Ethical Hacking

Learn to find vulnerabilities before the bad guys do! Gain real world hands on hacking experience in our state of the art hacking lab. Course designed and taught by expert instructors with years of penetration testing experience. 12 student maximum in every class. Certification attempt included in every package.
Computer Forensics Training at InfoSec Institute

Gain the in-demand skills of a certified computer examiner, learn to recover trace data left behind by fraud, theft, and cybercrime perpetrators. Discover the source of computer crime and abuse at your organization so that it never happens again. All of our class sizes are guaranteed to be 12 students or less to facilitate one-on-one interaction with one of our expert instructors.




Network Security FullDisclosure
[Top] [All Lists]

Re: [Full-disclosure] full-disclosure@hushmail.com

Subject: Re: [Full-disclosure] full-disclosure@hushmail.com
Date: Sun, 14 Oct 2007 19:30:59 +0100
you win man... I must have been mad to challenge you... check this
out.. you are my hero of the day:
http://www.gnucitizen.org/about/pdp#comment-58407

On 10/14/07, phioust <phioust@gmail.com> wrote:


On 10/14/07, pdp (architect) <pdp.gnucitizen@googlemail.com> wrote:
military grade exploits? :) dude, I am sorry man.. but you are living
in some kind of a dream world. get real,


   So you pick apart three words of the message and the rest is null? you
seem to follow techniques of the great valdis [1] when trying to defend
worthless things ( in this case your career).

most of the military hacks
are as simple as bruteforcing the login prompt.. or trying something
as simple as XSS.

  Stop reading yahoo news

the reason XSS is soo neat is because it bypasses all firewalls

 It doesnt bypass "firewalls" it has nothing to do with them .. this is like
saying you beat pax because you used sql injection to get cmd exec on a
machine ( something the selinux team probably has in their presentations ).

... what?, your military grade exploit can do that? your
military grade exploit can attack only the things that are visible
from outside.

  Or what about attacking the "outside" itself? Did you not see the core
impact talk or were you too busy giving gadi a reach around by the pool?
if you want to sink into the stuff then do web hacking cuz it just
works.

  You mean "do web hacking because you do not need any skills to look good
and automated tools do it all for you". No thanks ill pass

different people do different things and are experienced in different
disciplines.

 To me this sounds like "i couldnt write an exploit for a strcpy bug so now
I write xss code so i can still put hacker on my business card.

btw, this is your 3rd message on FD, right?

 I guess I should whore the list more and then people will listen to me? Is
this the secret to why gadi evron is still allowed to post here?

 >> I am just in a mood for philosophical conversations today.

you should stay that way since you cant handle much else


  [1]
http://archives.neohapsis.com/archives/fulldisclosure/2007-05/0226.html


_______________________________________________
Full-Disclosure - We believe in it.
Charter:
http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/



-- 
pdp (architect) | petko d. petkov
http://www.gnucitizen.org

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/

<Prev in Thread] Current Thread [Next in Thread>