lists.openwall.net   lists  /  announce  owl-users  owl-dev  john-users  john-dev  passwdqc-users  yescrypt  popa3d-users  /  oss-security  kernel-hardening  musl  sabotage  tlsify  passwords  /  crypt-dev  xvendor  /  Bugtraq  Full-Disclosure  linux-kernel  linux-netdev  linux-ext4  linux-hardening  linux-cve-announce  PHC 
Open Source and information security mailing list archives
 
Hash Suite: Windows password security audit tool. GUI, reports in PDF.
[<prev] [next>] [<thread-prev] [thread-next>] [day] [month] [year] [list]
Date: Wed, 30 Nov 2011 20:37:25 -0300
From: root <root_@...ertel.com.ar>
To: full-disclosure@...ts.grok.org.uk
Subject: Re: FreeBSD ftpd and ProFTPd on FreeBSD remote
 r00t exploit

If you want to respect the license of this code you cannot include the
exploit in your software.

"All rights reserved" means you cannot include it in other products,
actually nobody can except the author.

You should ask the author for permission to redistribute the exploit or
re-implement it.



On 11/30/2011 06:11 PM, noreply@...loitpack.com wrote:
> Hello there!
> The exploit "roaringbeast" will be added to Exploit pack
> 
> Authors name and code/license will be respected and it will be ported 
> to Python with minimal modifications
> 
> The code will be uploaded to Exploit Pack Git Repo and will be 
> available to all our users
> 
> Thank you and congratulations for such a great job!
> 
> JSacco
> 
> On 30.11.2011 13:32, HI-TECH . wrote:
>> /* KCOPE2011 - x86/amd64 bsd ftpd remote root exploit
>>  *
>>  * KINGCOPE CONFIDENTIAL - SOURCE MATERIALS
>>  *
>>  * This is unpublished proprietary source code of KINGCOPE Security.
>>  *
>>  * (C) COPYRIGHT KINGCOPE Security, 2011
>>  * All Rights Reserved
>>  *
>>
>>
>> *****************************************************************************
>>  * bug found by Kingcope
>>  * thanks to noone except alex whose damn down
>>  *
>>  * tested against:  FreeBSD-8.2,8.1,7.2,7.1 i386;
>>  *					FreeBSD-6.3 i386
>>  *					FreeBSD-5.5,5.2 i386
>>  * 					FreeBSD-8.2 amd64
>>  * 					FreeBSD-7.3, 7.0 amd64
>>  *					FreeBSD-6.4, 6.2 amd64
>>  *
>>  */
>>
>> I m better than TESO 7350 see attached.
>> I aint mad at cha
>> and dont forget that the scene is fucked.
>> and that the public scene is fucked too, kind of.
>> youse a down ass bitch and I aint mad at cha.
>> thanks lsd you are the only one NORMAL.
>> hear the track before you see the code:
>> http://www.youtube.com/watch?v=krxu9_dRUwQ
>> BTW my box (isowarez.de) got hacked so expect me in a zine :>
>>
>> /Signed "the awesome" Kingcope
> 
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
> 

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

Powered by blists - more mailing lists

Powered by Openwall GNU/*/Linux Powered by OpenVZ