lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Tue, 10 Oct 2006 15:22:41 -0500
From: "Brad Causey" <bradcausey@...il.com>
To: darkcube <darkcube@...avibe.net>
Cc: full-disclosure@...ts.grok.org.uk
Subject: Re: Is Firefox JavaScript flawed ?

On 10/10/06, darkcube <darkcube@...avibe.net> wrote:
>
>
> On Tue, 10 Oct 2006, Brad Causey wrote:
>
> > At this point the accusations made at toorcon have no validity to them.
> They
>
> says you.
>
> i'm staring at an IDA window that says otherwise.


Good for you, follow the proper disclosure procedures. You can't expect for
me (or anyone else) to just take your word for it. When I say validity, I
mean that these vulnerabilities haven't been verified by a reliable
authority.

> Firefox. However, I think this a good shock to the community. Just because
> > something is open source and holds the number two slot for the browser
> > marketshare, doesn't make it bulletproff. People have a bad habbit of
> > assuming that because it's not Microsoft that it is super secure.
>
> that's such an awesome opinion to be so profoundly formulated and cast
> about like any real infosec warrior would!


Thanks??

(btw, fix your fucking spellcheck.)


I didn't realize I had misspelled anything is the previous post. If I did,
then I apologize.

  - 'cube [DTM/uH/wouldntyouliketoknow?]
>
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>

Content of type "text/html" skipped

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ