<?xml version="1.0" encoding="iso-8859-1" ?>
<?xml-stylesheet title="XSL_formatting" type="text/xsl" href="/images/lists/rssstyle2.xsl"?>
<rss version="2.0">
<channel>
<title>Full Disclosure | Full-Disclosure</title>
<description>Mailing List Archive by Gossamer Threads</description>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/</link>
<language>en-us</language>
<copyright>(c) Gossamer Threads Inc. All rights reserved.</copyright>
<lastBuildDate>01 Dec  2008 17:16:05 -0800</lastBuildDate>
<ttl>120</ttl>
<image>
<title>Gossamer Threads | Full Disclosure | Full-Disclosure</title>
<width>75</width>
<height>23</height>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/</link>
<url>http://www.gossamer-threads.com/images/lists/rss_logo.jpg</url>
</image>
<item>
<title>Re: More proof that Microsoft products are probably backdoored</title>
<description>If they use zero-day exploits then thats illegal. Secondly, are they using zero-day exploits post on public mailing lists or using their own home gro</description>
<pubDate>01 Dec  2008 14:51:34 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65419</link>
</item><item>
<title>Fwd: Iran executes IT expert who spied for Israel</title>
<description>---------- Forwarded message ---------- From: n3td3v &amp;lt;xploitable@gmail.com&amp;gt; Date: Mon, Dec 1, 2008 at 10:23 PM Subject: Iran executes IT expert who sp</description>
<pubDate>01 Dec  2008 14:25:34 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65418</link>
</item><item>
<title>[USN-682-1] libvorbis vulnerabilities</title>
<description>=========================================================== Ubuntu Security Notice USN-682-1     December 01, 2008 libvorbis vulnerabilities CVE-</description>
<pubDate>01 Dec  2008 09:11:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65414</link>
</item><item>
<title>[USN-681-1] ImageMagick vulnerability</title>
<description>=========================================================== Ubuntu Security Notice USN-681-1     December 01, 2008 imagemagick vulnerability CVE-</description>
<pubDate>01 Dec  2008 09:11:08 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65413</link>
</item><item>
<title>[BMSA 2008-09] Two buffer overflow vulnerabilities in Rumpus v6.0</title>
<description>BLUE MOON SECURITY ADVISORY 2008-09 ===================================  :Title: Two buffer overflows in Maxum Rumpus :Severity: Critical :Reporter:</description>
<pubDate>01 Dec  2008 08:56:19 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65412</link>
</item><item>
<title>Re: Project Chroma: A color code for the stateofcyber security</title>
<description>Project chroma project? Welcome to the redundancy department of redundancy.. Mike c aka n3td3v shut the fuck up  -----Original Message----- From: ful</description>
<pubDate>01 Dec  2008 01:15:59 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65405</link>
</item><item>
<title>/bin/login gives root to group utmp</title>
<description>There is a group-utmp-to-root privilege escalation vulnerability in /bin/login in Debian, and I expect in all other Linux distros. For details and exp</description>
<pubDate>30 Nov  2008 11:51:11 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65392</link>
</item><item>
<title>Re: Project Chroma: A color code for the state ofcyber security</title>
<description>The SANS Internet Storm Center has been doing this for ages. It has the advantage of being data driven, using the DShield reports as a primary sensor</description>
<pubDate>30 Nov  2008 09:28:15 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65388</link>
</item><item>
<title>[SECURITY] [DSA 1675-1] New phpmyadmin packages fix cross site scripting</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------ Debian Security Advisory DSA</description>
<pubDate>30 Nov  2008 04:53:28 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65406</link>
</item><item>
<title>[SECURITY] [DSA 1674-1] New jailer packages fix denial of service</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------ Debian Security Advisory DSA</description>
<pubDate>30 Nov  2008 00:33:23 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65384</link>
</item><item>
<title>Project Chroma: A color code for the state of cyber security</title>
<description>Hi, It is time to take an example from Homeland Security and define codes of color for cyber-warfare threat levels. I propose the following: Green l</description>
<pubDate>29 Nov  2008 21:34:48 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65381</link>
</item><item>
<title>Indian allegations alarm Pakistan</title>
<description>Indian-Pakistan war is about to kick off folks... http://news.bbc.co.uk/1/hi/world/south_asia/7757031.stm __________________________________________</description>
<pubDate>29 Nov  2008 16:10:43 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65375</link>
</item><item>
<title>[SECURITY] [DSA 1673-1] New wireshark packages fix several vulnerabilities</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------ Debian Security Advisory DSA</description>
<pubDate>29 Nov  2008 15:07:40 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65374</link>
</item><item>
<title>Security industry software license</title>
<description>I think we should push for this so that attack platforms that are designed for penetration testers aren&amp;#039;t used by the bad guys. I&amp;#039;ve already outlined</description>
<pubDate>29 Nov  2008 10:17:22 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65369</link>
</item><item>
<title>Lazy bum approach to security</title>
<description>On Wed, Nov 26, 2008 at 5:49 PM, Mike C &amp;lt;mike.cartall@gmail.com&amp;gt; wrote: &amp;gt; I&amp;#039;m sure theres no reason to doubt that. The fact remains full-disclosure is</description>
<pubDate>29 Nov  2008 10:16:45 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65368</link>
</item><item>
<title>[SECURITY] [DSA 1672-1] New imlib2 packages fix arbitrary code execution</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------ Debian Security Advisory DSA</description>
<pubDate>28 Nov  2008 18:28:21 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65367</link>
</item><item>
<title>[tool] Exomind v0.2 is out!</title>
<description>What is Exomind? Exomind is an experimental Python console and programmatic framework for building decorated graphs and developing open-source intell</description>
<pubDate>28 Nov  2008 13:36:31 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65366</link>
</item><item>
<title>DC4420 - DEFCON London - Christmas Meet - Tuesday 2nd December, 2008</title>
<description>Yes folks, it&amp;#039;s that time of the month/year again... This will be our last meeting of 2008, so we&amp;#039;re planning to make it a goodun!!! All are welcome</description>
<pubDate>28 Nov  2008 04:46:03 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65364</link>
</item><item>
<title>DC4420 - DEFCON London - Christmas meeting - Tuesday 2nd December 2008</title>
<description>Yes, folks, it&amp;#039;s that time of the year/month again... This will be our last meeting of 2008, so we&amp;#039;re planning to make it a goodun!!! All are welcom</description>
<pubDate>28 Nov  2008 04:37:01 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65363</link>
</item><item>
<title>im so done.</title>
<description>n3td3v/andrew wallace of the uk u r a waste of time. a waste of air. i m done w/ u. u wont admit u know nothing, u dont do anything worth a thing.</description>
<pubDate>27 Nov  2008 18:20:38 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65352</link>
</item><item>
<title>SecurityReason : PHP 5.2.6 dba_replace() destroying file</title>
<description>-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [ SecurityReason.com PHP 5.2.6 dba_replace() destroying file ] Author: Maksymilian Arciemowicz http://</description>
<pubDate>27 Nov  2008 16:01:25 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65339</link>
</item><item>
<title>[USN-679-1] Linux kernel vulnerabilities</title>
<description>=========================================================== Ubuntu Security Notice USN-679-1     November 27, 2008 linux, linux-source-2.6.15/22</description>
<pubDate>27 Nov  2008 09:51:15 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65335</link>
</item><item>
<title>FAO John Cartwright</title>
<description>I urge you to ban Ureleet@Gmail.com from full-disclosure with immediate effect. _______________________________________________ Full-Disclosure - We</description>
<pubDate>27 Nov  2008 09:45:06 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65333</link>
</item><item>
<title>Re: does the aim service save chat sessiondetails?</title>
<description>How about you and Netdev email each other off list that would help my spam folder greatly. P.S Happy Turkey day! Sent from my Verizon Wireless BlackB</description>
<pubDate>27 Nov  2008 09:16:48 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65331</link>
</item><item>
<title>[USN-680-1] Samba vulnerability</title>
<description>=========================================================== Ubuntu Security Notice USN-680-1     November 27, 2008 samba vulnerability CVE-2008-4</description>
<pubDate>27 Nov  2008 06:22:56 -0800</pubDate>
<link>http://www.gossamer-threads.com/lists/fulldisc/full-disclosure/65319</link>
</item>
</channel>
</rss>
