lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Mon Apr 24 00:47:13 2006
From: pauls at utdallas.edu (Paul Schmehl)
Subject: Re: Who Do I Contact?

--On April 23, 2006 3:11:40 PM +0100 "Dave \"No, not that one\" Korn" 
<davek_throwaway@...mail.com> wrote:
>
>   CM, my suggestion would be to phone up the Dean/Principal while he's in
> the middle of his sunday lunch and read out his SSN to him and tell him
> how  he can go to his computer and see it for himself.  Do it from a
> phonebox,  tell him he really needs to bang heads together in the IT
> department *now*,  tell him you haven't messed or tampered with it in any
> way and you just want  it fixed because your own data is in there too
> (don't mention the parents!)  then say you're sorry but you hope he'll
> understand why you don't want to  identify yourself and ring off.
>
Depending upon which Dean you're referring to, this could little to no good 
at all.  The Dean might even think there's nothing wrong with SSNs being 
exposed.

Paul Schmehl (pauls@...allas.edu)
Adjunct Information Security Officer
University of Texas at Dallas
AVIEN Founding Member
http://www.utdallas.edu/
-------------- next part --------------
A non-text attachment was scrubbed...
Name: not available
Type: application/pkcs7-signature
Size: 3824 bytes
Desc: not available
Url : http://lists.grok.org.uk/pipermail/full-disclosure/attachments/20060423/824baef9/attachment.bin

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ