Full Disclosure: by author

294 messages starting Oct 11 13 and ending Oct 16 13
Date index | Thread index | Author index


アドリアンヘンドリック

CVE-2013-0634 Original sample can not be confirmed until now アドリアンヘンドリック (Oct 11)

Abhay Yadav

Malware Analysis Abhay Yadav (Oct 18)

adam

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 adam (Oct 03)
Re: Any particular reason why MS is scanning me for port 80? adam (Oct 22)

adrelanos

Whonix Anonymous Operating System Version 7 Released! adrelanos (Oct 13)

advisories

[SOJOBO-ADV-13-01] - Zenphoto 1.4.5.2 multiple vulnerabilities advisories (Oct 03)

Alex

Re: Handling bad ISP's Alex (Oct 23)
Re: Slightly OT: What SSL cert do you consider strongest? Alex (Oct 23)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Alex (Oct 02)

Alexander Georgiev

Re: Handling bad ISP's Alexander Georgiev (Oct 23)

Benji

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Benji (Oct 03)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Benji (Oct 03)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Benji (Oct 03)

besancon

Re: How I Compiled TrueCrypt For Windows and Matched the Official Binaries besancon (Oct 28)

BlackHawk

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 BlackHawk (Oct 03)

BM-2cUW5x4Ur6WBV9gr53QNfsv7RTLQXeS4p7

TAILS (Tor Linux distribution) contains extra root CAs ? LEGIT ? BM-2cUW5x4Ur6WBV9gr53QNfsv7RTLQXeS4p7 (Oct 18)

Bobby Broughton

Re: Any particular reason why MS is scanning me for port 80? Bobby Broughton (Oct 22)
Re: Any particular reason why MS is scanning me for port 80? Bobby Broughton (Oct 22)

Bogdan Calin

Critical vulnerabilities discovered in Gazelle and TBDEV.net Bogdan Calin (Oct 15)

Brandon Whaley

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Brandon Whaley (Oct 03)

Carsten Ziegeler

[CVE-2013-2254] Apache Sling denial of service vulnerability Carsten Ziegeler (Oct 09)
CVE-2013-4390: Apache Sling open redirect on login Carsten Ziegeler (Oct 21)

catsandd0gz . dinosaursandwh0res

PRISM catsandd0gz . dinosaursandwh0res (Oct 03)

Cisco Systems Product Security Incident Response Team

Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA Software Cisco Systems Product Security Incident Response Team (Oct 09)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco IOS XE Software for 1000 Series Aggregation Services Routers Cisco Systems Product Security Incident Response Team (Oct 30)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA Software Cisco Systems Product Security Incident Response Team (Oct 17)
Cisco Security Advisory: Cisco IOS XR Software Route Processor Denial of Service Vulnerability Cisco Systems Product Security Incident Response Team (Oct 23)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco Identity Services Engine Cisco Systems Product Security Incident Response Team (Oct 23)
Cisco Security Advisory: Multiple Vulnerabilities in Cisco Firewall Services Module Software Cisco Systems Product Security Incident Response Team (Oct 09)
Cisco Security Advisory: Cisco IOS XR Software Memory Exhaustion Vulnerability Cisco Systems Product Security Incident Response Team (Oct 02)
Cisco Security Advisory: Apache Struts 2 Command Execution Vulnerability in Multiple Cisco Products Cisco Systems Product Security Incident Response Team (Oct 23)

coderman

Re: How many .gov sites did the usa government ddosed/nearly defaced? coderman (Oct 08)
Foreign Intelligence Resistant systems [was Re: reasonable return on investment; better investments in security [....]] coderman (Oct 17)
Re: Secure whistleblowing feedback / reporting systems in the content of compartmented information, endpoint security [was: [NSA bitching] [formerly Re: PRISM][]] coderman (Oct 17)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 coderman (Oct 03)
Re: Handling bad ISP's coderman (Oct 23)
Re: ... endpoint security, strong encryption coderman (Oct 17)
Re: Handling bad ISP's coderman (Oct 23)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 coderman (Oct 03)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 coderman (Oct 03)
Intelligence agency subversions and clandestine, illicit programs; lack of popular outrage [was Re: PRISM] coderman (Oct 17)
Secure whistleblowing feedback / reporting systems in the content of compartmented information, endpoint security [was: [NSA bitching] [formerly Re: PRISM][]] coderman (Oct 17)
Re: Secure whistleblowing feedback / reporting systems in the content of compartmented information, endpoint security [was: [NSA bitching] [formerly Re: PRISM][]] coderman (Oct 18)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 coderman (Oct 03)

CORE Advisories Team

CORE-2013-0828 - PDFCool Studio Buffer Overflow Vulnerability CORE Advisories Team (Oct 01)
CORE-2013-0904 - PinApp Mail-SeCure Access Control Failure CORE Advisories Team (Oct 01)

Corwin Grey

Re: PRISM Corwin Grey (Oct 09)

Craig Young

[CVE-2013-2751, CVE-2013-2752] NETGEAR ReadyNAS Remote Root Craig Young (Oct 22)
[CVE-2012-6297] DD-WRT v24-sp2 Command Injection Craig Young (Oct 27)
Re: ASUS RT-N13U Unsecured Telnet on LAN and WAN Craig Young (Oct 30)

dan

Re: Secure whistleblowing feedback / reporting systems in the content of compartmented information, endpoint security [was: [NSA bitching] [formerly Re: PRISM][]] dan (Oct 18)

Daniel Cegiełka

Re: [Article] Linux Kernel Patches For Linux Kernel Security Daniel Cegiełka (Oct 02)

dave

Re: darpa to automatically patch flaws dave (Oct 23)

David Miller

Slightly OT: What SSL cert do you consider strongest? David Miller (Oct 23)

Dennis Kelly

ShoreWare Director Denial of Service and Arbitrary File Modification Dennis Kelly (Oct 14)

dextop

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 dextop (Oct 03)

Dominik Schürmann

Google Play In-Billing Library Hacked Dominik Schürmann (Oct 29)

Fab Duchene

GreHack'13 - CTF - Call for DJ/Musicians/Bands Fab Duchene (Oct 20)

Fabian Wenk

Re: Slightly OT: What SSL cert do you consider strongest? Fabian Wenk (Oct 27)
Re: Slightly OT: What SSL cert do you consider strongest? Fabian Wenk (Oct 23)
Re: Slightly OT: What SSL cert do you consider strongest? Fabian Wenk (Oct 23)

Fran

[CVE-2013-6239]Contexis 1.0 CMS, Reflected Xss Fran (Oct 24)

fulldis

[PSA-2013-1022-1] Microsoft Silverlight Invalid Typecast / Memory Disclosure fulldis (Oct 22)

Gary Baribault

Re: Any particular reason why MS is scanning me for port 80? Gary Baribault (Oct 21)

Georgi Guninski

How many .gov sites did the usa government ddosed/nearly defaced? Georgi Guninski (Oct 08)
darpa to automatically patch flaws Georgi Guninski (Oct 23)
Re: tor vulnerabilities? Georgi Guninski (Oct 01)

Gonzalo Camino

New version of JBrute: v0.97 (beta) Gonzalo Camino (Oct 29)
New version of JBrute: v0.96 (beta) Gonzalo Camino (Oct 09)

Gregory Boddin

Re: Handling bad ISP's Gregory Boddin (Oct 24)

gremlin

Re: How many .gov sites did the usa government ddosed/nearly defaced? gremlin (Oct 08)
Re: Slightly OT: What SSL cert do you consider strongest? gremlin (Oct 23)

G. S. McNamara

Re: [Django] Cookie-based session storage session invalidation issue G. S. McNamara (Oct 03)
Re: [Django] Cookie-based session storage session invalidation issue G. S. McNamara (Oct 03)
Re: [Django] Cookie-based session storage session invalidation issue G. S. McNamara (Oct 03)
Re: [Django] Cookie-based session storage session invalidation issue G. S. McNamara (Oct 03)
[Django] Cookie-based session storage session invalidation issue G. S. McNamara (Oct 02)

Hurgel Bumpf

Microsoft Word Protect Document Password Feature Hurgel Bumpf (Oct 23)
Request for short subject lines / titles on FD Hurgel Bumpf (Oct 11)

Ian Hayes

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Ian Hayes (Oct 02)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Ian Hayes (Oct 02)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Ian Hayes (Oct 02)

infosec4breakfast

D-Link Security Contact? infosec4breakfast (Oct 23)

ISecAuditors Security Advisories

[ISecAuditors Security Advisories] XSS vulnerability in LinkedIn ISecAuditors Security Advisories (Oct 28)
[ISecAuditors Security Advisories] Multiple Reflected XSS vulnerabilities in BoltWire <= v3.5 ISecAuditors Security Advisories (Oct 09)
[ISecAuditors Security Advisories] PL/SQL Injection in Oracle Portal Demo Organization Chart ISecAuditors Security Advisories (Oct 16)
[ISecAuditors Security Advisories] HTTP Response Splitting Vulnerability in WebCollab <= v3.30 ISecAuditors Security Advisories (Oct 24)
[ISecAuditors Security Advisories] CSRF vulnerability in LinkedIn ISecAuditors Security Advisories (Oct 17)
[ISecAuditors Security Advisories] Multiple Vulnerabilities in Uebimiau <= 2.7.11 ISecAuditors Security Advisories (Oct 09)

Ivan .Heca

Serious Yahoo bug discovered. Researchers rewarded with $12.50 Ivan .Heca (Oct 01)

Jakob Lell

Real-World CSRF attack hijacks DNS Server configuration of TP-Link routers Jakob Lell (Oct 30)

Jason Hellenthal

Re: iOS: List of available trusted root certificates Jason Hellenthal (Oct 01)

Jaydeep Solanki

Advantages of Stack Guard over Stack Shield Jaydeep Solanki (Oct 21)

Jeffrey Walton

Re: Mavericks...less then a bargin? Jeffrey Walton (Oct 28)
Re: darpa to automatically patch flaws Jeffrey Walton (Oct 23)
Re: glibc 2.5 <= reloc types to crash bug Jeffrey Walton (Oct 20)
Re: Mavericks...less then a bargin? Jeffrey Walton (Oct 28)
Re: [Django] Cookie-based session storage session invalidation issue Jeffrey Walton (Oct 03)
Re: How many .gov sites did the usa government ddosed/nearly defaced? Jeffrey Walton (Oct 08)
Re: Advantages of Stack Guard over Stack Shield Jeffrey Walton (Oct 21)
Re: Secure whistleblowing feedback / reporting systems in the content of compartmented information, endpoint security [was: [NSA bitching] [formerly Re: PRISM][]] Jeffrey Walton (Oct 17)
Re: PRISM Jeffrey Walton (Oct 05)
Re: Slightly OT: What SSL cert do you consider strongest? Jeffrey Walton (Oct 23)
Microsoft Pays Security Researcher James Forshaw $100, 000 For Windows 8 Flaw Jeffrey Walton (Oct 10)
Re: Slightly OT: What SSL cert do you consider strongest? Jeffrey Walton (Oct 24)
Going beyond vulnerability rewards Jeffrey Walton (Oct 11)

Jeroen van Beek

[ANNOUNCE] eCL0WN for Android v1.0 released Jeroen van Beek (Oct 22)

Jérôme Nokin

WatchGuard - CVE-2013-6021 - Bug and exploit details Jérôme Nokin (Oct 28)

Joel Esler

Re: Mavericks...less then a bargin? Joel Esler (Oct 28)
Re: Mavericks...less then a bargin? Joel Esler (Oct 28)

joernchen

Advisory: sup MUA Command Injection joernchen (Oct 29)

John Adams

Re: Slightly OT: What SSL cert do you consider strongest? John Adams (Oct 24)

John Cartwright

List Charter John Cartwright (Oct 09)

Johnny Bravo

Wicked Smaht O-Dayuh in Quest One(tm) Password Manager Johnny Bravo (Oct 21)

J. Oquendo

Web Attackers Blacklist J. Oquendo (Oct 22)
CVE-2013-5694 Blind SQL Injection in Ops View J. Oquendo (Oct 29)
Re: darpa to automatically patch flaws J. Oquendo (Oct 23)
CVE-2013-5695 Multilple Cross Site Scripting (XSS) Attacks in Ops View J. Oquendo (Oct 29)

Jordon Bedwell

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Jordon Bedwell (Oct 03)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Jordon Bedwell (Oct 03)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Jordon Bedwell (Oct 03)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Jordon Bedwell (Oct 03)
Re: Handling bad ISP's Jordon Bedwell (Oct 24)

Juha-Matti Laurio

Re: Apple iOS 7.2 - Sim Lock Screen Display Bypass Vulnerability Juha-Matti Laurio (Oct 16)

Julien Ahrens

[CVE-2013-5702] Watchguard Server Center v11.7.4 Multiple Non-Persistent Cross-Site Scripting Vulnerabilities Julien Ahrens (Oct 21)

Justin Ferguson

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Justin Ferguson (Oct 02)
Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Justin Ferguson (Oct 03)

king cope

Apache PHP Remote Exploit - apache-magika.c king cope (Oct 29)

Kotas, Kevin J

CA20131024-01: Security Notice for CA SiteMinder Kotas, Kevin J (Oct 24)

Krzysztof Kotowicz

EasyXDM 2.4.16 multiple vulnerabilities Krzysztof Kotowicz (Oct 24)

Larry W. Cashdollar

Multiple vulnerabilities in Ice Cold Apps Servers Ulitmate Version 6.0.2(12) for Android Larry W. Cashdollar (Oct 04)

Levon Kayan

ap-unlock-v2.py - apache/$webserver + php remote code execution exploit Levon Kayan (Oct 31)
new tool mbr_store-1.0.tar.gz and new version of hwk Levon Kayan (Oct 18)
ap-unlock.py - apache + php remote code exection exploit Levon Kayan (Oct 29)

Lukasz Lenart

[ANN] Struts 2.3.15.3 GA release available - security fix Lukasz Lenart (Oct 18)

Luther Blissett

Re: Mavericks...less then a bargin? Luther Blissett (Oct 29)
Re: How many .gov sites did the usa government ddosed/nearly defaced? Luther Blissett (Oct 09)

Major Malfunction

DC4420 - London DEFCON - October meet - Tuesday 29th October 2013 Major Malfunction (Oct 25)

Marc Ruef

[scip_Advisory 10847] MobileIron 4.5.4 Device Registration regpin Cross Site Scripting Marc Ruef (Oct 28)

Michael Gilbert

[SECURITY] [DSA 2779-1] libxml2 security update Michael Gilbert (Oct 14)
[SECURITY] [DSA 2785-1] chromium-browser security update Michael Gilbert (Oct 27)
[SECURITY] [DSA 2786-1] icu security update Michael Gilbert (Oct 28)

Michal Zalewski

Re: Serious Yahoo bug discovered. Researchers rewarded with $12.50 Michal Zalewski (Oct 03)
Re: Any particular reason why MS is scanning me for port 80? Michal Zalewski (Oct 21)

mildorarth bossman

Hack a Facebook account win 3 IE9+ UAFS (0day) mildorarth bossman (Oct 11)

Moritz Muehlenhoff

[SECURITY] [DSA 2772-1] typo3-src security update Moritz Muehlenhoff (Oct 10)
[SECURITY] [DSA 2771-1] nas security update Moritz Muehlenhoff (Oct 09)
[SECURITY] [DSA 2782-1] polarssl security update Moritz Muehlenhoff (Oct 20)
[SECURITY] [DSA 2776-1] drupal6 security update Moritz Muehlenhoff (Oct 11)
[SECURITY] [DSA 2777-1] systemd security update Moritz Muehlenhoff (Oct 11)
[SECURITY] [DSA 2784-1] xorg-server security update Moritz Muehlenhoff (Oct 22)
[SECURITY] [DSA 2780-1] mysql-5.1 security update Moritz Muehlenhoff (Oct 18)

MustLive

AFU and IL vulnerabilities in Uploadify MustLive (Oct 25)
Multiple vulnerabilities in mp3-player MustLive (Oct 12)
Multiple vulnerabilities in flv-player MustLive (Oct 09)

nullcon

nullcon Goa V First speaker list and CFP closes soon nullcon (Oct 30)

Omar Benbouazza

Ploutus malware, free cash Omar Benbouazza (Oct 16)
Re: D-Link Security Contact? Omar Benbouazza (Oct 23)
Re: How many .gov sites did the usa government ddosed/nearly defaced? Omar Benbouazza (Oct 10)
Re: Mavericks...less then a bargin? Omar Benbouazza (Oct 29)
Rooted CON 2014 - Call For Papers Omar Benbouazza (Oct 01)

Parth Shukla

AusCERT2014: Call for Presentations NOW OPEN Parth Shukla (Oct 22)
AusCERT2014: Call for Presentations NOW OPEN Parth Shukla (Oct 22)

Paul McMillan

Re: [Django] Cookie-based session storage session invalidation issue Paul McMillan (Oct 03)
Re: [Django] Cookie-based session storage session invalidation issue Paul McMillan (Oct 03)
Re: [Django] Cookie-based session storage session invalidation issue Paul McMillan (Oct 03)

Pavel Kankovsky

Re: Advantages of Stack Guard over Stack Shield Pavel Kankovsky (Oct 22)

Pedro Worcel

Re: Any particular reason why MS is scanning me for port 80? Pedro Worcel (Oct 22)
Re: How I Compiled TrueCrypt For Windows and Matched the Official Binaries Pedro Worcel (Oct 28)
Re: Handling bad ISP's Pedro Worcel (Oct 24)

PuNkErX w

Re: Mavericks...less then a bargin? PuNkErX w (Oct 28)

RandallM

Cryptolocker- Hey SOPHOS RandallM (Oct 29)

Randal T. Rioux

Re: PRISM Randal T. Rioux (Oct 22)

Raphael Geissert

[SECURITY] [DSA 2788-1] iceweasel security update Raphael Geissert (Oct 31)

Richard Weinberger

Level One Enterprise Access Points Password Disclosure Richard Weinberger (Oct 16)

root

[CVE-2013-5939]PHPCMS guestbook module Stored XSS Vulnerability root (Oct 22)

Ryan Baxter

[CVE-2013-4295] Apache Shindig information disclosure vulnerability Ryan Baxter (Oct 22)

Salvatore Bonaccorso

[SECURITY] [DSA 2778-1] libapache2-mod-fcgid security update Salvatore Bonaccorso (Oct 11)
[SECURITY] [DSA 2768-1] icedtea-web security update Salvatore Bonaccorso (Oct 04)
[SECURITY] [DSA 2783-2] librack-ruby regression update Salvatore Bonaccorso (Oct 24)
[SECURITY] [DSA 2787-1] roundcube security update Salvatore Bonaccorso (Oct 27)
[SECURITY] [DSA-2769-1] kfreebsd-9 security update Salvatore Bonaccorso (Oct 08)
[SECURITY] [DSA 2770-1] torque security update Salvatore Bonaccorso (Oct 09)

Scott Herbert

Re: Foreign Intelligence Resistant systems [was Re: reasonable return on investment; better investments in security [....]] Scott Herbert (Oct 18)

SEC Consult Vulnerability Lab

SEC Consult SA-20131003-0 :: Denial of service vulnerability in Citrix NetScaler SEC Consult Vulnerability Lab (Oct 03)
SEC Consult SA-20131015-0 :: Multiple vulnerabilities in SpamTitan SEC Consult Vulnerability Lab (Oct 15)
SEC Consult SA-20131004-0 :: SQL injection vulnerability in Zabbix SEC Consult Vulnerability Lab (Oct 04)

security

[ MDVSA-2013:254 ] quagga security (Oct 18)
[ MDVSA-2013:248 ] xinetd security (Oct 10)
[ MDVSA-2013:256 ] apache-mod_fcgid security (Oct 18)
[ MDVSA-2013:250 ] mysql security (Oct 17)
[ MDVSA-2013:260 ] x11-server security (Oct 28)
[ MDVSA-2013:257 ] nss security (Oct 23)
[ MDVSA-2013:247 ] gnupg security (Oct 10)
[ MDVSA-2013:263 ] roundcubemail security (Oct 29)
[ MDVSA-2013:251 ] aircrack-ng security (Oct 18)
[ MDVSA-2013:245 ] proftpd security (Oct 03)
[ MDVSA-2013:259 ] x11-server security (Oct 28)
[ MDVSA-2013:264 ] firefox security (Oct 31)
[ MDVSA-2013:262 ] python-pycrypto security (Oct 28)
[ MDVSA-2013:258 ] icu security (Oct 28)
[ MDVSA-2013:252 ] torque security (Oct 18)
[ MDVSA-2013:253 ] libtar security (Oct 18)
[ MDVSA-2013:255 ] clutter security (Oct 18)
[ MDVSA-2013:246 ] openjpa security (Oct 07)
[ MDVSA-2013:249 ] libraw security (Oct 10)
[ MDVSA-2013:261 ] dropbear security (Oct 28)

security curmudgeon

Re: My File Explorer v1.3.1 iOS - Multiple Web Vulnerabilities security curmudgeon (Oct 21)
Re: Apple iOS 7.2 - Sim Lock Screen Display Bypass Vulnerability security curmudgeon (Oct 16)

Security Explorations

[SE-2012-01] Issue 69 details and IBM Java vulnerabilities Security Explorations (Oct 16)

security-news

[Security-news] SA-CONTRIB-2013-085 - Feed Element Mapper - Cross Site Scripting security-news (Oct 30)
[Security-news] SA-CONTRIB-2013-083 - Quiz - Access Bypass security-news (Oct 30)
[Security-news] SA-CONTRIB-2013-079 - Context - Mulitple Vulnerabilities security-news (Oct 16)
[Security-news] SA-CONTRIB-2013-082 - Bean - Cross Site Scripting (XSS) security-news (Oct 23)
[Security-news] SA-CONTRIB-2013-078 - Quick Tabs - Access Bypass security-news (Oct 02)
[Security-news] SA-CONTRIB-2013-081 - Spaces - Access bypass security-news (Oct 23)
[Security-news] SA-CONTRIB-2013-084 - FileField Sources - Access Bypass security-news (Oct 30)
[Security-news] PSA-2013-002: Direct download links available even during Drupal.org upgrade window security-news (Oct 30)
[Security-news] SA-CONTRIB-2013-080 - Simplenews - Cross Site Scripting (XSS) security-news (Oct 16)
[Security-news] SA-CONTRIB-2013-086 - Monster Menus - Access bypass security-news (Oct 30)

Shelby Spencer

ASUS RT-N13U Unsecured Telnet on LAN and WAN Shelby Spencer (Oct 29)
Re: ASUS RT-N13U Unsecured Telnet on LAN and WAN Shelby Spencer (Oct 29)

Short, Chris

Re: Handling bad ISP's Short, Chris (Oct 25)

sid

Re: NotSoSecure CTF (in partnership with Appsec USA) sid (Oct 25)
NotSoSecure CTF (in partnership with Appsec USA) sid (Oct 08)

silence_is_best

Re: Handling bad ISP's silence_is_best (Oct 24)
Any particular reason why MS is scanning me for port 80? silence_is_best (Oct 21)
Handling bad ISP's silence_is_best (Oct 23)
Re: Mavericks...less then a bargin? silence_is_best (Oct 29)
Re: Handling bad ISP's silence_is_best (Oct 24)
Mavericks...less then a bargin? silence_is_best (Oct 28)
Re: [Full-disclosure] Any particular reason why MS is scanning me for port 80? silence_is_best (Oct 22)
Re: Mavericks...less then a bargin? silence_is_best (Oct 28)
Re: Any particular reason why MS is scanning me for port 80? silence_is_best (Oct 22)
Re: Mavericks...less then a bargin? silence_is_best (Oct 29)

Stefan Kanthak

Defense in depth -- the Microsoft way (part 12): NOOP security fixes Stefan Kanthak (Oct 19)
Defense in depth -- the Microsoft way (part 11): privilege escalation for dummies Stefan Kanthak (Oct 01)

Steve Pirk

Re: [funsec] Going beyond vulnerability rewards Steve Pirk (Oct 13)

Swair Mehta

Re: Blog Post: Complete, Persistent Compromise of Netgear Wireless Routers Swair Mehta (Oct 23)

Thijs Kinkhorst

[SECURITY] [DSA 2783-1] librack-ruby security update Thijs Kinkhorst (Oct 21)
[SECURITY] [DSA 2773-1] gnupg security update Thijs Kinkhorst (Oct 11)
[SECURITY] [DSA 2774-1] gnupg security update Thijs Kinkhorst (Oct 11)
[SECURITY] [DSA 2775-1] ejabberd security update Thijs Kinkhorst (Oct 11)

Valdis . Kletnieks

Re: PRISM Valdis . Kletnieks (Oct 05)

"VMware Security Response Center"

NEW VMSA-2013-0012 VMware vSphere updates address multiple vulnerabilities "VMware Security Response Center" (Oct 17)

Vulnerability Lab

PayPal Inc Bug Bounty #61 - Persistent Mail Encoding Vulnerability Vulnerability Lab (Oct 17)
SilverStripe Framework CMS 3.0.5 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 02)
Bluetooth U v1.2.0 iOS - Directory Traversal Vulnerability Vulnerability Lab (Oct 17)
Onpub CMS 1.4 & 1.5 - Multiple SQL Injection Vulnerabilities Vulnerability Lab (Oct 25)
ILIAS eLearning 4.3.4 & 4.4 CMS - Persistent Notes Web Vulnerability Vulnerability Lab (Oct 28)
Apple iOS 7.2 - Sim Lock Screen Display Bypass Vulnerability Vulnerability Lab (Oct 15)
ZAPms v1.42 CMS - Client Side Cross Site Scripting Web Vulnerability Vulnerability Lab (Oct 15)
DornCMS Application v1.4 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 15)
Paypal Inc Bug Bounty #105 MOS - Multiple Persistent Print Layout Vulnerabilities Vulnerability Lab (Oct 15)
elproLOG MONITOR WebAccess 2.1 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 02)
Apple iOS 7 iPad2 Face-Time 1.0.2 - Privacy Vulnerability Vulnerability Lab (Oct 02)
Olat CMS 7.8.0.1 - Persistent Calender Web Vulnerability Vulnerability Lab (Oct 29)
Elite Graphix ElitCMS 1.01 & PRO - Multiple Web Vulnerabilities Vulnerability Lab (Oct 17)
PayPal Inc Bug Bounty #61 - Persistent Mail Encoding Vulnerability Vulnerability Lab (Oct 16)
Hide Photo+Video Safe v1.6 iOS - Multiple Vulnerabilities Vulnerability Lab (Oct 02)
Feeder.co RSS Feeder 5.2 Chrome - Persistent Software Vulnerability Vulnerability Lab (Oct 25)
GTX CMS 2013 Optima - Multiple Web Vulnerabilities Vulnerability Lab (Oct 29)
WebAssist PowerCMS PHP - Multiple Web Vulnerabilities Vulnerability Lab (Oct 02)
Security Guard CMS QT 4.7.3 - Local Stack Buffer Overflow Vulnerability Vulnerability Lab (Oct 02)
My File Explorer v1.3.1 iOS - Multiple Web Vulnerabilities Vulnerability Lab (Oct 15)
OliveOffice Mobile Suite 2.0.3 iOS - File Include Vulnerability Vulnerability Lab (Oct 15)
Paypal Inc Bug Bounty #99 - Filter Bypass & Persistent Vulnerability Vulnerability Lab (Oct 02)
UbiDisk File Manager v2.0 iOS - Multiple Web Vulnerabilities Vulnerability Lab (Oct 15)
Zikula CMS v1.3.5 - Multiple Web Vulnerabilities Vulnerability Lab (Oct 17)
Paypal Inc Bug Bounty #104 - Persistent Exception Vulnerability Vulnerability Lab (Oct 25)

Wooyun.org

[Wooyun]Apache Struts2 showcase multiple XSS Wooyun.org (Oct 27)
[Wooyun]German Nutrition Society website Sql injection Wooyun.org (Oct 16)

x90c

[Article] The Audit DSOs of the rtld x90c (Oct 23)
[Article] Linux Kernel Patches For Linux Kernel Security x90c (Oct 01)
[Article] The Audit DSOs of the rtld * NO SPAM * x90c (Oct 23)
[Article] The Audit DSOs of the rtld x90c (Oct 23)
[Article] The Audit DSOs of the rtld x90c (Oct 23)
x90c's site Announcement x90c (Oct 19)
glibc 2.5 <= reloc types to crash bug x90c (Oct 20)
Linux Kernel Patches For Linux Kernel Security x90c (Oct 19)
[Article] The Internal of Reloc .text x90c (Oct 20)
[Article] The Audit DSOs of the rtld x90c (Oct 23)
[Article] The Audit DSOs of the rtld x90c (Oct 23)

Xavier de Carné de Carnavalet

How I Compiled TrueCrypt For Windows and Matched the Official Binaries Xavier de Carné de Carnavalet (Oct 27)

X-Cisadane

WebTester 5.x Multiple Vulnerabilities X-Cisadane (Oct 16)

yello man

remote root exploit in pineapp mail-secure yello man (Oct 15)
backdoors in spamtitan yello man (Oct 15)

you help

Apache Software Foundation A Subsite Remote command execution you help (Oct 13)
Japan's largest domain name registrar a subsite remote command execution you help (Oct 14)

Yvan Janssens

.NET Runtime packer PoC Yvan Janssens (Oct 24)

Yves-Alexis Perez

[SECURITY] [DSA 2781-1] python-crypto security update Yves-Alexis Perez (Oct 19)

Zachary Cutlip

Netgear Root Compromise via Command Injection Zachary Cutlip (Oct 25)
Blog Post: Complete, Persistent Compromise of Netgear Wireless Routers Zachary Cutlip (Oct 22)

Źmicier Januszkiewicz

Re: OliveOffice Mobile Suite 2.0.3 iOS - File Include Vulnerability Źmicier Januszkiewicz (Oct 16)