Full Disclosure: by author

282 messages starting Jan 12 13 and ending Jan 17 13
Date index | Thread index | Author index


김무성

Is there a open source (tool) that is similar to cuckoo for analyzing android APK 김무성 (Jan 12)

7h3_J0k3r

Clickjacking in LinkedIn.com 7h3_J0k3r (Jan 17)

Adam Laurie

marc4dasm - Atmel MARC microprocessor disassembler published Adam Laurie (Jan 30)

Alan J . Wylie

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Alan J . Wylie (Jan 22)

Alan Kakareka

Update On Demyo Power Strip Alan Kakareka (Jan 31)

Almaz

White Paper: Detecting System Intrusions Almaz (Jan 16)

Andrea Fabrizi

Buffalo TeraStation TS-Series multiple vulnerabilities Andrea Fabrizi (Jan 30)

Andrew Terekhov

Re: White Paper: Detecting System Intrusions Andrew Terekhov (Jan 17)

antisnatchor

Re: [0 Day] XSS Persistent in Blogspot of Google antisnatchor (Jan 29)

ANTRAX

[0 Day] XSS Persistent in Blogspot of Google ANTRAX (Jan 22)
Re: [0 Day] XSS Persistent in Blogspot of Google ANTRAX (Jan 22)
Re: [0 Day] XSS Persistent in Blogspot of Google ANTRAX (Jan 25)

A. Ramos

Hunt CCTV (and generics brands) Insufficient Authentication A. Ramos (Jan 28)

Asterisk Security Team

AST-2012-014: Crashes due to large stack allocations when using TCP Asterisk Security Team (Jan 02)
AST-2012-015: Denial of Service Through Exploitation of Device State Caching Asterisk Security Team (Jan 02)

Benjamin Kreuter

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Benjamin Kreuter (Jan 24)

Benji

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Benji (Jan 27)
Re: BF, CSRF, and IAA vulnerabilities in websecurity.com.ua Benji (Jan 01)
Re: Are software cracks also a form of security vulnerabilities? Benji (Jan 17)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Benji (Jan 21)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Benji (Jan 22)
Re: BF, CSRF, and IAA vulnerabilities in websecurity.com.ua Benji (Jan 01)

bytze bytze

Re: [SE-2012-01] Java 7 Update 11 confirmed to be vulnerable bytze bytze (Jan 22)

Bzzz

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Bzzz (Jan 22)

Carlos Alberto Lopez Perez

Re: File Disclosure in SimpleMachines Forum <= 2.0.3 Carlos Alberto Lopez Perez (Jan 08)

Christian Sciberras

Re: how to sell and get a fair price Christian Sciberras (Jan 14)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Christian Sciberras (Jan 22)
Re: how to sell and get a fair price Christian Sciberras (Jan 14)

Christopher Emerson

Microsoft Lync Server 2010: Remote Code Execution/XSS - User Agent Header Christopher Emerson (Jan 12)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Cisco Prime LAN Management Solution Command Execution Vulnerability Cisco Systems Product Security Incident Response Team (Jan 09)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco Wireless LAN Controllers Cisco Systems Product Security Incident Response Team (Jan 23)
Cisco Security Advisory: Cisco ASA 1000V Cloud Firewall H.323 Inspection Denial of Service Vulnerability Cisco Systems Product Security Incident Response Team (Jan 16)
Cisco Security Advisory Update v1.1: Cisco Unified IP Phone Local Kernel System Call Input Validation Vulnerability Cisco Systems Product Security Incident Response Team (Jan 17)
Cisco Security Advisory: Cisco Unified IP Phone Local Kernel System Call Input Validation Vulnerability Cisco Systems Product Security Incident Response Team (Jan 09)
Cisco Security Advisory: Portable SDK for UPnP Devices Contains Buffer Overflow Vulnerabilities Cisco Systems Product Security Incident Response Team (Jan 29)

coderman

Re: how to sell and get a fair price coderman (Jan 10)

Context IS - Disclosure

Context Advisory - .NET 1.1 through .NET 4.5 Elevation of Privilege Context IS - Disclosure (Jan 10)

COPiOUS

iOS walled-gardens and security COPiOUS (Jan 17)
Are software cracks also a form of security vulnerabilities? COPiOUS (Jan 17)

cve-id-change

CVE ID Syntax Change - Call for Public Feedback cve-id-change (Jan 24)

Dan Ballance

What Intruder Detection System (IDS) or Network Security Monitor (NSM) do you use? Dan Ballance (Jan 29)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Dan Ballance (Jan 27)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Dan Ballance (Jan 28)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Dan Ballance (Jan 25)

Dan Dart

Re: Rather "interesting" whois for yahoo.com? Dan Dart (Jan 22)
Rather "interesting" whois for yahoo.com? Dan Dart (Jan 22)

Daniel Cardenas

Belkin Wemo 0day exploit (Remote shell + Rapid State change) Daniel Cardenas (Jan 31)
Belkin Wemo 0day exploit (remote shell + rapid state change) Daniel Cardenas (Jan 31)
Belkin WeMo Remote Shell and State Change 0day Exploit Daniel Cardenas (Jan 31)

Daniel Richards

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Daniel Richards (Jan 22)

Darren Thurston

Vancouver Security BSides Conference March, 4 & 5 Darren Thurston (Jan 12)

David Klein

Novell NCP Pre-Auth Remote Stack-Based Buffer Overflow. (CVE-2012-0432) David Klein (Jan 15)

DefenseCode

DefenseCode Security Advisory: Broadcom UPnP Remote Preauth Root Code Execution Vulnerability DefenseCode (Jan 31)
Looking for security contacts DefenseCode (Jan 22)
DefenseCode Security Advisory (UPCOMING): Cisco Linksys Remote Preauth 0day Root Exploit DefenseCode (Jan 12)

doc mombasa

Re: The World's Largest Hacker Database doc mombasa (Jan 09)

eHackingNews

CSRF Vulnerability in 160By2 allows hacker to send sms from victim account eHackingNews (Jan 04)

Elfius

Re: [0 Day] XSS Persistent in Blogspot of Google Elfius (Jan 27)

Fayyaz Ali

sql query displaying on error Fayyaz Ali (Jan 23)

Ferenc Kovacs

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Ferenc Kovacs (Jan 24)

Fernando Gont

Recently-revised IETF I-Ds about IPv6 security Fernando Gont (Jan 17)
IPv6: How to avoid security issues with VPN leaks on dual-stack networks Fernando Gont (Jan 24)
LACSEC 2013: 8th Network Security Event for Latin America and the Caribbean (CFP) Fernando Gont (Jan 23)

Florian Weimer

Re: Rather "interesting" whois for yahoo.com? Florian Weimer (Jan 22)
[SECURITY] [DSA 2607-1] qemu-kvm security update Florian Weimer (Jan 15)
[SECURITY] [DSA 2608-1] qemu security update Florian Weimer (Jan 15)
[SECURITY] [DSA 2609-1] rails security update Florian Weimer (Jan 16)
[SECURITY] [DSA 2602-1] zendframework security update Florian Weimer (Jan 08)

Frank Bures

Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Frank Bures (Jan 21)

freeman

CALL FOR PAPERS - NUIT DU HACK - 22/23 JUNE 2013 freeman (Jan 07)

Gage Bystrom

Re: The World's Largest Hacker Database Gage Bystrom (Jan 08)

Gary Baribault

Re: petition to remove Aaron Swartz prosecutor Gary Baribault (Jan 14)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Gary Baribault (Jan 24)

Gary Nilson

Re: Novell NCP Pre-Auth Remote Stack-Based Buffer Overflow. (CVE-2012-0432) Exploit Gary Nilson (Jan 18)
Novell NCP Pre-Auth Remote Stack-Based Buffer Overflow. (CVE-2012-0432) Exploit Gary Nilson (Jan 18)

Gaurang Pandya

Nokia’s MITM on HTTPS traffic from their phone Gaurang Pandya (Jan 09)

Grandma Eubanks

Re: Wordpress Pingback Port Scanner Grandma Eubanks (Jan 19)

gremlin

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 gremlin (Jan 27)
Re: how to sell and get a fair price gremlin (Jan 15)
Re: how to sell and get a fair price gremlin (Jan 16)
Re: How to prevent HTTPS MitM gremlin (Jan 18)
Re: how to sell and get a fair price gremlin (Jan 16)

Guifre

Re: [0 Day] XSS Persistent in Blogspot of Google Guifre (Jan 29)

Gynvael Coldwind

Re: [0 Day] XSS Persistent in Blogspot of Google Gynvael Coldwind (Jan 25)

Hafez Kamal

[HITB-Announce] REMINDER: #HITB2013AMS Call for Papers Closes 8th Feb Hafez Kamal (Jan 21)
[HITB-Announce] #HITB2013AMS FINAL CALL for Paper Submissions Hafez Kamal (Jan 31)

Henri Salo

Re: Vulnerabilities in WordPress Attack Scanner for WordPress Henri Salo (Jan 30)
Re: Looking for security contacts Henri Salo (Jan 22)
Re: Wordpress Pingback Port Scanner Henri Salo (Jan 19)

Ian Hayes

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Ian Hayes (Jan 21)

Include Security Research

Arbitrary File Upload and Code Execution in Accusoft Prizm Content Connect Include Security Research (Jan 10)

Inshell Security

[IA33] Serva v2.0.0 DNS Server Remote Denial of Service Inshell Security (Jan 14)
[IA34] Serva v2.0.0 HTTP Server GET Remote Denial of Service Inshell Security (Jan 14)
[IA45] Photodex ProShow Producer v5.0.3297 ExpandMacroFilename() Local Buffer Overflow Inshell Security (Jan 26)

iphelix

DNSChef 0.2 - DNS Proxy for pentesters and malware analysts iphelix (Jan 21)

jacki buddy

Fwd: jacki buddy (Jan 13)

Jacopo Cappellato

[CVE-2013-0177] Cross-Site Scripting (XSS) Vulnerability in Apache OFBiz Jacopo Cappellato (Jan 18)

Jakub Zoczek

Re: [0 Day] XSS Persistent in Blogspot of Google Jakub Zoczek (Jan 22)
Re: Google Chrome 24 Anti-XSS Filter Bypass Jakub Zoczek (Jan 22)

Jan Lehnardt

CVE-2012-5641 Apache CouchDB Information disclosure via unescaped backslashes in URLs on Windows Jan Lehnardt (Jan 14)
CVE-2012-5649 Apache CouchDB JSONP arbitrary code execution with Adobe Flash Jan Lehnardt (Jan 14)
CVE-2012-5650 Apache CouchDB DOM based Cross-Site Scripting via Futon UI Jan Lehnardt (Jan 14)

Jann Horn

Re: How to prevent HTTPS MitM Jann Horn (Jan 18)

jason

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data jason (Jan 22)
Re: [SECURITY] [DSA 2607-1] qemu-kvm security update jason (Jan 16)

Jeffrey Walton

Re: how to sell and get a fair price Jeffrey Walton (Jan 16)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Jeffrey Walton (Jan 24)
Re: Ubuntu, Linux Mint, and the Guest Account Jeffrey Walton (Jan 26)
Re: petition to remove Aaron Swartz prosecutor Jeffrey Walton (Jan 14)
Re: petition to remove Aaron Swartz prosecutor Jeffrey Walton (Jan 18)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Jeffrey Walton (Jan 21)
Re: how to sell and get a fair price Jeffrey Walton (Jan 15)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Jeffrey Walton (Jan 21)
OT: Aaron's Law hopes to blunt US computer crime law Jeffrey Walton (Jan 21)
Re: how to sell and get a fair price Jeffrey Walton (Jan 15)
Re: petition to remove Aaron Swartz prosecutor Jeffrey Walton (Jan 14)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Jeffrey Walton (Jan 21)
Re: how to sell and get a fair price Jeffrey Walton (Jan 15)
Re: White Paper: Detecting System Intrusions Jeffrey Walton (Jan 18)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Jeffrey Walton (Jan 25)
Re: How to prevent HTTPS MitM Jeffrey Walton (Jan 17)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Jeffrey Walton (Jan 21)

John Bambenek

Re: The World's Largest Hacker Database John Bambenek (Jan 08)

John Cartwright

List Charter John Cartwright (Jan 12)

John Kinsella

[CVE-2012-5616] Apache CloudStack information disclosure vulnerability John Kinsella (Jan 10)

Jonathan Brossard

NoSuchCon CFP / 15-17 May 2013 / Paris, France Jonathan Brossard (Jan 21)

Julius Kivimäki

Re: Rather "interesting" whois for yahoo.com? Julius Kivimäki (Jan 23)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Julius Kivimäki (Jan 22)

Justin C. Klein Keane

Re: The World's Largest Hacker Database Justin C. Klein Keane (Jan 08)
LAMPSecurity Capture the Flag Justin C. Klein Keane (Jan 09)

Kacper Nowak

Re: [SECURITY] [DSA 2611-1] movabletype-opensource security update Kacper Nowak (Jan 22)

king cope

New Blog Post: Attacking the Windows 7/8 Address Space Randomization king cope (Jan 24)

Kotas, Kevin J

Updated - CA20121018-01: Security Notice for CA ARCserve Backup Kotas, Kevin J (Jan 14)

Larry W. Cashdollar

Oracle Automated Service Manager 1.3 & Auto Service Request 4.3 local root during install Larry W. Cashdollar (Jan 31)
Re: Local root exploit for Centrify Deployment Manager < v2.1.0.283 local root Larry W. Cashdollar (Jan 04)

Lerie Taylor

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Lerie Taylor (Jan 25)

Limanovski, Dimitri

Re: [SE-2012-01] Java 7 Update 11 confirmed to be vulnerable Limanovski, Dimitri (Jan 22)

Luca Carettoni

Re: SEC Consult SA-20130124-0 :: Critical SSH Backdoor in multiple Barracuda Networks Products Luca Carettoni (Jan 25)

Luigi Rosa

How to prevent HTTPS MitM Luigi Rosa (Jan 17)

Maciej Kozuszek

[Announcement] PenTest Open 1/2012 released. Maciej Kozuszek (Jan 28)
[PenTest-Announce] Phishing Attack with Social Engineering Toolkit (SET) Maciej Kozuszek (Jan 31)

Major Malfunction

DC4420 - London DEFCON - January 2013 meet. Tuesday 29th January 2013 Major Malfunction (Jan 23)
Released: rompar - Semi-automation tool for data extraction of microscopic Masked ROM images Major Malfunction (Jan 31)
DC4420 - 2013 CFP Major Malfunction (Jan 16)

Michal Zalewski

Re: [0 Day] XSS Persistent in Blogspot of Google Michal Zalewski (Jan 28)

Mikhail A. Utin

how to sell and get a fair price Mikhail A. Utin (Jan 10)
Re: Full-Disclosure Digest, Vol 95, Issue 15- Aaron Swartz death Mikhail A. Utin (Jan 15)
Re: how to sell and get a fair price Mikhail A. Utin (Jan 15)

mohammed sa

Re: File Disclosure in SimpleMachines Forum <= 2.0.3 mohammed sa (Jan 10)

Moritz Muehlenhoff

[SECURITY] [DSA 2603-1] emacs23 security update Moritz Muehlenhoff (Jan 09)
[SECURITY] [DSA 2598-1] weechat security update Moritz Muehlenhoff (Jan 05)
[SECURITY] [DSA 2612-1] ircd-ratbox security update Moritz Muehlenhoff (Jan 24)

Moritz Naumann

XSS in Elgg 1.8.12, 1.7.16 (core module "Twitter widget") Moritz Naumann (Jan 28)

Mustapha Rabiu

Charybdis: Improper assumptions in the server handshake code may lead to a remote crash. (CAPAB module) Mustapha Rabiu (Jan 01)

MustLive

DoS vulnerability in Flash player (access violation) MustLive (Jan 04)
IL, XSS, FPD, AoF, DoS, AFU vulnerabilities in Daily Edition Mouss theme for WordPress MustLive (Jan 14)
Multiple vulnerabilities in Floating Tweets for WordPress MustLive (Jan 12)
New vulnerabilities in MODx Revolution MustLive (Jan 08)
Multiple vulnerabilities in TinyBrowser MustLive (Jan 09)
Re: Wordpress Pingback Port Scanner MustLive (Jan 19)
Vulnerabilities in WordPress Attack Scanner for WordPress MustLive (Jan 30)
Multiple vulnerabilities in Chocolate WP theme for WordPress MustLive (Jan 23)

Nick FitzGerald

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Nick FitzGerald (Jan 21)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Nick FitzGerald (Jan 21)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Nick FitzGerald (Jan 21)
Re: how to sell and get a fair price Nick FitzGerald (Jan 15)

Nico Golde

[SECURITY] [DSA 2597-1] rails security update Nico Golde (Jan 06)
[SECURITY] [DSA 2600-1] cups security update Nico Golde (Jan 07)

noname

Re: Is there a open source (tool) that is similar to cuckoo for analyzing android APK noname (Jan 12)

NSO Research

NSOADV-2013-001: DELL SonicWALL GMS/Viewpoint/Analyzer Authentication Bypass (/appliance/) NSO Research (Jan 17)
NSOADV-2013-002: DELL SonicWALL GMS/Viewpoint/Analyzer Authentication Bypass (/sgms/) NSO Research (Jan 17)

nullcon

[Hacking Challenge] nullcon HackIM 2013 will start at 01-02-2013, when the clock will strike at 21:00 (+5:30 GMT) nullcon (Jan 31)
[CTF] nullcon HackIM CTF 2013 will start at 01-02-2013, when the clock will strike at 21:00 (+5:30 GMT) nullcon (Jan 31)

osaft

Re: http://www.heise.de - Cross-site Scripting vulnerability osaft (Jan 12)

Paul Johnston

Directory traversal in Eye-Fi Helper < 3.4.23 Paul Johnston (Jan 04)

Peter Dawson

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Peter Dawson (Jan 24)

Philip Whitehouse

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Philip Whitehouse (Jan 21)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 students personal data Philip Whitehouse (Jan 21)

Rain Li

Re: What Intruder Detection System (IDS) or Network Security Monitor (NSM) do you use? Rain Li (Jan 31)

richajap

petition to remove Aaron Swartz prosecutor richajap (Jan 14)

Sanguinarious Rose

Re: The World's Largest Hacker Database Sanguinarious Rose (Jan 08)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Sanguinarious Rose (Jan 21)
Re: The World's Largest Hacker Database Sanguinarious Rose (Jan 09)

Santiago Vila

no-ip.com interesting way to handle newsletter options Santiago Vila (Jan 21)

SBV Research

OrangeHRM 2.7.1 Vacancy Name Persistent XSS SBV Research (Jan 10)

scadastrangelove

ICS/SCADA security tools and releases scadastrangelove (Jan 21)

Scott Herbert

Re: petition to remove Aaron Swartz prosecutor Scott Herbert (Jan 14)
Re: Are software cracks also a form of security vulnerabilities? Scott Herbert (Jan 17)

scryptz0 SOLDIERX

The World's Largest Hacker Database scryptz0 SOLDIERX (Jan 08)

SEC Consult Vulnerability Lab

SEC Consult SA-20130124-1 :: Authentication bypass in Barracuda SSL VPN SEC Consult Vulnerability Lab (Jan 24)
SEC Consult SA-20130124-0 :: Critical SSH Backdoor in multiple Barracuda Networks Products SEC Consult Vulnerability Lab (Jan 24)
SEC Consult SA-20130122-0 :: F5 BIG-IP XML External Entity Injection vulnerability SEC Consult Vulnerability Lab (Jan 22)
SEC Consult SA-20130122-1 :: F5 BIG-IP SQL injection vulnerability SEC Consult Vulnerability Lab (Jan 22)

Secunia Research

Secunia Research: Oracle Outside In Technology Paradox Database Handling Denial of Service Secunia Research (Jan 18)
Secunia Research: Oracle Outside In Technology Paradox Database Handling Buffer Overflow Secunia Research (Jan 18)

security

[ MDVSA-2013:001 ] gnupg security (Jan 02)
[ MDVSA-2013:002 ] firefox security (Jan 09)
[ MDVSA-2013:004 ] tomcat5 security (Jan 10)
[ MDVSA-2013:005 ] perl security (Jan 28)
[ MDVSA-2013:003 ] rootcerts security (Jan 09)

Security Explorations

[SE-2012-01] 'Fix' for Issue 32 exploited by new Java 0-day code Security Explorations (Jan 12)
[SE-2012-01] More details on Issue 32 and Oracle's 'fix' for it Security Explorations (Jan 14)
[SE-2012-01] An issue with new Java SE 7 security features Security Explorations (Jan 27)
[SE-2012-01] Java 7 Update 11 confirmed to be vulnerable Security Explorations (Jan 18)
Re: [SE-2012-01] Java 7 Update 11 confirmed to be vulnerable Security Explorations (Jan 22)

security-news

[Security-news] SA-CONTRIB-2013-009 - Keyboard Shortcut Utility - Access Bypass - module unsupported security-news (Jan 23)
[Security-news] SA-CORE-2013-001 - Drupal core - Multiple vulnerabilities security-news (Jan 16)
[Security-news] SA-CONTRIB-2013-004 - Live CSS - Arbitrary Code Execution security-news (Jan 16)
[Security-news] SA-CONTRIB-2013-014 - Drush Debian Packaging - Information Disclosure - Unsupported security-news (Jan 30)
[Security-news] SA-CONTRIB-2013-013 - Boxes - Cross site scripting (XSS) security-news (Jan 30)
[Security-news] SA-CONTRIB-2013-001 - Search API - Cross Site Scripting security-news (Jan 09)
[Security-news] SA-CONTRIB-2013-008 - CurvyCorners - Cross Site Scripting (XSS) - module unsupported security-news (Jan 23)
[Security-news] SA-CONTRIB-2013-005 - Mark Complete Module - Cross Site Request Forgery (CSRF) security-news (Jan 16)
[Security-news] SA-CONTRIB-2013-010 - Search API sorts - Cross Site Scripting (XSS) security-news (Jan 23)
[Security-news] SA-CONTRIB-2013-011 - email2image - Access Bypass - Unsupported security-news (Jan 30)
[Security-news] SA-CONTRIB-2013-006 - Video - Arbitrary Code Execution security-news (Jan 23)
[Security-news] SA-CONTRIB-2013-003 - RESTful Web Services - Cross site request forgery (CSRF) security-news (Jan 16)
[Security-news] SA-CONTRIB-2013-012 - Google Authenticator login - Access Bypass security-news (Jan 30)
[Security-news] SA-CONTRIB-2013-002 - Payment - Access Bypass security-news (Jan 09)
[Security-news] SA-CONTRIB-2013-007 User Relationships - Cross Site Scripting (XSS) security-news (Jan 23)

Shakacon

ShakaCon 2013 - Call For Papers Shakacon (Jan 02)

Sławek Rozbicki

Cisco RVxxxW wireless routers weak RSA key generation Sławek Rozbicki (Jan 08)

some one

Re: BF, CSRF, and IAA vulnerabilities in websecurity.com.ua some one (Jan 02)
Re: BF, CSRF, and IAA vulnerabilities in websecurity.com.ua some one (Jan 01)

Stefan Kanthak

Mozilla Firefox and Microsoft Internet Explorer stall when using workaround from MS06-020 or MS06-069 Stefan Kanthak (Jan 21)

Stefan Schurtz

http://www.heise.de - Cross-site Scripting vulnerability Stefan Schurtz (Jan 10)
Websitebaker Add-on 'Concert Calendar 2.1.4' XSS & SQLi vulnerability Stefan Schurtz (Jan 10)
Hero Framework 3.76 Multiple Cross-site Scripting vulnerabilities Stefan Schurtz (Jan 10)
http://www.elitepartner.de Cross-site Scripting vulnerability Stefan Schurtz (Jan 10)

Stefan Weimar

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Stefan Weimar (Jan 24)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Stefan Weimar (Jan 24)

Stephan Rickauer

CVE-2013-1393 Stephan Rickauer (Jan 24)
CVE-2013-0805 Stephan Rickauer (Jan 23)

sxpert

Re: [Full-disclosure] Are software cracks also a form of security vulnerabilities? sxpert (Jan 18)

Thijs Kinkhorst

[SECURITY] [DSA 2599-1] nss security update Thijs Kinkhorst (Jan 06)
[SECURITY] [DSA 2601-1] gnupg, gnupg2 security update Thijs Kinkhorst (Jan 07)
[SECURITY] [DSA 2605-1] asterisk security update Thijs Kinkhorst (Jan 14)
[SECURITY] [DSA 2606-1] proftpd-dfsg security update Thijs Kinkhorst (Jan 14)
[SECURITY] [DSA 2605-2] asterisk regression update Thijs Kinkhorst (Jan 19)
[SECURITY] [DSA 2613-1] rails security update Thijs Kinkhorst (Jan 31)
[SECURITY] [DSA 2604-1] rails security update Thijs Kinkhorst (Jan 10)

Tod Beardsley

CFP: InfoSec Southwest Open Tod Beardsley (Jan 06)

Travis Biehn

Re: Are software cracks also a form of security vulnerabilities? Travis Biehn (Jan 17)

Trustwave Advisories

TWSL2012-023: Oracle Application Framework Diagnostic Mode Bypass Vulnerability Trustwave Advisories (Jan 15)

Ulisses Montenegro

Re: White Paper: Detecting System Intrusions Ulisses Montenegro (Jan 17)

Valdis . Kletnieks

Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Valdis . Kletnieks (Jan 25)
Re: White Paper: Detecting System Intrusions Valdis . Kletnieks (Jan 18)
Re: how to sell and get a fair price Valdis . Kletnieks (Jan 14)
Re: petition to remove Aaron Swartz prosecutor Valdis . Kletnieks (Jan 14)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Valdis . Kletnieks (Jan 24)
Re: how to sell and get a fair price Valdis . Kletnieks (Jan 14)
Re: Student expelled from Montreal college after finding vulnerability that compromised security of 250, 000 Valdis . Kletnieks (Jan 24)
Re: how to sell and get a fair price Valdis . Kletnieks (Jan 15)
Re: how to sell and get a fair price Valdis . Kletnieks (Jan 18)

Vic Vandal

CarolinaCon-9 (March 15-17, 2013): General Announcement - Chosen Presenters and Topics - Side Event List Vic Vandal (Jan 17)

Vladimir Vorontsov

Re: Wordpress Pingback Port Scanner Vladimir Vorontsov (Jan 21)

Vulnerability Lab

Paypal Bug Bounty #10 - Persistent Web Vulnerability Vulnerability Lab (Jan 29)
Paypal Bug Bounty #18 - Blind SQL Injection Vulnerability Vulnerability Lab (Jan 22)
Fortinet FortiMail 400 IBE - Multiple Web Vulnerabilities Vulnerability Lab (Jan 29)
Wordpress Valums Uploader - File Upload Vulnerability Vulnerability Lab (Jan 22)
nCircle PureCloud Vulnerability Scanner - Multiple Vulnerabilities Vulnerability Lab (Jan 29)
nCircle PureCloud Vulnerability Scanner - Multiple Web Vulnerabilities Vulnerability Lab (Jan 29)
Kohana Framework v2.3.3 - Directory Traversal Vulnerability Vulnerability Lab (Jan 29)

warning

Google Wallet personal sensitive information disclosure via third-parties warning (Jan 09)

WHK Yan

Re: [0 Day] XSS Persistent in Blogspot of Google WHK Yan (Jan 22)
Re: File Disclosure in SimpleMachines Forum <= 2.0.3 WHK Yan (Jan 10)
Re: File Disclosure in SimpleMachines Forum <= 2.0.3 WHK Yan (Jan 10)
Google Chrome 24 Anti-XSS Filter Bypass WHK Yan (Jan 21)
File Disclosure in SimpleMachines Forum <= 2.0.3 WHK Yan (Jan 08)
Path Disclusore in SimpleMachines Forum <= 2.0.3 WHK Yan (Jan 04)

Williams, James K

CA20121220-01: Security Notice for CA IdentityMinder [updated] Williams, James K (Jan 18)

YGN Ethical Hacker Group

TomatoCart 1.x | Vulnerable Piwik Extension YGN Ethical Hacker Group (Jan 05)
CubeCart 5.x | Multiple Cross Site Scripting Vulnerabilities YGN Ethical Hacker Group (Jan 01)
Re: CubeCart 5.0.7 and lower versions | Insecure Backup File Handling YGN Ethical Hacker Group (Jan 01)
TomatoCart 1.x | Cross Site Request Forgery Protection Bypass via JavaScript Hijacking YGN Ethical Hacker Group (Jan 06)
TomatoCart 1.x | Unrestricted File Creation YGN Ethical Hacker Group (Jan 04)
CubeCart 5.x | Cross Site Request Forgery (CSRF) Vulnerability YGN Ethical Hacker Group (Jan 01)

Yves-Alexis Perez

[SECURITY] [DSA 2610-1] ganglia security update Yves-Alexis Perez (Jan 22)
[SECURITY] [DSA 2611-1] movabletype-opensource security update Yves-Alexis Perez (Jan 22)

Zachary Cutlip

BT HomeHub 3.0b Remote (LAN) vulnerability Zachary Cutlip (Jan 10)

Źmicier Januszkiewicz

Re: how to sell and get a fair price Źmicier Januszkiewicz (Jan 12)
Re: White Paper: Detecting System Intrusions Źmicier Januszkiewicz (Jan 17)