 22.02.2013) Maksim . Filenko (Feb 16)

Maksymilian Arciemowicz

FreeBSD 9.1 ftpd Remote Denial of Service Maksymilian Arciemowicz (Feb 02)

Marc Heuse

Re: Scanning the IPv6 Internet with the scan6 tool (SI6 IPv6 toolkit) Marc Heuse (Feb 17)

Moritz Muehlenhoff

[SECURITY] [DSA 2612-2] ircd-ratbox update Moritz Muehlenhoff (Feb 10)
[SECURITY] [DSA 2628-1] nss-pam-ldapd security update Moritz Muehlenhoff (Feb 18)
[SECURITY] [DSA 2624-1] ffmpeg security update Moritz Muehlenhoff (Feb 16)
[SECURITY] [DSA 2619-1] xen-qemu-dm-4.0 security update Moritz Muehlenhoff (Feb 10)
[SECURITY] [DSA 2625-1] wireshark security update Moritz Muehlenhoff (Feb 16)

MustLive

CSRF, XSS and Redirector vulnerabilities in IBM Lotus Domino MustLive (Feb 15)
XSS vulnerabilities in ZeroClipboard MustLive (Feb 18)
XSS vulnerabilities in YAML, Multiproject for Trac, UserCollections for Piwigo, TAO and TableTools for DataTables for jQuery MustLive (Feb 20)
Multiple vulnerabilities in Flash News theme for WordPress MustLive (Feb 02)

Nico Golde

[SECURITY] [DSA 2634-1] python-django security update Nico Golde (Feb 27)

nullcon

[CTF] nullcon Battle UnderGround 2013 will start at 01-03-2013, when the clock will strike at 10:00 am (IST) nullcon (Feb 27)
[CTF] nullcon Battle UnderGround 2013 will start at 01-03-2013, when the clock will strike at 10:00 am (IST) nullcon (Feb 28)
[CTF] nullcon Battle UnderGround is On nullcon (Feb 28)

Oliver Goebel

[IMF 2013] Call for Participation Oliver Goebel (Feb 04)

otr

Empirum Password Obfuscation Design Flaw otr (Feb 14)

Paul Haas

Polycom HDX Telnet Authorization Bypass Paul Haas (Feb 12)

paul . szabo

Mathematica9.0.1 on Linux /tmp/MathLink vulnerability paul . szabo (Feb 08)

Peter Thoeny

TWiki Security Alert CVE-2013-1751: MAKETEXT Variable Has Another Shell Command Execution Issue Peter Thoeny (Feb 19)

Raffaele Addesso

Advisory Notification Raffaele Addesso (Feb 28)

sc2013a

SilentCircle (Encrypted VoIP auditing) - Please cooperate sc2013a (Feb 15)

Scott Bell

Microsoft Internet Explorer SLayoutRun Use After Free Scott Bell (Feb 13)

sd

Archlinux/x86-64 3.1.x-3.7.x x86-64 CVE-2013-1763 sock_diag_handlers[] warez sd (Feb 27)

security

[ MDVSA-2013:016 ] php security (Feb 28)
[ MDVSA-2013:013 ] squid security (Feb 20)
[ MDVSA-2013:010 ] java-1.6.0-openjdk security (Feb 11)
[ MDVSA-2013:007 ] mysql security (Feb 05)
[ MDVSA-2013:011 ] samba security (Feb 13)
[ MDVSA-2013:008 ] mysql security (Feb 06)
[ MDVSA-2013:006 ] freetype2 security (Feb 01)
[ MDVSA-2013:009 ] libssh security (Feb 09)
[ MDVSA-2013:012 ] postgresql security (Feb 15)
[ MDVSA-2013:015 ] apache security (Feb 27)

Security Explorations

Re: [SE-2012-01] Details of issues fixed by Feb 2013 Java SE CPU Security Explorations (Feb 05)
[SE-2012-01] Details of issues fixed by Feb 2013 Java SE CPU Security Explorations (Feb 04)
[SE-2012-01] New security issues affecting Oracle's Java SE 7u15 (updated) Security Explorations (Feb 28)

security-news

[Security-news] SA-CONTRIB-2013-024 - Creative Theme - Cross Site Scripting (XSS) security-news (Feb 27)
[Security-news] SA-CONTRIB-2013-015 - Manager Change for Organic Groups - Cross site scripting (XSS) security-news (Feb 13)
[Security-news] SA-CONTRIB-2013-026 - Best Responsive Theme - Cross Site Scripting (XSS) security-news (Feb 27)
[Security-news] SA-CONTRIB-2013-032 - Company theme - Cross Site Scripting (XSS) security-news (Feb 27)
[Security-news] SA-CONTRIB-2013-027 - Professional theme - Cross Site Scripting (XSS) security-news (Feb 27)
[Security-news] SA-CONTRIB-2013-025 - Fresh Theme - Cross Site Scripting (XSS) security-news (Feb 27)
[Security-news] SA-CONTRIB-2013-016 - Banckle Chat - Access bypass - Unsupported security-news (Feb 13)
[Security-news] SA-CONTRIB-2013-030 - Clean Theme - Cross Site Scripting (XSS) security-news (Feb 27)

Sergei Golubchik

Re: MySQL Denial of Service Zeroday PoC Sergei Golubchik (Feb 28)

Shatter

TeamSHATTER Security Advisory: Oracle EM Cross Site Scripting in XDBResource cancelURL parameter (CVE-2013-0352) Shatter (Feb 28)
TeamSHATTER Security Advisory: Oracle Database GeoRaster API overflow (CVE-2012-3220) Shatter (Feb 28)
TeamSHATTER Security Advisory: SQL Injection in Oracle EM (Resource Manager) (CVE-2013-0358) Shatter (Feb 28)
TeamSHATTER Security Advisory: HTTP Response Splitting in Oracle EM (policyViewSettings) (CVE-2013-0354) Shatter (Feb 28)
TeamSHATTER Security Advisory: Cross-site scripting in Oracle EM (advReplicationAdmin) (CVE-2013-0355) Shatter (Feb 28)
TeamSHATTER Security Advisory: SQL Injection in Oracle EM (SCPLBL_COLLECTED parameters) (CVE-2013-0353) Shatter (Feb 28)
TeamSHATTER Security Advisory: Oracle 11g Stealth Password Cracking Vulnerability (CVE-2012-3137) Shatter (Feb 28)
TeamSHATTER Security Advisory: SQL Injection in Oracle EM (dBClone) (CVE-2013-0374) Shatter (Feb 28)
TeamSHATTER Security Advisory: Oracle EM Segment Advisor Arbitrary URL redirection/phishing (CVE-2012-3219) Shatter (Feb 28)
TeamSHATTER Security Advisory: SQL Injection in Oracle EM (streams queue) (CVE-2013-0373) Shatter (Feb 28)
TeamSHATTER Security Advisory: SQL Injection in Oracle Alter FBA Table (CVE-2012-1751) Shatter (Feb 28)
TeamSHATTER Security Advisory: SQL Injection in Oracle EM (advReplicationAdmin) (CVE-2013-0372) Shatter (Feb 28)

Steeve BARBEAU

Hackito Ergo Sum 2013 - Call For Paper - HES2013 CFP Steeve BARBEAU (Feb 06)

Steve

44CON 12th - 13th September London 2013 Call For Papers/Workshops Steve (Feb 28)

Swair Mehta

Apple IOS 6.1 Simple Passcode Bypass Swair Mehta (Feb 16)

taxakis

user data collection taxakis (Feb 27)

temp66 () gmail com

Multiple Vulnerabilities: Nagios XI 2012R1.5b temp66 () gmail com (Feb 03)

Thijs Kinkhorst

[SECURITY] [DSA 2621-1] openssl security update Thijs Kinkhorst (Feb 14)
[SECURITY] [DSA 2626-1] lighttpd security update Thijs Kinkhorst (Feb 18)
[SECURITY] [DSA 2627-1] nginx security update Thijs Kinkhorst (Feb 18)
[SECURITY] [DSA 2622-1] polarssl security update Thijs Kinkhorst (Feb 14)

Tim

Re: #warning -- DICE.COM insecure passwords Tim (Feb 12)

Tod Beardsley

Re: CFP: InfoSec Southwest 2013 Tod Beardsley (Feb 14)

Travis Biehn

Re: #warning -- DICE.COM insecure passwords Travis Biehn (Feb 12)

Valdis . Kletnieks

Re: #warning -- DICE.COM insecure passwords Valdis . Kletnieks (Feb 12)
Re: user data collection Valdis . Kletnieks (Feb 27)
Re: ifIndex overflow (Linux Kernel - net/core/dev.c) [maybe offtopic] Valdis . Kletnieks (Feb 12)

Vulncheck Security

A new Facebook Token Hijacker malware Vulncheck Security (Feb 05)

Vulnerability Lab

Apple iOS v6.1 (10B143) - Code Lock Bypass Vulnerability #2 Vulnerability Lab (Feb 17)
Fortinet FortiMail 400 IBE - Multiple Web Vulnerabilities - full Vulnerability Lab (Feb 04)
Sonicwall OEM Scrutinizer v9.5.2 - Multiple Web Vulnerabilities Vulnerability Lab (Feb 13)
Sonicwall Scrutinizer v9.5.2 - SQL Injection Vulnerability Vulnerability Lab (Feb 12)
Air Transfer v1.2.0 iPad iPhone - File Include Vulnerability Vulnerability Lab (Feb 18)
Free Monthly Websites v2.0 - Multiple Web Vulnerabilities Vulnerability Lab (Feb 04)
Re: Apple iOS v6.1 (10B143) - Code Lock Bypass Vulnerability #2 Vulnerability Lab (Feb 19)
Paypal Bug Bounty #17 - Certificate Listing/Import Persistent Web Vulnerability Vulnerability Lab (Feb 12)
WirelessFiles v1.1 iPad iPhone - Multiple Web Vulnerabilities Vulnerability Lab (Feb 06)
MyFi Wireless Disk 1.2 iPad iPhone - Multiple Vulnerabilities Vulnerability Lab (Feb 18)
PayPal Bug Bounty #26 - Persistent Web Vulnerabilities Vulnerability Lab (Feb 07)
Microsoft Skype Shop - GiftCards Persistent Vulnerability Vulnerability Lab (Feb 06)
Paypal Bug Bounty #20 - Persistent Web Vulnerabilities Vulnerability Lab (Feb 04)
Transferable Remote v1.1 iPad iPhone - Multiple Web Vulnerabilities Vulnerability Lab (Feb 12)
USB Sharp v1.3.4 iPad iPhone - Multiple Web Vulnerabilities Vulnerability Lab (Feb 17)
Air Disk Wireless 1.9 iPad iPhone - Multiple Vulnerabilities Vulnerability Lab (Feb 07)

warning

#warning -- DICE.COM insecure passwords warning (Feb 11)

YGN Ethical Hacker Group

Huawei Mobile Partner | Permission Weakness Local Privilege Escalation YGN Ethical Hacker Group (Feb 11)

Yves-Alexis Perez

[SECURITY] [DSA 2633-1] fusionforge security update Yves-Alexis Perez (Feb 27)
[SECURITY] [DSA 2615-1] libupnp4 security update Yves-Alexis Perez (Feb 02)
[SECURITY] [DSA 2614-1] libupnp security update Yves-Alexis Perez (Feb 02)