lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Message-ID: <200501111036.j0BAaPrs023856@lists.netsys.com>
Date: Tue, 11 Jan 2005 12:36:02 +0200
From: "Ferruh Mavituna" <ferruh@...ituna.com>
To: "'Rafel Ivgi, The-Insider'" <theinsider@....net.il>,
        <bugtraq@...urityfocus.com>, <full-disclosure@...ts.netsys.com>,
        <NTBUGTRAQ@...TSERV.NTBUGTRAQ.COM>
Subject: RE: UPDATED: the insider exploit( = the latest
	ie0day which involves SHOWMODALDIALOG)



4) Classic ASP version;
http://ferruh.mavituna.com/article/?553


Ferruh Mavituna
http://ferruh.mavituna.com
PGPKey: http://ferruh.mavituna.com/pgpkey.asc
 

> -----Original Message-----
> From: full-disclosure-bounces@...ts.netsys.com 
> [mailto:full-disclosure-bounces@...ts.netsys.com] On Behalf 
> Of Rafel Ivgi, The-Insider
> Sent: Tuesday, January 11, 2005 10:37 AM
> To: bugtraq@...urityfocus.com; 
> full-disclosure@...ts.netsys.com; NTBUGTRAQ@...TSERV.NTBUGTRAQ.COM
> Subject: RE: [Full-Disclosure] UPDATED: the insider exploit( 
> = the latest ie0day which involves SHOWMODALDIALOG)
> 
> I forgot to tell everyone that i made an aspx version of 
> jelmers exploit.
> 
> So lets sum it up, all the exploits to 0-day --> 
> "The-Insider-Prototype"(as defined by Liu) are:
> 1) JSP VERSION BY JELMER -
> http://www.k-otik.com/exploits/07072004.IEApplicationShell.php
> 2) PHP VERSION BY Liu Die Yu- 
> http://0daymon.org/monitor/insider/dir.zip
> 3) ASPX VERSION BY Rafel
> ivgi -http://theinsider.deep-ice.com/The-Insider.zip
> 
> 
> Greetings: Liu Die Yu, Drew Copley, Malware
> 
> Rafel Ivgi, The-Insider
> Security Consultant
> 
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.netsys.com/full-disclosure-charter.html
> 

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ