Full Disclosure: by date

434 messages starting Mar 01 14 and ending Mar 31 14
Date index | Thread index | Author index


Saturday, 01 March

[ANNOUNCE] CVE-2014-0002 and CVE-2014-0003 - Apache Camel critical disclosure vulnerability Christian Mueller
CVE-2014-1216 - Remote Command Execution in Fitnesse Wiki Portcullis Advisories
CVE-2014-5880 - Authentication Bypass in Oracle Demantra Portcullis Advisories
CVE-2014-5795 - Database Credentials Leak in Oracle Demantra Portcullis Advisories
Re: CVE-2014-5877 - Local File Inclusion in Oracle Demantra Portcullis Advisories
Re: CVE-2014-5880 - Authentication Bypass in Oracle Demantra Arron Dowdeswell
Re: CVE-2014-5795 - Database Credentials Leak in Oracle Demantra Arron Dowdeswell
CVE-2014-0371 - Reflective XSS in Oracle Demantra Portcullis Advisories
CVE-2014-0379 - Stored Cross-site Scripting in Oracle Demantra Portcullis Advisories
CVE-2014-0372 - SQL Injection in Oracle Demantra Portcullis Advisories
Re: CVE-2014-5795 - Database Credentials Leak in Oracle Demantra Portcullis Advisories
Re: CVE-2014-5880 - Authentication Bypass in Oracle Demantra Portcullis Advisories
Re: CVE-2014-5877 - Local File Inclusion in Oracle Demantra Portcullis Advisories
[CVE-2013-6231] Remote Privilege Escalation in SpagoBI v4.0 Christian Catalano
CVE-2014-5877 - Local File Inclusion in Oracle Demantra Portcullis Advisories
[CVE-2013-6232] Persistent Cross-Site Scripting (XSS) in SpagoBI v4.0 Christian Catalano
[CVE-2013-6233] Persistent HTML Script Insertion permits offsite-bound forms in SpagoBI v4.0 Christian Catalano
[CVE-2013-6234] XSS File Upload in SpagoBI v4.0 Christian Catalano

Sunday, 02 March

[CVE-2014-2206] GetGo Download Manager HTTP Response Header Buffer Overflow Remote Code Execution Julien Ahrens
[SECURITY] [DSA 2868-1] php5 security update Salvatore Bonaccorso

Monday, 03 March

CSRF in WordPress plugin Google Analytics MU 2.3 Harry Metcalfe
CVE-2014-2238 -- MantisBT aux mod Brandon Perry

Tuesday, 04 March

[Announce] Apache Shiro 1.2.3 Released - Security Advisory Brian Demers
[SECURITY] [DSA 2869-1] gnutls26 security update Yves-Alexis Perez
[CVE-2014-0334] XSS in CMS made simple, plus other security issues Pedro Ribeiro
Google Inc., (Youtube.com) Unrestricted File Upload Vulnerability. Nicholas Lemonias.
[CFP] Hack In Paris 2014 CFP is postponed to March 10 Damien Cauquil
Netvolution CMS 3 SQL injection Project Zero Labs
[Call for Presenters] Security BSides Las Vegas BSidesLV Info

Wednesday, 05 March

[CVE-2014-0072] Apache Cordova File-Transfer insecure defaults Ian Clelland
[CVE-2014-0073] Apache Cordova In-App-Browser privilege escalation Ian Clelland
CVE-2014-1599 - 39 Type-1 XSS in SFR ADSL/Fiber Box alejandr0.w3b.p0wn3r
Google's (YouTube) Arbitrary File Upload Vulnerability Report with PoC Nicholas Lemonias.
Capstone disassembly framework 2.1 released! Nguyen Anh Quynh
Cisco Security Advisory: Multiple Vulnerabilities in Cisco Wireless LAN Controllers Cisco Systems Product Security Incident Response Team
Cisco Security Advisory: Cisco Small Business Router Password Disclosure Vulnerability Cisco Systems Product Security Incident Response Team
Tool Release: nsdtool - netgear switch discovery Curesec Research Team
[CVE-2014-0683]Router Cisco RV110W - RV215W - CVR100W - Bypass Login Page - Admin Password Disclosure Gustavo Speranza
[Security-news] SA-CONTRIB-2014-029 - Mime Mail - Access Bypass security-news
[Security-news] SA-CONTRIB-2014-028 - Masquerade - Access bypass security-news
[Security-news] SA-CONTRIB-2014-027 - NewsFlash Theme - XSS security-news
Re: [OT] pls ignore Gaurang Pandya

Thursday, 06 March

SonicWall Dashboard Backend Server - Client Side Cross Site Scripting Web Vulnerability Vulnerability Lab
Re: Cisco Security Advisory: Cisco Small Business Router Password Disclosure Vulnerability Brian M. Waters
[ANN] Struts 2.3.16.1 GA release available - security fix Lukasz Lenart
CVE-2014-2044 - Remote Code Execution in ownCloud Portcullis Advisories
OT What is happening with bitcoins? Georgi Guninski
Re: OT What is happening with bitcoins? Brandon Perry
Re: [ANN] Struts 2.3.16.1 GA release available - security fix Tim
Rails and redirections Brandon Perry
Re: [ANN] Struts 2.3.16.1 GA release available - security fix Tim
XSS in url for access of Confirmation Required in box for antispam from company AKER (CVE-2013-6037) William Costa
Live PoC - Confirming completion of arbitrary file uploads to You Tube's Servers Nicholas Lemonias.
Re: [ANN] Struts 2.3.16.1 GA release available - security fix Lukasz Lenart
Re: Rails and redirections Timothy Goddard
Re: Rails and redirections Brandon Perry
Re: Rails and redirections Brandon Perry

Friday, 07 March

SEC Consult SA-20140307-0 :: Unauthenticated access & manipulation of settings in Huawei E5331 MiFi mobile hotspot SEC Consult Vulnerability Lab
Garage4Hackers Ranchoddas Series - Part 2 on Reverse Engineering - Free Webinar Sandeep Kamble
DAVOSET v.1.1.8 MustLive
Re: OT What is happening with bitcoins? Pedro Worcel
Re: Garage4Hackers Ranchoddas Series - Part 2 on Reverse Engineering - Free Webinar Sandeep Kamble

Saturday, 08 March

Yahoo Bug Bounty Program Vulnerability #1 XSS on ads.yahoo.com Stefan Schurtz
Yahoo Bug Bounty Program Vulnerability #3 XSS on de-mg42.mail.yahoo.com Stefan Schurtz
Yahoo Bug Bounty Program Vulnerability #4 #5 #6 Cross-site Scripting vulnerabilities Stefan Schurtz
Re: Yahoo Bug Bounty Program Vulnerability #3 XSS on de-mg42.mail.yahoo.com Stefan Schurtz
[SECURITY] [DSA 2870-1] libyaml-libyaml-perl security update Salvatore Bonaccorso
MODX SQLi from oss-sec Brandon Perry
Re: MODX SQLi from oss-sec Brandon Perry
Re: MODX SQLi from oss-sec Brandon Perry

Sunday, 09 March

Re: SQL injection in MODX Brandon Perry

Monday, 10 March

Re: OT What is happening with bitcoins? coderman
Re: Hacking in Schools coderman
[HTTPCS] ClanSphere 'where' Cross Site Scripting Vulnerability HTTPCS
OXATIS 'EMSJ' Cross Site Scripting Vulnerability HTTPCS
Re: OT What is happening with bitcoins? Meaux, Kirk
List Charter John Cartwright
[ MDVSA-2014:048 ] gnutls security
[ MDVSA-2014:049 ] subversion security
[SECURITY] [DSA 2871-1] wireshark security update Moritz Muehlenhoff
[SECURITY] [DSA 2872-1] udisks security update Moritz Muehlenhoff
[ MDVSA-2014:050 ] wireshark security
Re: OT What is happening with bitcoins? chedder
AST-2014-001: Stack Overflow in HTTP Processing of Cookie Headers. Asterisk Security Team
AST-2014-002: Denial of Service Through File Descriptor Exhaustion with chan_sip Session-Timers Asterisk Security Team
AST-2014-003: Remote Crash Vulnerability in PJSIP channel driver Asterisk Security Team
AST-2014-004: Remote Crash Vulnerability in PJSIP Channel Driver Subscription Handling Asterisk Security Team

Tuesday, 11 March

Hackito Ergo Sum 2014 CFP Alexandre De Oliveira
NotSoSecure CTF [April 18th to 20th 2014] Sumit Siddharth
Re: OT What is happening with bitcoins? Julius Kivimäki
Passwords Analyser Tool Nahuel Grisolia
Apple TV log file password disclosure David Schuetz
[CVE-2013-6835] - iOS 7.0.6 Safari/Facetime-Audio Privacy issue Guillaume Ross
Re: Passwords Analyser Tool Daniel Wood
Re: OT What is happening with bitcoins? Ron Scott-Adams
CORE-2014-0002 - Oracle VirtualBox 3D Acceleration Multiple Memory Corruption Vulnerabilities CORE Advisories Team
[SECURITY] [DSA 2873-1] file security update Salvatore Bonaccorso
NEW VMSA-2014-0002 VMware vSphere updates to third party libraries "VMware Security Response Center"

Wednesday, 12 March

Medium severity flaw in BlackBerry QNX Neutrino RTOS Tim Brown
CVE-2014-0054 Spring MVC Incomplete fix for CVE-2013-4152 / CVE-2013-6429 (XXE) Pivotal Security Team
CVE-2014-0097 Spring Security Blank password may bypass user authentication Pivotal Security Team
CVE-2014-1904 XSS when using Spring MVC Pivotal Security Team
CVE-2014-1686 -- Information disclosure: webserver source path in Mediawiki 1.18.0 alejandr0.w3b.p0wn3r
CVE-2014-2043 - SQL Injection in Procentia IntelliPen Portcullis Advisories
CVE-2014-1222 - Local File Inclusion in Vtiger CRM Portcullis Advisories
Remote Command Injection in Arabic Prawn 0.0.1 Ruby Gem Larry W. Cashdollar
[SECURITY] [DSA 2874-1] mutt security update Moritz Muehlenhoff
[SECURITY] [DSA 2875-1] cups-filters security update Moritz Muehlenhoff
[SECURITY] [DSA 2876-1] cups security update Moritz Muehlenhoff
[Security-news] SA-CONTRIB-2014-030 - SexyBookmarks - Information Disclosure security-news
Multiplus XSS in Proxmox Mail Gateway 3.1 (CVE-2014-2325) William Costa
[Security-news] SA-CONTRIB-2014-031 - Webform Template - Access Bypass security-news

Thursday, 13 March

QUANTUMSQUIRREL - attrition.org unmasked as NSA TAO OP coderman
[ MDVSA-2014:051 ] file security
[ MDVSA-2014:052 ] net-snmp security
[ MDVSA-2014:053 ] libssh security
[ MDVSA-2014:054 ] otrs security
[ MDVSA-2014:055 ] owncloud security
[SECURITY] [DSA 2877-1] lighttpd security update Michael Gilbert
Byte CMS Cross Site Scripting Vulnerabilities Project Zero Labs
PowerArchiver: Uses insecure legacy PKZIP encryption when AES is selected (CVE-2014-2319) Hanno Böck
Re: OT What is happening with bitcoins? Mark M. Jaycox (EFF)
BSides Connecticut - Call for Speakers William Reyor
Google vulnerabilities with PoC Nicholas Lemonias.
Re: Medium severity flaw in BlackBerry QNX Neutrino RTOS Tim Brown
[ MDVSA-2014:056 ] apache-commons-fileupload security
Capstone disassembly framework 2.1.1 released! Nguyen Anh Quynh
[ MDVSA-2014:057 ] mediawiki security
[SECURITY] [DSA 2878-1] virtualbox security update Moritz Muehlenhoff
[ MDVSA-2014:058 ] freeradius security
Re: Google vulnerabilities with PoC antisnatchor
Re: Google vulnerabilities with PoC Michal Zalewski
Re: Google vulnerabilities with PoC Brandon Perry
Re: Google vulnerabilities with PoC Michal Zalewski
Re: Google vulnerabilities with PoC Źmicier Januszkiewicz
Re: Google vulnerabilities with PoC Brandon Perry
CarolinaCon-10 - May 2014 - FINAL ANNOUNCEMENT Vic Vandal
[CVE-2014-2087] Free Download Manager CDownloads_Deleted::UpdateDownload() Buffer Overflow Remote Code Execution Julien Ahrens
Re: Google vulnerabilities with PoC andfarm
Re: Google vulnerabilities with PoC Julius Kivimäki
Re: Google vulnerabilities with PoC Pedro Ribeiro
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Julius Kivimäki
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Julius Kivimäki
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC J. Tozo
ActiVPN launches its security bug bounty Ninja ActiVPN
Re: Google vulnerabilities with PoC Julius Kivimäki
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
WatchGuard Fireware XTM devices contain a cross-site scripting vulnerability (CVE-2014-0338) William Costa
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
[SECURITY] [DSA 2879-1] libssh security update Raphael Geissert
Re: Google vulnerabilities with PoC Hugh Davenport
Fwd: Hacking Exposed: Virtualization & Cloud Computing: Secrets & Solutions Kristian Erik Hermansen
Re: Google vulnerabilities with PoC Michal Zalewski
Webcast Reminder: Garage4Hackers Ranchoddas Series 2 on Reverse Engineering Sandeep Kamble
Re: Google vulnerabilities with PoC Jerome Athias
Re: Google vulnerabilities with PoC Michal Zalewski

Friday, 14 March

Re: Google vulnerabilities with PoC Mario Vilas
[CVE-2014-2339] GNUboard SQL Injection Vulnerability claepo.wang
MacOSX Safari Firefox Kaspersky RegExp Remote/Local Denial of Service [CXSEC]
Re: Google vulnerabilities with PoC Julius Kivimäki
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Trixbox all versions , Remote root exploit 0u7 5m4r7
Re: Google vulnerabilities with PoC Mario Vilas
Re: Google vulnerabilities with PoC Pedro Ribeiro
Re: Google vulnerabilities with PoC Mario Vilas
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC antisnatchor
Re: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Nicholas Lemonias.
[ MDVSA-2014:059 ] php security
Re: Google vulnerabilities with PoC Sergio 'shadown' Alvarez
Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
[ MDVSA-2014:060 ] imapsync security
Re: Fwd: Google vulnerabilities with PoC Sergio 'shadown' Alvarez
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Mario Vilas
Re: Google vulnerabilities with PoC Mario Vilas
[ MDVSA-2014:061 ] oath-toolkit security
Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC antisnatchor
Fwd: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC antisnatchor
Re: Fwd: Google vulnerabilities with PoC Ulisses Montenegro
Re: Fwd: Google vulnerabilities with PoC Mike Hale
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC antisnatchor
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Google vulnerabilities with PoC Mario Vilas
Re: Fwd: Fwd: Google vulnerabilities with PoC Mario Vilas
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
CosmoShop unprotected admin-script "pwd.cgi" probably in all versions > 8.0 Rene Fischer
Re: Fwd: Google vulnerabilities with PoC Julius Kivimäki
Re: Fwd: Google vulnerabilities with PoC Thomas MacKenzie
Re: Google vulnerabilities with PoC Alfredo Ortega
Re: Google vulnerabilities with PoC Alfredo Ortega
Re: Fwd: Google vulnerabilities with PoC Krzysztof Kotowicz
Re: Fwd: Google vulnerabilities with PoC J. Tozo
Re: Google vulnerabilities with PoC Alfredo Ortega
Re: Fwd: Google vulnerabilities with PoC Krzysztof Kotowicz
Re: Fwd: Google vulnerabilities with PoC Julius Kivimäki
Re: Fwd: Google vulnerabilities with PoC Chris Thompson
Re: Fwd: Google vulnerabilities with PoC R D
Re: Fwd: Google vulnerabilities with PoC R D
Re: Fwd: Google vulnerabilities with PoC Chris Thompson
Re: Fwd: Google vulnerabilities with PoC Krzysztof Kotowicz
Re: Fwd: Google vulnerabilities with PoC J. Tozo
Re: Fwd: Google vulnerabilities with PoC R D
Re: Fwd: Google vulnerabilities with PoC Yvan Janssens
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.
Re: Fwd: Google vulnerabilities with PoC Nicholas Lemonias.

Saturday, 15 March

Trixbox all versions , Remote root Exploit 0u7 5m4r7
Re: Fwd: Google vulnerabilities with PoC M Kirschbaum
Re: Google vulnerabilities with PoC Michael Smith
Re: Fwd: Google vulnerabilities with PoC Colette Chamberland
Re: Fwd: Google vulnerabilities with PoC William Scott Lockwood III
Re: Fwd: Google vulnerabilities with PoC Brian M. Waters
Re: Full-Disclosure Digest, Vol 109, Issue 32 ChienD
Re: Fwd: Google vulnerabilities with PoC David H
Re: Fwd: Google vulnerabilities with PoC Colette Chamberland
Re: Fwd: Google vulnerabilities with PoC antisnatchor
Re: Google vulnerabilities with PoC M Kirschbaum
XSS Vulnerability in the Youtube Gallery 3.4.0 Component Mahmoud Ghorbanzadeh
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
Re: Google vulnerabilities with PoC Mario Vilas
Re: Google vulnerabilities with PoC antisnatchor
[CVE-2013-5955] Cross-site scripting Vulnerability in the Pbbooking 2.4 Mahmoud Ghorbanzadeh
[CVE-2013-5954] Multiple Cross Site Request Forgery Vulnerabilities in OpenX 2.8.11 Mahmoud Ghorbanzadeh
Re: Fwd: Google vulnerabilities with PoC Alfred Beese
Re: Google vulnerabilities with PoC M Kirschbaum
[CVE-2013-5951] Multiple Cross Site Scripting Vulnerabilities in eXtplorer 2.1.3 Mahmoud Ghorbanzadeh
Reflected XSS Attacks XSS vulnerabilities in Webmin 1.670 (CVE-2014-0339) William Costa
[CVE-2013-5952] Multiple Cross Site Scripting Vulnerabilities in Freichat Mahmoud Ghorbanzadeh
[CVE-2013-5953] Mahmoud Ghorbanzadeh
Re: Google vulnerabilities with PoC Gynvael Coldwind
Re: Google vulnerabilities with PoC Mario Vilas
Re: Google vulnerabilities with PoC Mario Vilas
Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Mario Vilas
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski
Re: Fwd: Google vulnerabilities with PoC Michal Zalewski
Re: Google vulnerabilities with PoC Georgi Guninski
Re: Google vulnerabilities with PoC Gichuki John Chuksjonia
Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Stefan Jon Silverman

Sunday, 16 March

Re: XSS Vulnerability in the Youtube Gallery 3.4.0 Component Mahmoud Ghorbanzadeh
exploit for old rlpdaemon bug Nomen Nescio
Re: Google vulnerabilities with PoC Alfred Beese
Re: Google vulnerabilities with PoC M Kirschbaum
Re: Google vulnerabilities with PoC T Imbrahim
Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Thomas Williams
Re: Fwd: Google vulnerabilities with PoC T Imbrahim
Re: Fwd: Google vulnerabilities with PoC T Imbrahim
Re: Fwd: Google vulnerabilities with PoC T Imbrahim
Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Exibar

Monday, 17 March

Re: Fwd: Google vulnerabilities with PoC Pedro Ribeiro
[CVE-2014-2339] GNUboard SQL Injection Vulnerability claepo.wang
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
Re: Fwd: Google vulnerabilities with PoC T Imbrahim
Re: Fwd: Google vulnerabilities with PoC Gichuki John Chuksjonia
Re: Fwd: Google vulnerabilities with PoC Joxean Koret
Re: Fwd: Google vulnerabilities with PoC T Imbrahim
Re: Fwd: Google vulnerabilities with PoC Źmicier Januszkiewicz
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
Few Hrs left Webcast Reminder: Garage4Hackers Ranchoddas Series 2 on Reverse Engineering Sandeep Kamble
Re: Fwd: Google vulnerabilities with PoC Pedro Ribeiro
Re: Fwd: Google vulnerabilities with PoC Ulisses Montenegro
[ MDVSA-2014:062 ] webmin security
Re: Fwd: Google vulnerabilities with PoC Mario Vilas
Re: Garage4Hackers Ranchoddas Series - Part 2 on Reverse Engineering - Free Webinar Sandeep Kamble
Re: Bank of the West security contact? Kristian Erik Hermansen
Re: Bank of the West security contact? Jeffrey Walton
[ MDVSA-2014:063 ] x2goserver security
[ MDVSA-2014:064 ] udisks security
Re: Garage4Hackers Ranchoddas Series - Part 2 on Reverse Engineering - Free Webinar Sandeep Kamble
[SECURITY] [DSA 2880-1] python2.7 security update Moritz Muehlenhoff

Tuesday, 18 March

Emergency patch for ShadowIRCd versions 6.3+ and Elemental-IRCd 6.5+ Sam Dodrill
Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC The Doctor
CEbot: disasm from your Twitter account Capstone Engine
(CFP) LACSEC 2014: Cancun, Mexico. May 7-8, 2014 (EXTENDED DEADLINE) Fernando Gont
[Quantum Leap Advisory] #QLA140216 - VLC Reflected XSS vulnerability Francesco Perna
McAfee Cloud SSO and McAfee Asset Manager vulns Brandon Perry
Re: Bank of the West security contact? Florian Weimer
Re: Bank of the West security contact? Jeffrey Walton
All your PLC are belong to us (2) scadastrangelove

Wednesday, 19 March

Kaspersky 14.0.0.4651 RegExp Remote Denial of Service PoC2 [CXSEC]
Re: [SPAM] [Bayesian][bayesTestMode] Re: Google vulnerabilities with PoC Leutnant Steiner
USSD Sender Hacktool 1.0 AWeber Test
Administrivia: The End John Cartwright

Tuesday, 25 March

Administrivia: A Fresh Start Fyodor
Re: [oss-security] [OT] FD mailing list died. Time for new one coderman
good to see that we're back Samuel Alp

Wednesday, 26 March

What to do if this version of the list dies? Georgi Guninski
Re: What to do if this version of the list dies? Michal Zalewski
Re: What to do if this version of the list dies? Georgi Guninski
Advisory : Persistent Internet Storage Nico Le Moin
[GTA-2014-01] - Allied Telesis AT-RG634A ADSL Broadband router hidden administrative unauthenticated webshell. Groundworks Technologies Advisories Team
Re: Advisory : Persistent Internet Storage Joxean Koret
iThought App Multiple Vulnerabilities Justin Klein Keane
Public VCS security issues Patrik asd
Re: Public VCS security issues Ron
Re: Advisory : Persistent Internet Storage Samuel Alp
Re: [GTA-2014-01] - Allied Telesis AT-RG634A ADSL Broadband router hidden administrative unauthenticated webshell. Daniel Miller
Re: Advisory : Persistent Internet Storage Georgi Guninski
Re: Advisory : Persistent Internet Storage Georgi Guninski
Re: Public VCS security issues Jeremy Voorhis
Android IMSI-Catcher Detector (AIMSICD) SecUpwN
OT: Thanks to Fyodor xyberpix
Re: OT: Thanks to Fyodor Christian Fernandez
Re: Android IMSI-Catcher Detector (AIMSICD) charles
Master Lock random key code generation/distribution Fails Jimb0 Hon1nbo
Re: OT: Thanks to Fyodor Colin Keigher
Re: OT: Thanks to Fyodor devel
Re: OT: Thanks to Fyodor Jones, Jeff:(BSC)
Re: OT: Thanks to Fyodor Himanshu anand
Re: OT: Thanks to Fyodor SecUpwN
Re: Master Lock random key code generation/distribution Fails Daniel Miller
Re: Master Lock random key code generation/distribution Fails Jon Hart
Re: OT: Thanks to Fyodor dc0de () gmx com
Re: OT: Thanks to Fyodor Jean-Christophe Praud
Re: Master Lock random key code generation/distribution Fails WebDawg
Re: OT: Thanks to Fyodor Rami Taibah
Re: Master Lock random key code generation/distribution Fails Daniel Miller
Re: Master Lock random key code generation/distribution Fails Richard Chycoski
Re: OT: Thanks to Fyodor MadSaxon
Re: OT: Thanks to Fyodor Stefan Weimar
Re: OT: Thanks to Fyodor Chris Short
Re: Public VCS security issues Ronald
Re: Master Lock random key code generation/distribution Fails Hon1nbo
Re: OT: Thanks to Fyodor Security @ Planetkips
Re: Master Lock random key code generation/distribution Fails Moritz Naumann
Nuclear Regulatory Comm. password available through Google Hon1nbo
Re: Master Lock random key code generation/distribution Fails Jeff Kell
Re: Public VCS security issues Lorenz Diener
Re: OT: Thanks to Fyodor Srinivas Naik
Re: OT: Thanks to Fyodor Peter Malone
Adventure with Stack Smashing Protector (SSP) Adam Zabrocki
Monoprice Server-Side Cart Vulnerability Jason_Khanlar
Re: OT: Thanks to Fyodor Laskov Denis

Thursday, 27 March

Re: Android IMSI-Catcher Detector (AIMSICD) SecUpwN
Re: OT: Thanks to Fyodor Артур Истомин
Re: Master Lock random key code generation/distribution Fails Deviant Ollam
Re: Master Lock random key code generation/distribution Fails Steve Pordon
Re: Android IMSI-Catcher Detector (AIMSICD)
Re: OT: Thanks to Fyodor jajordan
[RT-SA-2014-002] rexx Recruitment: Cross-Site Scripting in User Registration RedTeam Pentesting GmbH
Re: Adventure with Stack Smashing Protector (SSP) Robert Święcki
Re: Android IMSI-Catcher Detector (AIMSICD) SecUpwN
Re: OT: Thanks to Fyodor Ferenc Kovacs
Angie's List Auth Bypass robert mccurdy
Re: OT: Thanks to Fyodor Justin Klein Keane

Friday, 28 March

Re: Adventure with Stack Smashing Protector (SSP) Adam Zabrocki
New Speakers at PHDays IV: How to Hack Gmail and WordPress and Spy through TV Alexander Lashkov
OT Crazy SAT encoding of md4 preimage Georgi Guninski
End-user exploitable local file inclusion vulnerability in Ajax Pagination (twitter Style) 1.1 (WordPress plugin) Harry Metcalfe
XSS, CSRF and blind SQL injection in GD Star Rating 1.9.22 (WordPress plugin) Harry Metcalfe
CSRF vulnerability in WP HTML Sitemap 1.2 (WordPress plugin) Harry Metcalfe
Wireless Security Paper Dillon Korman
SEC Consult SA-20140328-0 :: Multiple vulnerabilities in Symantec LiveUpdate Administrator SEC Consult Vulnerability Lab
Wireless Drive v1.1.0 iOS - Multiple Web Vulnerabilities Vulnerability Lab
My Photo Wifi Share & Photo Server 1.1 iOS - Command Injection Vulnerability Vulnerability Lab
Lazybone Studios WiFi Music 1.0 iOS - Multiple Vulnerabilities Vulnerability Lab
FTP Drive + HTTP 1.0.4 iOS - Code Execution Vulnerability Vulnerability Lab
ePhone Disk v1.0.2 iOS - Multiple Web Vulnerabilities Vulnerability Lab
iStArtApp FileXChange v6.2 iOS - Multiple Vulnerabilities Vulnerability Lab
Dell SonicWall EMail Security 7.4.5 - Multiple Vulnerabilities (Bulletin) Vulnerability Lab
New fixes for Siemens S7 1200 PLC: Time is compressing... scadastrangelove
Canon Printer Exposes WiFi Password Taylor Hornby
Re: Canon Printer Exposes WiFi Password Matt Andreko

Saturday, 29 March

XSS and FPD vulnerabilities in Js-Multi-Hotel for WordPress MustLive
PoC: End-to-end correlation for Tor connections using an active timing attack Jann Horn
Re: PoC: End-to-end correlation for Tor connections using an active timing attack coderman
Re: Adventure with Stack Smashing Protector (SSP) Steven Stewart-Gallus
Re: PoC: End-to-end correlation for Tor connections using an active timing attack coderman

Sunday, 30 March

AlienVault 4.5.0 authenticated SQL injection Brandon Perry
Fwd: Multiple vulnerabilities in Ioncube loader-wizard Christian Mehlmauer
DAVOSET v.1.1.9 MustLive
Re: OT: Thanks to Fyodor Stefan Jon Silverman
Re: OT: Thanks to Fyodor dcz
Re: Wireless Security Paper Dillon Korman

Monday, 31 March

PhotoWIFI Lite v1.0 iOS - Multiple Web Vulnerabilities Vulnerability Lab
Vanctech File Commander 1.1 iOS - Multiple Vulnerabilities Vulnerability Lab
EMC CTA v10.0 unauthenticated XXE with root perms Brandon Perry
Introducing APSAM - Beyond Military Grade Security J. Oquendo
Multiple vulnerabilities in Js-Multi-Hotel for WordPress MustLive
immhooktmpl.py - Immunity template plugin for function hooking Levon Kayan
[TOOL] w3af 1.6 release Andres Riancho
Chunked requests to bypass ModSecurity and mod_headers Martin Holst Swende
Re: Introducing APSAM - Beyond Military Grade Security Jack Morgan
GOST 28147-89 gets 512 bit and 1 kbit keys gremlin