<?xml version="1.0" encoding="iso-8859-1" ?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/images/lists/rssstyle2.xsl"?>
<rss version="2.0">
<channel>
<title>Full Disclosure | Full-Disclosure</title>
<description>Mailing List Archive by Gossamer Threads</description>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/</link>
<language>en-us</language>
<copyright>(c) Gossamer Threads Inc. All rights reserved.</copyright>
<lastBuildDate>13 Feb  2012 01:40:06 -0800</lastBuildDate>
<ttl>120</ttl>
<image>
<title>Gossamer Threads | Full Disclosure | Full-Disclosure</title>
<width>75</width>
<height>23</height>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/</link>
<url>http://www.gossamer-threads.com/images/lists/rss_logo.jpg</url>
</image>
<item>
<title>Re: Linksys Routers still Vulnerable to Wps vulnerability.</title>
<description>On Sat, Feb 11, 2012 at 2:23 PM, &amp;lt;farthvader@hush.ai&amp;gt; wrote: &amp;gt; _________________________________________________________________________ &amp;gt; &amp;quot;Use Tomat</description>
<pubDate>12 Feb  2012 14:42:39 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85023</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps vulnerability.</title>
<description>They should at least consider providing an option to disable the static pin only or disable it after an hour if the future is activated by the user.</description>
<pubDate>12 Feb  2012 14:30:49 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85022</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps vulnerability.</title>
<description>Interesting. Do you know if they stop advertising WPS support after they disable it? On Sun, Feb 12, 2012 at 10:11 AM, Rob Fuller &amp;lt;jd.mubix@gmail.co</description>
<pubDate>12 Feb  2012 13:55:10 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85021</link>
</item><item>
<title>[ MDVSA-2012:017 ] firefox</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1  _______________________________________________________________________  Mandriva Linux Security Advi</description>
<pubDate>12 Feb  2012 12:23:00 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85020</link>
</item><item>
<title>Re: Trustwave and Mozilla</title>
<description>On Sun, 12 Feb 2012 05:54:30 EST, Jeffrey Walton said: &amp;gt; For what its worth, pinning the certificate can usually remediate &amp;gt; these sorts of MitM atta</description>
<pubDate>12 Feb  2012 07:55:35 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85019</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps vulnerability.</title>
<description>I&amp;#039;ve tested a 6 models of Linksys, all of them appear to disable WPS completely as soon as a single wireless setting is set. I assume this would be th</description>
<pubDate>12 Feb  2012 07:11:24 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85018</link>
</item><item>
<title>Re: Iran is doing ip-and-port filtering of SSL</title>
<description>In case the OP hasn&amp;#039;t seen this: http://boingboing.net/2012/02/10/iran-attacks-internet-access-o.html https://lists.torproject.org/pipermail/tor-talk</description>
<pubDate>12 Feb  2012 07:02:40 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85017</link>
</item><item>
<title>Re: [Off-Spanish] Webinario gratuito - Ataques DoS en latino america</title>
<description>Agree.  -- &amp;#039;Wag More, Bark Less&amp;#039; - Jen and Bren, CloudStar &amp;#039;Did you ever feel like God has a finger on the Reset button, waiting?&amp;#039; - dccdave &amp;quot;using w</description>
<pubDate>12 Feb  2012 05:53:01 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85016</link>
</item><item>
<title>Trustwave and Mozilla</title>
<description>Hi All, https://www.infoworld.com/d/security/trustwave-admits-issuing-man-in-the-middle-digital-certificate-185972 In case folks are interested in t</description>
<pubDate>12 Feb  2012 02:54:30 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85009</link>
</item><item>
<title>Re: Iran is doing ip-and-port filtering of SSL</title>
<description>maybe it&amp;#039;s time to get the old school substitution code books out. http://www.forbes.com/sites/andygreenberg/2012/02/10/as-iran-cracks-down-online-to</description>
<pubDate>12 Feb  2012 01:13:16 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85008</link>
</item><item>
<title>Re: Iran is doing ip-and-port filtering of SSL</title>
<description>thought they filtered specific URLs, but now they filter all SSL (to defeat VPNs, Tor, etc). On 2012-02-11 9:51 PM, &amp;quot;Robert Kim App and Facebook Marke</description>
<pubDate>11 Feb  2012 22:58:06 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85015</link>
</item><item>
<title>Re: Iran is doing ip-and-port filtering of SSL</title>
<description>On Sun, Feb 12, 2012 at 00:50, Robert Kim App and Facebook Marketing &amp;lt;evdo.hsdpa@gmail.com&amp;gt; wrote: &amp;gt; Hasn&amp;#039;t Iran and China always been filtering? I&amp;#039;m</description>
<pubDate>11 Feb  2012 21:56:31 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85013</link>
</item><item>
<title>Re: Iran is doing ip-and-port filtering of SSL</title>
<description>Hasn&amp;#039;t Iran and China always been filtering? Do VPNs work in this case? On Thu, Feb 9, 2012 at 9:54 AM, Sai &amp;lt;sai@saizai.com&amp;gt; wrote: &amp;gt; I have pretty</description>
<pubDate>11 Feb  2012 21:50:27 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85007</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps	vulnerability.</title>
<description>_________________________________________________________________________ &amp;quot;Use Tomato-USB OS on them.&amp;quot; _______________________________________________</description>
<pubDate>11 Feb  2012 13:23:11 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85012</link>
</item><item>
<title>eFront Community++ v3.6.10 - SQL Injection Vulnerability</title>
<description>Title: ====== eFront Community++ v3.6.10 - SQL Injection Vulnerability  Date: ===== 2012-02-11  References: =========== http://www.vulnerability-lab</description>
<pubDate>11 Feb  2012 10:53:38 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85011</link>
</item><item>
<title>Yahoo! Messenger v11.5 - Buffer Overflow Vulnerability</title>
<description>Title: ====== Yahoo! Messenger v11.5 - Buffer Overflow Vulnerability  Date: ===== 2012-02-11  References: =========== http://www.vulnerability-lab.c</description>
<pubDate>11 Feb  2012 10:51:42 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85010</link>
</item><item>
<title>Re: [Off-Spanish] Webinario gratuito - Ataques DoS en latino america</title>
<description>It should be marked as spam. We do not care about &amp;quot;exploitpack.com&amp;quot; ... do not send more message with this business. On 2/10/12, runlvl &amp;lt;runlvl@gmai</description>
<pubDate>11 Feb  2012 08:58:55 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85014</link>
</item><item>
<title>[Announcement] ClubHack Mag - Call for Articles</title>
<description>Hello All, ClubHack Magazine is seeking submissions for next issue, Issue 26 - March 2012. Topics:- 1. Web App Sec 2. OS Exploitation and Security 3</description>
<pubDate>10 Feb  2012 22:22:53 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85004</link>
</item><item>
<title>Re: Iran is doing ip-and-port filtering of SSL</title>
<description>See my post @ https://plus.google.com/u/0/103112149634414554669/posts/PT3eEF4u415 to stay updated. Copying over update: - Further testing done. Conc</description>
<pubDate>10 Feb  2012 17:44:06 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85006</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps vulnerability.</title>
<description>On Fri, Feb 10, 2012 at 4:33 PM, &amp;lt;Valdis.Kletnieks@vt.edu&amp;gt; wrote: &amp;gt; On Fri, 10 Feb 2012 14:41:37 EST, Dan Kaminsky said: &amp;gt; &amp;gt; &amp;gt; According to the Reave</description>
<pubDate>10 Feb  2012 13:43:12 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85003</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps vulnerability.</title>
<description>On Fri, 10 Feb 2012 14:41:37 EST, Dan Kaminsky said: &amp;gt; According to the Reaver people, DD-WRT doesn&amp;#039;t support WPS at all :) The sort of people that</description>
<pubDate>10 Feb  2012 13:33:07 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85002</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps	vulnerability.</title>
<description>Waidaminnit... Didn&amp;#039;t you try to sell me a belkin the other day? Conflict of interest there Sent from my BlackBerry® wireless device -----Original M</description>
<pubDate>10 Feb  2012 12:01:39 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85001</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps vulnerability.</title>
<description>According to the Reaver people, DD-WRT doesn&amp;#039;t support WPS at all :) On Fri, Feb 10, 2012 at 2:00 PM, Zach C. &amp;lt;fxchip@gmail.com&amp;gt; wrote: &amp;gt; Solution:</description>
<pubDate>10 Feb  2012 11:41:37 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/85000</link>
</item><item>
<title>Re: Linksys Routers still Vulnerable to Wps vulnerability.</title>
<description>Solution: use DD-WRT? Or is that vulnerable too? (Or are there worse problems? :)) On Feb 10, 2012 10:12 AM, &amp;quot;Dan Kaminsky&amp;quot; &amp;lt;dan@doxpara.com&amp;gt; wrote:</description>
<pubDate>10 Feb  2012 11:00:02 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/84999</link>
</item><item>
<title>[ MDVSA-2012:016 ] glpi</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1  _______________________________________________________________________  Mandriva Linux Security Advi</description>
<pubDate>10 Feb  2012 11:00:00 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/84998</link>
</item>
</channel>
</rss>

