<rss version="2.0"><channel><title>Full Disclosure (fulldisclosure) Mailing List</title>
<link>http://seclists.org/#fulldisclosure</link>
<description>An unmoderated high-traffic forum for disclosure of security information.  Fresh vulnerabilities sometimes hit this list many hours before they pass through the Bugtraq moderation queue.  The relaxed atmosphere of this quirky list provides some comic relief and certain industry gossip.  Unfortunately 80% of the posts are worthless drivel, so finding the gems takes patience.</description>
<language>en-us</language><ttl>60</ttl>
<item><title>Re:  Windows 0day</title><description>Posted by n3td3v on Oct 6&lt;p&gt;


&lt;p&gt;
On Mon, Oct 6, 2008 at 2:27 PM, . &amp;lt;entropeviable_at_gmail&amp;#46;com&amp;gt; wrote:
&lt;br /&gt;
&amp;gt; Die in a fire.
&lt;br /&gt;
&amp;gt;
&lt;br /&gt;
&lt;p&gt;That would make you a terrorist for telling him to die in a fire?
&lt;br /&gt;</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0091.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0091.html</guid>
<pubDate>Mon, 6 Oct 2008 14:46:45 +0100</pubDate></item>
<item><title>Re:  Windows Oday</title><description>Posted by Anders Klixbull on Oct 6&lt;p&gt;


&lt;p&gt;
0day pictures of Mark&#39;s mom for sale
&lt;br /&gt;
&lt;p&gt;________________________________
&lt;br /&gt;
&lt;p&gt;From: full-disclosure-bounces_at_lists&amp;#46;grok.org.uk
&lt;br /&gt;
[mailto:full-disclosure-bounces_at_lists&amp;#46;grok.org.uk] On Behalf Of Mark
&lt;br /&gt;
Wellberg
&lt;br /&gt;
Sent: 6. oktober 2008 14:05
&lt;br /&gt;
To: full-disclosure_at_lists&amp;#46;grok.org.uk
&lt;br /&gt;...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0090.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0090.html</guid>
<pubDate>Mon, 6 Oct 2008 15:18:46 +0200</pubDate></item>
<item><title>Re:  Windows 0day</title><description>Posted by . on Oct 6&lt;p&gt;


&lt;p&gt;
On Mon, Oct 6, 2008 at 1:52 PM, Mark Wellberg &amp;lt;mwellberg_at_gmail&amp;#46;com&amp;gt; wrote:
&lt;br /&gt;
&amp;gt; Hi,
&lt;br /&gt;
&amp;gt; IE8 &amp;amp;&amp;amp; FF3 0days for sale
&lt;br /&gt;
&amp;gt;
&lt;br /&gt;
&amp;gt; Mark Wellberg
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;If you&#39;ve been on fd for more than two hours, you&#39;d know the proper
&lt;br /&gt;
response to an asshole like this. If not, here goes:
&lt;br /&gt;
&lt;p&gt;Die in a...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0089.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0089.html</guid>
<pubDate>Mon, 6 Oct 2008 17:27:50 +0400</pubDate></item>
<item><title>Windows Oday</title><description>Posted by Mark Wellberg on Oct 6&lt;p&gt;


&lt;p&gt;
Hi,
&lt;br /&gt;
IE8 &amp;amp;&amp;amp; FF3 0days for sale
&lt;br /&gt;
&lt;p&gt;Mark Wellberg
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;&lt;p&gt;&lt;p&gt;</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0088.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0088.html</guid>
<pubDate>Mon, 6 Oct 2008 14:04:46 +0200</pubDate></item>
<item><title>Windows 0day</title><description>Posted by Mark Wellberg on Oct 6&lt;p&gt;


&lt;p&gt;
Hi,
&lt;br /&gt;
IE8 &amp;amp;&amp;amp; FF3 0days for sale
&lt;br /&gt;
&lt;p&gt;Mark Wellberg
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;&lt;p&gt;&lt;p&gt;</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0087.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0087.html</guid>
<pubDate>Mon, 6 Oct 2008 11:52:40 +0200</pubDate></item>
<item><title>Re:  pause for reflection</title><description>Posted by srl on Oct 6&lt;p&gt;


&lt;p&gt;
Frank Zappa long time ago, has written a little song about Gadi Evron and
&lt;br /&gt;
his blog.
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;http://www.youtube.com/watch?v=VpfX_2G9i6w
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;&lt;p&gt;On Sun, Oct 5, 2008 at 11:32 AM, Gadi Evron &amp;lt;ge_at_linuxbox&amp;#46;org&amp;gt; wrote:
&lt;br /&gt;
&lt;p&gt;&amp;gt; I started answering an email an hour ago, and it was important enough to
&lt;br /&gt;
&amp;gt;...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0086.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0086.html</guid>
<pubDate>Mon, 6 Oct 2008 12:32:57 +0300</pubDate></item>
<item><title>Re:  pause for reflection</title><description>Posted by morla on Oct 06&lt;p&gt;


&lt;p&gt;
fuck off and die
&lt;br /&gt;
&lt;p&gt;&lt;p&gt;Gadi Evron wrote:
&lt;br /&gt;
&amp;gt; I started answering an email an hour ago, and it was important enough to 
&lt;br /&gt;
&amp;gt; spend time on. It also ended up being too long, so I dumped it in a blog 
&lt;br /&gt;
&amp;gt; post if you prfer reading in a web browser.
&lt;br /&gt;
&amp;gt; ...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0085.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0085.html</guid>
<pubDate>Mon, 06 Oct 2008 10:54:19 +0200</pubDate></item>
<item><title>Re:  [inbox] Re: Supporters urge halt to, hackers, extradition to US</title><description>Posted by Eliah Kagan on Oct 5&lt;p&gt;


&lt;p&gt;
Michael Krymson wrote:
&lt;br /&gt;
&amp;gt; I just wanted to let you know I know a tiny bit how the American system
&lt;br /&gt;
&amp;gt; works (I live here). &amp;quot;Beyond reasonable doubt&amp;quot; is typically a murder trial
&lt;br /&gt;
&amp;gt; thing.
&lt;br /&gt;
&lt;p&gt;That is incorrect. You, again, appear to misunderstand what &amp;quot;beyond
&lt;br /&gt;
reasonable...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0084.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0084.html</guid>
<pubDate>Sun, 5 Oct 2008 23:28:47 -0400</pubDate></item>
<item><title>[SECURITY] [DSA-1644-1] New mplayer packages fix integer overflows</title><description>Posted by Devin Carraway on Oct 05&lt;p&gt;


&lt;p&gt;
&lt;p&gt;------------------------------------------------------------------------
&lt;br /&gt;
Debian Security Advisory DSA-1644-1                  security_at_debian&amp;#46;org
&lt;br /&gt;
http://www.debian.org/security/                           Devin Carraway
&lt;br /&gt;
October 05, 2008                      ...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0083.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0083.html</guid>
<pubDate>Sun, 05 Oct 2008 20:55:31 +0000</pubDate></item>
<item><title>Re:  cnn.com - Homeland Security seeks cyber counterattack system (Einstein 3.0)</title><description>Posted by jim deleskie on Oct 5&lt;p&gt;


&lt;p&gt;
There is no need to attack the attacking computers.. this would be a
&lt;br /&gt;
mostly useless process and you&#39;d always miss some.  if the &#39;attacks&#39;
&lt;br /&gt;
could not be filtered the &#39;external&#39; to that nations links would be
&lt;br /&gt;
&#39;cut&#39; the internet would be segmented and would could all go back to
&lt;br /&gt;
our regularly...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0082.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0082.html</guid>
<pubDate>Sun, 5 Oct 2008 14:42:14 -0300</pubDate></item>
<item><title>Re:  Paul Asadoorian is an idiot, just read his book or listen to the podcast.</title><description>Posted by Anders B Jansson on Oct 06&lt;p&gt;


&lt;p&gt;
n3td3v wrote:
&lt;br /&gt;
&amp;gt; Of course
&lt;br /&gt;
&amp;gt; n3td3v doesn&#39;t contribute anything to the money making side of
&lt;br /&gt;
&amp;gt; infosec, so a grudge is held!
&lt;br /&gt;
&lt;p&gt;n3td3v hasn&#39;t contributed to anything except added mailfilters
&lt;br /&gt;
and excessive spam.
&lt;br /&gt;
&lt;p&gt;n3td3v has decided that since he (I think) is not competent enough to
&lt;br /&gt;
deal...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0081.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0081.html</guid>
<pubDate>Mon, 06 Oct 2008 02:10:45 +0200</pubDate></item>
<item><title>Re:  Fwd: cnn.com - Homeland Security seeks cyber counterattack system (Einstein 3.0)</title><description>Posted by n3td3v on Oct 5&lt;p&gt;


&lt;p&gt;
Yes, they put these bizarre ideas out there to see what public opinion
&lt;br /&gt;
is, they don&#39;t have a chance in hell of implementing it.
&lt;br /&gt;
&lt;p&gt;On Sun, Oct 5, 2008 at 6:46 PM, James Matthews &amp;lt;nytrokiss_at_gmail&amp;#46;com&amp;gt; wrote:
&lt;br /&gt;
&amp;gt; They generally don&#39;t have any clue what they want. This is only a PR...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0080.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0080.html</guid>
<pubDate>Sun, 5 Oct 2008 20:53:27 +0100</pubDate></item>
<item><title>Re:  Fwd: cnn.com - Homeland Security seeks cyber counterattack system (Einstein 3.0)</title><description>Posted by James Matthews on Oct 5&lt;p&gt;


&lt;p&gt;
They generally don&#39;t have any clue what they want. This is only a PR stunt
&lt;br /&gt;
&lt;p&gt;On Sun, Oct 5, 2008 at 10:30 AM, n3td3v &amp;lt;xploitable_at_gmail&amp;#46;com&amp;gt; wrote:
&lt;br /&gt;
&lt;p&gt;&amp;gt; Bad idea,
&lt;br /&gt;
&amp;gt;
&lt;br /&gt;
&amp;gt; The rogue government would use hospitals and power stations, to &amp;quot;cyber
&lt;br /&gt;
&amp;gt; human shield&amp;quot; against...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0079.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0079.html</guid>
<pubDate>Sun, 5 Oct 2008 10:46:36 -0700</pubDate></item>
<item><title>Fwd: cnn.com - Homeland Security seeks cyber counterattack system (Einstein 3.0)</title><description>Posted by n3td3v on Oct 5&lt;p&gt;


&lt;p&gt;
Bad idea,
&lt;br /&gt;
&lt;p&gt;The rogue government would use hospitals and power stations, to &amp;quot;cyber
&lt;br /&gt;
human shield&amp;quot; against the counter attack.
&lt;br /&gt;
&lt;p&gt;You guys are living in cloud cuckoo land. The rogue government
&lt;br /&gt;
wouldn&#39;t have their bot nets in home computers that you could shut
&lt;br /&gt;
down easily.
&lt;br /&gt;
&lt;p&gt;Read my rant...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0078.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0078.html</guid>
<pubDate>Sun, 5 Oct 2008 18:30:11 +0100</pubDate></item>
<item><title>Re:  pause for reflection</title><description>Posted by Bob Bruen on Oct 5&lt;p&gt;


&lt;p&gt;
Hi Gadi,
&lt;br /&gt;
&lt;p&gt;In answer to your last question:
&lt;br /&gt;
&lt;p&gt;&amp;nbsp;&amp;nbsp;&amp;quot;Enough whining though. Who is next on the target list? :)&amp;quot;
&lt;br /&gt;
&lt;p&gt;Look at KnujOn&#39;s Top Ten Worst Registrars list. Joker and BLI have been 
&lt;br /&gt;
handed breach notices by ICANN. EST will follow, then eNOM, then...
&lt;br /&gt;
&lt;p&gt;There is no need to worry...</description>
<link>http://seclists.org/fulldisclosure/2008/Oct/0077.html</link><guid isPermaLink="true">http://seclists.org/fulldisclosure/2008/Oct/0077.html</guid>
<pubDate>Sun, 5 Oct 2008 11:11:03 -0400 (EDT)</pubDate></item>
</channel></rss>