lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <58DB1B68E62B9F448DF1A276B0886DF16E6A91F2@EX2010.hammerofgod.com> Date: Fri, 1 Oct 2010 22:34:40 +0000 From: "Thor (Hammer of God)" <thor@...merofgod.com> To: Sabahattin Gucukoglu <mail-dated-1288563404.d7cf69@...ahattin-gucukoglu.com>, "full-disclosure@...ts.grok.org.uk" <full-disclosure@...ts.grok.org.uk>, "bugtraq@...urityfocus.com" <bugtraq@...urityfocus.com> Subject: Re: Warning: BrailleNote Apex Offers Read/Write FTP And Telnet Access To All Comers Point taken :) I just wanted to see if it would post properly :-p >-----Original Message----- >From: full-disclosure-bounces@...ts.grok.org.uk [mailto:full-disclosure- >bounces@...ts.grok.org.uk] On Behalf Of Sabahattin Gucukoglu >Sent: Friday, October 01, 2010 3:17 PM >To: full-disclosure@...ts.grok.org.uk; bugtraq@...urityfocus.com >Subject: Re: [Full-disclosure] Warning: BrailleNote Apex Offers Read/Write >FTP And Telnet Access To All Comers > >On 1 Oct 2010, at 22:57, Thor (Hammer of God) wrote: >> ⠠⠊⠋ ⠃⠁⠙ ⠛⠥⠽⠎ ⠁⠗⠑ ⠕⠝ ⠽⠕⠥⠗ ⠝⠑⠞⠺⠕⠗⠅, ⠽⠕⠥ ⠼⠚⠼⠉⠼⠊;⠗⠑ ⠎⠉⠗⠑⠺⠑⠙ ⠁⠝⠽⠺⠁⠽ >(If a bad guy is on your network, you're screwed anyway) > >With those services closed, it doesn't take a five-second run of nmap and >wget to ransack the owner's device, though. And since network shares are >mounted inside the filesystem, that's a double win for the poor sod who has >his corporate shares in his stored network places. No, it can't actually get >worse than this. I'm not even sure it's accidental. I'm not taking chances. > >Cheers, >Sabahattin > >_______________________________________________ >Full-Disclosure - We believe in it. >Charter: http://lists.grok.org.uk/full-disclosure-charter.html >Hosted and sponsored by Secunia - http://secunia.com/ _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Powered by blists - more mailing lists