lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [day] [month] [year] [list]
Date: Fri Nov 18 15:07:07 2005
From: ad at heapoverflow.com (ad@...poverflow.com)
Subject: Phishing E-mail for Amazon.com

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

- - From marliness:

Thank you for the report, we are addressing the issue now and will have the
page removed right away. One of our dedicated hosting clients uses a program
called "Simple Blog" that has been exploilted. They have been instructed to
correct the vunerability to avoid future and on going abuse of this software
on their system.
 
If there are any questions or concerns please let us know.
 
Thanks!
 
Billy Krebsbach 

- - -----Message d'origine-----
De : full-disclosure-bounces@...ts.grok.org.uk
[mailto:full-disclosure-bounces@...ts.grok.org.uk] De la part de
ad@...poverflow.com
Envoy? : vendredi 18 novembre 2005 15:51
? : 'DAN MORRILL'; full-disclosure@...ts.grok.org.uk
Objet : RE: [Full-disclosure] Phishing E-mail for Amazon.com

- - -----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

 
Got it so ,  he redirects to
http://mynewestblog.com/exec/obidos/subst/index.html

Registrant:     John Junk       
Registered through: GoDaddy.com     
Domain Name: MYNEWESTBLOG.COM       
Domain servers in listed order:        
NS1.MARLINESS.NET        
NS2.MARLINESS.NET       

Have sent an email to informe godaddy and http://marliness.net/services.htm
of this , probably the best thing to do :)



- - - -----Message d'origine-----
De : full-disclosure-bounces@...ts.grok.org.uk
[mailto:full-disclosure-bounces@...ts.grok.org.uk] De la part de DAN MORRILL
Envoy? : vendredi 18 novembre 2005 14:12 ? :
full-disclosure@...ts.grok.org.uk Objet : [Full-disclosure] Phishing E-mail
for Amazon.com

This is the first time I have seen a Phishing expedition for Amazon, it
looks fairly primative, links are all over the place. Just sharing so that
we can tell our end users.
- - -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2rc2 (MingW32)
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=mLbo
- - -----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

- -----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2rc2 (MingW32)
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=pq7O
- -----END PGP SIGNATURE-----
-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.2rc2 (MingW32)

iQIVAwUBQ33to6+LRXunxpxfAQIVLhAAnaopH2J9L2VYLD2O9OcMUuEHH1gp1KXu
txD3iiVOGPurmxjE/Q4iMzyj+Jufcc92WeW6JIIkVJ3tZliwGaczOEXj13PTzUic
NEVOrWGbRg87eAgMrbU2JokTqhKtw/j2iBaLMKDTbgHK5N27J/UQYIdNjx88nf57
I80oz3M0WJqg+s/Z4hpuAvOAjlv8kjpu0POmY8jXzCn5BuYFT7pNgNKGR1TG5lZw
2uwXxMxZoKoJiCeiQ0bOrKKsFjISEOqK9SBMU7xpwp4WIUB6LNbZEqcvyNIaDicS
0Mkr3V5ASa+3ySVihXvp+yj2o/TeVN/jodPZn4JD/WAOxKKngEpNMxccBL2SamtK
f31+iZOzkGTDIm3vbow6KHjxrp/dboONzU4W5nF+gHyTIBGv+9fTrCtbjCjT0VK7
Jp7H2rCEOYiofKguEDcqQ0+Hsj16iw9LNVwsnf9cqsRXQ2OpdAgihJMs6c3v8Qsc
hLoYM3tDjSzeshbRQ+tNUtTutb1I8BsgophsJbw/q/0A6la17Wt9AtOhVhqzJEoQ
3SLFHmKLQJBX7pU9OOTJlZwpllwyzrkghNspZmOaBxtDZUX/LuiykBjyHlgJZlD5
1De0zYuAely+73wYNvwEWOpwvwkA27Rx/jrYFBxPjgvz8mA7JXHksjWGF2F+WSRm
rzE3FZdVWiE=
=rQ91
-----END PGP SIGNATURE-----

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ