Mail Index
- [Full-disclosure] [ MDVSA-2012:026 ] postgresql
- Re: [Full-disclosure] Anon war?- arrests
- [Full-disclosure] [ MDVSA-2012:027 ] postgresql8.3
- Re: [Full-disclosure] Anon war?- arrests
- [Full-disclosure] Cisco Security Advisory: Cisco Cius Denial of Service Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Multiple Vulnerabilities in Cisco Wireless LAN Controllers
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco Unified Communications Manager Skinny Client Control Protocol Vulnerabilities
- From: Cisco Systems Product Security Incident Response Team
- Re: [Full-disclosure] Anon war?- arrests
- Re: [Full-disclosure] Anon war?- arrests
- [Full-disclosure] Cisco Security Advisory: Multiple Vulnerabilities in Cisco Unity Connection
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco TelePresence Video Communication Server Session Initiation Protocol Denial of Service Vulnerabilities
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] [SECURITY] [DSA 2421-1] moodle security update
- [Full-disclosure] [SECURITY] [DSA 2422-1] file security update
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-029 - Taxonomy Views Integrator - Cross Site Scripting (XSS)
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-028 - Hierarchical Select - Cross Site Scripting (XSS)
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-027 - Submenu Tree -Cross Site Scripting
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-026 - ZipCart - Access bypass
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-024 - MediaFront - Cross Site Scripting
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-025 - Cool aid; Editable help messages - Multiple vulnerabilities
- [Full-disclosure] [ MDVSA-2012:028 ] libxslt
- Re: [Full-disclosure] Anon war?- arrests
- Re: [Full-disclosure] Anon war?- arrests
- Re: [Full-disclosure] Anon war?- arrests
- [Full-disclosure] phxEventManager 2.0 beta 5 search.php search_terms SQL Injection Vulnerability
- Re: [Full-disclosure] Anon war?- arrests
- From: Christian Sciberras
- Re: [Full-disclosure] Anon war?- arrests
- [Full-disclosure] FlashFXP v4.1.8.1701 - Buffer Overflow Vulnerability
- From: research@xxxxxxxxxxxxxxxxxxxxx
- [Full-disclosure] LDAP Account Manager Pro v3.6 (lamp) - Multiple Vulnerabilities
- From: research@xxxxxxxxxxxxxxxxxxxxx
- [Full-disclosure] Endian UTM Firewall v2.4.x & v2.5.0 - Multiple Web Vulnerabilities
- From: research@xxxxxxxxxxxxxxxxxxxxx
- [Full-disclosure] linode.com hacked? anyone else?
- [Full-disclosure] [SECURITY] [DSA 2423-1] movabletype-opensource security update
- [Full-disclosure] Security Implications of Predictable IPv6 Fragment Identification values (rev'ed IETF I-D)
- [Full-disclosure] [SECURITY] [DSA 2424-1] libxml-atom-perl security update
- [Full-disclosure] Only two weeks left to Troopers12
- [Full-disclosure] [SECURITY] [DSA 2425-1] plib security update
- [Full-disclosure] Symfony2 Local File Disclosure - Security Advisory - SOS-12-002
- [Full-disclosure] %windir%\temp\sso\ssoexec.dll (or: how trustworthy is Microsoft's build process)
- [Full-disclosure] Path Traversal and O.S. Command Injection vulnerabilities in Polycom products
- From: João Paulo Caldas Campello
- [Full-disclosure] Open-Realty CMS 2.5.8 (2.x.x) <= "select_users_template" Local File Inclusion Vulnerability
- From: YGN Ethical Hacker Group
- [Full-disclosure] Etano 1.x <= Multiple Cross Site Scripting Vulnerabilities
- From: YGN Ethical Hacker Group
- [Full-disclosure] [SECURITY] [DSA 2426-1] gimp security update
- [Full-disclosure] [SECURITY] [DSA 2427-1] imagemagick security update
- Re: [Full-disclosure] Full disclosure is arrest of Sabu
- [Full-disclosure] Cookie based SQL Injection
- Re: [Full-disclosure] Cookie based SQL Injection
- Re: [Full-disclosure] Cookie based SQL Injection
- Re: [Full-disclosure] Cookie based SQL Injection
- Re: [Full-disclosure] Full disclosure is arrest of Sabu
- Re: [Full-disclosure] Full disclosure is arrest of Sabu
- Re: [Full-disclosure] Full disclosure is arrest of Sabu
- [Full-disclosure] Joining LulzSec
- [Full-disclosure] gnome-terminal, xfce4-terminal, terminator and others write scrollback buffer to disk
- [Full-disclosure] Sabu, the FBI informant?
- Re: [Full-disclosure] Sabu, the FBI informant?
- Re: [Full-disclosure] Sabu, the FBI informant?
- Re: [Full-disclosure] gnome-terminal, xfce4-terminal, terminator and others write scrollback buffer to disk
- Re: [Full-disclosure] Sabu, the FBI informant?
- [Full-disclosure] Iciniti Store SQL Injection - Security Advisory - SOS-12-003
- Re: [Full-disclosure] gnome-terminal, xfce4-terminal, terminator and others write scrollback buffer to disk
- Re: [Full-disclosure] Iciniti Store SQL Injection - Security Advisory - SOS-12-003
- [Full-disclosure] Pokemon.com has no respect for user's personal data
- [Full-disclosure] HITB2011KUL - Satellite Telephony Security - Jim Geovedi
- From: research@xxxxxxxxxxxxxxxxxxxxx
- Re: [Full-disclosure] Full disclosure is arrest of Sabu
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-030 - Data - Cross Site Scripting (XSS)
- [Full-disclosure] [SECURITY] [DSA 2429-1] mysql-5.1 security update
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-032 - Block Class - Cross Site scripting
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-034 - Node Recommendation Cross Site Scripting (XSS)
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-033 - Read More Link - Cross Site Scripting
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-031 - Multiple Modules Unsupported - UC PayDutchGroup - Information leakage and Multisite Search sql injection
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-035 - Webform Cross Site Scripting (XSS)
- [Full-disclosure] [Security-news] DRUPAL-PSA-2012-001 - localizations - Cross Site Scripting
- [Full-disclosure] Stakeout: how the FBI tracked and busted a Chicago Anon
- [Full-disclosure] Barracuda WAF 660 v7.6.0.028 - Cross Site Vulnerability
- From: research@xxxxxxxxxxxxxxxxxxxxx
- [Full-disclosure] Barracuda CudaTel v2.0.029.1 - Multiple Web Vulnerabilities
- From: research@xxxxxxxxxxxxxxxxxxxxx
- [Full-disclosure] Ilient SysAid v8.5.05 - Multiple Web Vulnerabilities
- From: research@xxxxxxxxxxxxxxxxxxxxx
- [Full-disclosure] Enterasys SecureStack Switch v6.x - Multiple Vulnerabilities
- From: research@xxxxxxxxxxxxxxxxxxxxx
- [Full-disclosure] Pitrinec MacroToolworks 7.5 - Buffer Overflow Vulnerability
- From: research@xxxxxxxxxxxxxxxxxxxxx
- [Full-disclosure] [HITB-Announce] HITB2012AMS SIGINT - Call for Submissions
- Re: [Full-disclosure] Stakeout: how the FBI tracked and busted a Chicago Anon
- Re: [Full-disclosure] Stakeout: how the FBI tracked and busted a Chicago Anon
- [Full-disclosure] [SECURITY] [DSA 2428-1] freetype security update
- Re: [Full-disclosure] Stakeout: how the FBI tracked and busted a Chicago Anon
- [Full-disclosure] VMSA-2012-0002 VMware vCenter Chargeback Manager Information Leak and Denial of Service
- From: VMware Security Team
- [Full-disclosure] VMSA-2012-0003 VMware VirtualCenter Update and ESX 3.5 patch update JRE
- From: VMware Security Team
- Re: [Full-disclosure] Full disclosure is arrest of Sabu
- Re: [Full-disclosure] Stakeout: how the FBI tracked and busted a Chicago Anon
- Re: [Full-disclosure] Stakeout: how the FBI tracked and busted a Chicago Anon
- [Full-disclosure] LSE-2012-03-01: PyPAM -- Python bindings for PAM - Double Free Corruption
- Re: [Full-disclosure] Stakeout: how the FBI tracked and busted a Chicago Anon
- [Full-disclosure] [Announcement] Call For Papers: OWASP InfoSec India Conference 2012
- [Full-disclosure] List Charter
- [Full-disclosure] power of this list..
- [Full-disclosure] LulzSec $ Sabu - lessons learned
- Re: [Full-disclosure] LulzSec $ Sabu - lessons learned
- [Full-disclosure] EGRC (formerly EITC) 2012 Save The Date (June 12th-14th, 2012)
- Re: [Full-disclosure] Stakeout: how the FBI tracked and busted a Chicago Anon
- [Full-disclosure] Windows Credentials Editor (WCE) v1.3beta 32bit release
- From: Amplia Security Research
- [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- [Full-disclosure] [SECURITY] [DSA 2430-1] python-pam security update
- Re: [Full-disclosure] [SECURITY] [DSA 2430-1] python-pam security update
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- From: Christian Sciberras
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] Welcome Back IRL
- Re: [Full-disclosure] Circumventing NAT via UDP hole punching.
- Re: [Full-disclosure] power of this list..
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- [Full-disclosure] [SECURITY] [DSA 2431-1] libdbd-pg-perl security update
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- [Full-disclosure] coverity
- Re: [Full-disclosure] Circumventing NAT via UDP hole punching.
- [Full-disclosure] Multiple vulnerabilities in EJBCA
- Re: [Full-disclosure] coverity
- [Full-disclosure] Aurora WebOPAC SQL Injection - Security Advisory - SOS-12-004
- [Full-disclosure] Why a Computer Programming *History* Class is Needed Re: The Mystery of the Duqu Framework
- [Full-disclosure] audio may be NSFW...just something I've been playing with
- [Full-disclosure] [SECURITY] [DSA 2432-1] libyaml-libyaml-perl security update
- [Full-disclosure] [Announcement] ClubHack Magazine Issue 26, March 2012 Released
- [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- From: Christophe Alladoum
- [Full-disclosure] QR code and the jester
- Re: [Full-disclosure] QR code and the jester
- [Full-disclosure] GrrCON 2012: Grand Rapids, MI - Sept 27-28
- [Full-disclosure] pentesting market
- Re: [Full-disclosure] QR code and the jester
- Re: [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- [Full-disclosure] Multiple vulnerabilities in ZyXel GS1510 web front end
- From: upsploit advisories
- Re: [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- Re: [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- Re: [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- Re: [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- Re: [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- Re: [Full-disclosure] [iputils] Integer overflow in iputils ping/ping6 tools
- [Full-disclosure] Drupal 7.x Search Module - Full Path Disclosure
- Re: [Full-disclosure] Drupal 7.x Search Module - Full Path Disclosure
- Re: [Full-disclosure] Drupal 7.x Search Module - Full Path Disclosure
- Re: [Full-disclosure] Drupal 7.x Search Module - Full Path Disclosure
- From: Christian Sciberras
- Re: [Full-disclosure] Drupal 7.x Search Module - Full Path Disclosure
- [Full-disclosure] Cisco Security Advisory: Cisco ASA 5500 Series Adaptive Security Appliance Clientless VPN ActiveX Control Remote Code Execution Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco Firewall Services Module Crafted Protocol Independent Multicast Message Denial of Service Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Multiple Vulnerabilities in Cisco ASA 5500 Series Adaptive Security Appliances and Cisco Catalyst 6500 Series ASA Services Module
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-036 - Multiple Modules Unsupported
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-040 - CKEditor and FCKeditor - multiple XSS, arbitrary code execution
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-038 - Views Language Switcher Cross Site Scripting (XSS)
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-037 - Slidebox - access bypass
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-039 - Language Icons - Cross Site Scripting (XSS)
- Re: [Full-disclosure] [Security-news] SA-CONTRIB-2012-040 - CKEditor and FCKeditor - multiple XSS, arbitrary code execution
- From: InterN0T Advisories
- Re: [Full-disclosure] [Security-news] SA-CONTRIB-2012-040 - CKEditor and FCKeditor - multiple XSS, arbitrary code execution
- From: InterN0T Advisories
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-041 - Fancy Slide - Cross Site Scripting (XSS)
- [Full-disclosure] Oracle Exadata Infiniband Switch default logins and world readable shadow file
- [Full-disclosure] Informations about old Sun-java-System-Web-Server/7.0
- Re: [Full-disclosure] [Security-news] SA-CONTRIB-2012-040 - CKEditor and FCKeditor - multiple XSS, arbitrary code execution
- [Full-disclosure] Earth to Facebook
- [Full-disclosure] SEC Consult SA-20120315-0 :: Multiple permanent XSS vulnerabilities in EMC Documentum eRoom
- From: SEC Consult Vulnerability Lab
- [Full-disclosure] ZDI-12-044 : Microsoft Remote Desktop Protocol Channel Abort Condition Remote Code Execution Vulnerability
- [Full-disclosure] [SECURITY] [DSA 2433-1] iceweasel security update
- [Full-disclosure] AST-2012-002: Remote Crash Vulnerability in Milliwatt Application
- From: Asterisk Security Team
- [Full-disclosure] AST-2012-003: Stack Buffer Overflow in HTTP Manager
- From: Asterisk Security Team
- [Full-disclosure] nSense-2012-001: Citrix License Server
- [Full-disclosure] [Announcement] ClubHack Mag - Call for Articles
- [Full-disclosure] VMSA-2012-0004 VMware View privilege escalation and cross-site scripting
- From: VMware Security Team
- [Full-disclosure] VMSA-2012-0005 VMware vCenter Server, Orchestrator, Update Manager, vShield, vSphere Client, ESXi and ESX address several security issues
- From: VMware Security Team
- [Full-disclosure] [ MDVSA-2012:029 ] pidgin
- [Full-disclosure] Microsoft Bing - Editor Flash Component Vulnerability
- [Full-disclosure] JPM Article Script 6 - SQL Injection Vulnerability
- Re: [Full-disclosure] Oracle Exadata Infiniband Switch default logins and world readable shadow file
- [Full-disclosure] ms12-020 PoC
- [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] ms12-020 PoC
- [Full-disclosure] [ MDVSA-2012:030 ] systemd
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] [Security-news] SA-CONTRIB-2012-040 - CKEditor and FCKeditor - multiple XSS, arbitrary code execution
- From: InterN0T Advisories
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] [Security-news] SA-CONTRIB-2012-040 - CKEditor and FCKeditor - multiple XSS, arbitrary code execution
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] Oracle Exadata Infiniband Switch default logins and world readable shadow file
- Re: [Full-disclosure] is my ISP lying or stupid?
- [Full-disclosure] [ MDVSA-2012:031 ] firefox
- Re: [Full-disclosure] is my ISP lying or stupid?
- From: Thor (Hammer of God)
- Re: [Full-disclosure] Earth to Facebook
- From: crazy frog crazy frog
- [Full-disclosure] Apache Tomcat Remote Exploit (PUT request) and Account Scanner
- [Full-disclosure] PenTest Market - All about pentesting business
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] ms12-020 PoC
- [Full-disclosure] ms12-020 new poc
- From: yuri goncalves soares
- [Full-disclosure] c0c0n 2012 - Call For Papers and Call For Workshops
- From: Yashartha Chaturvedi
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] Earth to Facebook
- Re: [Full-disclosure] Fw: Earth to Facebook
- From: upsploit advisories
- Re: [Full-disclosure] ms12-020 new poc
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] Earth to Facebook
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] ms12-020 PoC
- From: Thor (Hammer of God)
- Re: [Full-disclosure] ms12-020 PoC
- From: Thor (Hammer of God)
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] ms12-020 new poc
- Re: [Full-disclosure] ms12-020 PoC
- From: Thor (Hammer of God)
- [Full-disclosure] Android wipe unreliable
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] Earth to Facebook
- Re: [Full-disclosure] Fw: Earth to Facebook
- Re: [Full-disclosure] Fw: Earth to Facebook
- From: upsploit advisories
- Re: [Full-disclosure] Fw: Earth to Facebook
- From: Thor (Hammer of God)
- Re: [Full-disclosure] Fw: Earth to Facebook
- From: upsploit advisories
- Re: [Full-disclosure] ms12-020 PoC
- Re: [Full-disclosure] Android wipe unreliable
- Re: [Full-disclosure] Android wipe unreliable
- From: Robert Kim App and Facebook Marketing
- [Full-disclosure] DC4420 - London DEFCON - March Meet - Tuesday 20th March 2012
- [Full-disclosure] LiteSpeed <= 4.1.11 Admin panel XSS
- Re: [Full-disclosure] Fw: Earth to Facebook
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- Re: [Full-disclosure] The Mystery of the Duqu Framework
- [Full-disclosure] [SECURITY] [DSA 2436-1] libapache2-mod-fcgid security update
- [Full-disclosure] [SECURITY] [DSA 2434-1] nginx security update
- [Full-disclosure] CVE-2012-1201 Testtrack for Linux Racecondition
- [Full-disclosure] [SECURITY] [DSA 2435-1] gnash security update
- [Full-disclosure] Android FTPServer 1.9.0 Remote DoS
- [Full-disclosure] FreePBX remote command execution, xss
- [Full-disclosure] Penetration testing business
- [Full-disclosure] [ MDVSA-2012:032 ] mozilla
- [Full-disclosure] CA20120320-01: Security Notice for CA ARCserve Backup
- [Full-disclosure] Mu Dynamics, Inc. Security Advisories MU-201202-01 and MU-201202-02 for GnuTLS and Libtasn1
- Re: [Full-disclosure] is my ISP lying or stupid?
- [Full-disclosure] Shakacon 2012 - CFP Deadline Approaching
- [Full-disclosure] [ MDVSA-2012:033 ] libpng
- [Full-disclosure] Seeker Advisory: Insecure Redirect in .NET Form Authentication - Redirect From Login Mechanism (ReturnURL Parameter)
- [Full-disclosure] DarkComet - syrian revolution trojan analysis and author interview
- Re: [Full-disclosure] is my ISP lying or stupid?
- Re: [Full-disclosure] is my ISP lying or stupid?
- From: Thor (Hammer of God)
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-042 - Wishlist Cross Site Scripting (XSS)
- [Full-disclosure] [SECURITY] [DSA 2437-1] icedove security update
- [Full-disclosure] atheme.org Security Advisory ASA-2012-03-01: Improper cleanup of CertFP entries may result in undefined behaviour
- [Full-disclosure] Minify and related plugins DOM-Based XSS Vulnerability
- [Full-disclosure] [CVE-2012-0047] Apache Wicket XSS vulnerability via pageMapName request parameter
- [Full-disclosure] [CVE-2012-1089] Apache Wicket serving of hidden files vulnerability
- [Full-disclosure] CVE-2012-0037: OpenOffice.org data leakage vulnerability
- [Full-disclosure] [SECURITY] [DSA 2438-1] raptor security update
- [Full-disclosure] CarolinaCon-8 (May 2012): General Announcement - Chosen Presenters and Topics - Side Event List
- [Full-disclosure] [SECURITY] [DSA 2439-1] libpng security update
- [Full-disclosure] [ MDVSA-2012:034 ] libzip
- [Full-disclosure] [ MDVSA-2012:035 ] file
- [Full-disclosure] 'PHP Grade Book' Unauthenticated SQL Database Export (CVE-2012-1670)
- [Full-disclosure] 'phpMoneyBooks' Local File Inclusion (CVE-2012-1669)
- [Full-disclosure] [ANNOUNCE] Apache Traffic Server releases for security incident CVE-2012-0256
- Re: [Full-disclosure] is my ISP lying or stupid?
- [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- [Full-disclosure] [ MDVSA-2012:036 ] libsoup
- [Full-disclosure] [ MDVSA-2012:037 ] cyrus-imapd
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- [Full-disclosure] Permanent XSS on the nuit du hack webmail service
- Re: [Full-disclosure] Oracle based personal data dumping attack on the nuit du hack CTF
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- [Full-disclosure] CVE-2012-0037: libraptor - XXE in RDF/XML File Interpretation (Multiple office products affected)
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- [Full-disclosure] [SECURITY] [DSA 2440-1] libtasn1-3 security update
- [Full-disclosure] Shopping For Zero-Days: A Price List For Hackers' Secret Software Exploits
- [Full-disclosure] [SECURITY] [DSA 2441-1] gnutls26 security update
- [Full-disclosure] Brute Force vulnerability in WordPress
- Re: [Full-disclosure] Brute Force vulnerability in WordPress
- From: InterN0T Advisories
- Re: [Full-disclosure] Brute Force vulnerability in WordPress
- From: Christopher Truncer
- Re: [Full-disclosure] Brute Force vulnerability in WordPress
- Re: [Full-disclosure] Brute Force vulnerability in WordPress
- From: Thor (Hammer of God)
- [Full-disclosure] PcwRunAs Password Obfuscation Design Flaw
- Re: [Full-disclosure] Oracle based personal data dumping attack on the nuit du hack CTF
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- [Full-disclosure] vBulletin vBShout Module <= 6.0.5 (vbshout.php?message=) - Reflected Cross-Site Scripting ( XSS ) & HTML Injection
- Re: [Full-disclosure] Oracle based personal data dumping attack on the nuit du hack CTF
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- [Full-disclosure] The Best of PenTest
- [Full-disclosure] Mexican Drug Cartels and Cyberspace
- Re: [Full-disclosure] Mexican Drug Cartels and Cyberspace
- Re: [Full-disclosure] Mexican Drug Cartels and Cyberspace
- Re: [Full-disclosure] Mexican Drug Cartels and Cyberspace
- Re: [Full-disclosure] Mexican Drug Cartels and Cyberspace
- Re: [Full-disclosure] Mexican Drug Cartels and Cyberspace
- From: Thor (Hammer of God)
- [Full-disclosure] [ MDVSA-2012:038 ] openssl
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- From: Thor (Hammer of God)
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- Re: [Full-disclosure] Apple IOS security issue pre-advisory record
- [Full-disclosure] [SECURITY] [DSA 2442-1] openarena security update
- [Full-disclosure] Congress Capitulates To TSA; Refuses To Let Bruce Schneier Testify
- [Full-disclosure] [PRE-SA-2012-02] Incorrect loop construct and numeric overflow in libzip
- [Full-disclosure] FreePBX <= 2.8.0 Recordings Interface Allows Remote Code Execution
- [Full-disclosure] [SECURITY] [DSA 2443-1] linux-2.6 security update
- [Full-disclosure] Please do not take down the Sality botnet
- [Full-disclosure] [ MDVSA-2012:039 ] libtasn1
- [Full-disclosure] WordPress plugin 'WordPress Integrator 1.32' XSS vulnerability
- Re: [Full-disclosure] WordPress plugin 'WordPress Integrator 1.32' XSS vulnerability
- From: Christian Sciberras
- Re: [Full-disclosure] Full-Disclosure SALTY
- [Full-disclosure] [ MDVSA-2012:040 ] gnutls
- Re: [Full-disclosure] Oracle based personal data dumping attack on the nuit du hack CTF
- [Full-disclosure] [ MDVSA-2012:041 ] expat
- Re: [Full-disclosure] CVE-2012-0037: libraptor - XXE in RDF/XML File Interpretation (Multiple office products affected)
- [Full-disclosure] SEC Consult SA-20120328-1 :: Microsoft ASP.NET Forms Authentication Bypass - follow-up advisory - CVE-2011-3416
- From: SEC Consult Vulnerability Lab
- [Full-disclosure] SEC Consult SA-20120328-0 :: F5 FirePass SSL VPN unauthenticated remote root through SQL injection - CVE-2012-1777
- From: SEC Consult Vulnerability Lab
- Re: [Full-disclosure] PcwRunAs Password Obfuscation Design Flaw
- Re: [Full-disclosure] CVE-2012-0037: libraptor - XXE in RDF/XML File Interpretation (Multiple office products affected)
- Re: [Full-disclosure] Please do not take down the Sality botnet
- [Full-disclosure] [ MDVSA-2012:042 ] wireshark
- Re: [Full-disclosure] PcwRunAs Password Obfuscation Design Flaw
- From: Thor (Hammer of God)
- Re: [Full-disclosure] PcwRunAs Password Obfuscation Design Flaw
- [Full-disclosure] Local File Inclusion Vulnerability in TomatoCart
- From: Netsparker Advisories
- [Full-disclosure] Cisco Security Advisory: Cisco IOS Software Command Authorization Bypass
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco IOS Software RSVP Denial of Service Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco IOS Software Smart Install Denial of Service Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco IOS Software Reverse SSH Denial of Service Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco IOS Software Zone-Based Firewall Vulnerabilities
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco IOS Internet Key Exchange Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Multiple Vulnerabilities in Cisco IOS Software Traffic Optimization Features
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco IOS Software Network Address Translation Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- [Full-disclosure] Cisco Security Advisory: Cisco IOS Software Multicast Source Discovery Protocol Vulnerability
- From: Cisco Systems Product Security Incident Response Team
- Re: [Full-disclosure] PcwRunAs Password Obfuscation Design Flaw
- [Full-disclosure] XSS and BF vulnerabilities in WordPress
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-043 - MultiBlock - Cross Site Scripting
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-044 - Contact Forms - Cross Site Scripting
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-045 - AddToAny - Cross Site Scripting
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-047 - Ubercart Views - Information disclosure
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-046 - Bundle Copy - Arbitrary Code execution
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-048 - Contact Save - Cross Site Scripting
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-049 - ShareThis - Multiple Vulnerablies
- Re: [Full-disclosure] Brute Force vulnerability in WordPress
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-050 - CDN2 Video - Unsupported
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-053 - Organic Groups - Access Bypass
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-054 - Chaos tool suite - Cross Site Scripting (XSS)
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-051 - Activity - Multiple Vulnerablities
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-052 - Node Limit Number - Cross Site Request Forgery
- [Full-disclosure] [Security-news] SA-CONTRIB-2012-055 - Fusion theme - Cross Site Scripting (XSS)
- Re: [Full-disclosure] Brute Force vulnerability in WordPress
- From: Christian Sciberras
- Re: [Full-disclosure] [Security-news] SA-CONTRIB-2012-051 - Activity - Multiple Vulnerablities
- From: Justin C. Klein Keane
- [Full-disclosure] [Spanish-Offtopic] - Desarrollo de Exploits
- [Full-disclosure] [SECURITY] [DSA 2444-1] tryton-server security update
- Re: [Full-disclosure] Please do not take down the Sality botnet
- [Full-disclosure] B2Evolution CMS 4.1.3 - Multiple Web Vulnerabilities
- [Full-disclosure] Barracuda Cloud CC v3.04.015 - Multiple Web Vulnerabilities
- [Full-disclosure] Skype 5.8x 5.5x - Corruption & Persistent Vulnerability
- [Full-disclosure] Apple Website Service - SQL Injection Vulnerabilities
- [Full-disclosure] OWASP AppSec Research EU CFP/CFT
- Re: [Full-disclosure] PcwRunAs Password Obfuscation Design Flaw
- Re: [Full-disclosure] PcwRunAs Password Obfuscation Design Flaw
- From: Christian Sciberras
- Re: [Full-disclosure] PcwRunAs Password Obfuscation Design Flaw
- [Full-disclosure] [ MDVSA-2012:043 ] nginx
- [Full-disclosure] [ MDVSA-2012:044 ] cvs
- [Full-disclosure] Cross-site scripting vulnerability in Invision Power Board version 3.2.3
- From: Netsparker Advisories
- [Full-disclosure] Multiple PTK DFlabs failures to restrict access to sensitive data
- Re: [Full-disclosure] [Security-news] SA-CONTRIB-2012-051 - Activity - Multiple Vulnerablities
- [Full-disclosure] New XSS vulnerabilities in Register Plus Redux for WordPress
- [Full-disclosure] VMSA-2012-0006 VMware ESXi and ESX address several security issues
- From: VMware Security Team
- [Full-disclosure] Bitsmith PS Knowbase 3.2.3 - Buffer Overflow Vulnerability
- [Full-disclosure] [ MDVSA-2012:045 ] gnutls
- [Full-disclosure] PHP 5.4/5.3 deprecated eregi() memory_limit bypass
- From: Maksymilian Arciemowicz
- [Full-disclosure] Landshop v0.9.2 - Multiple Web Vulnerabilities
- [Full-disclosure] [SECURITY] [DSA 2445-1] typo3-src security update
- [Full-disclosure] [SECURITY] [DSA 2442-2] openarena regression
Mail converted by MHonArc