Re: [FD] Java 8u40 released: why?

2015-03-09 Thread Dave Warren
th a particular corporate interest, right up to full on trojans. -- Dave Warren http://www.hireahit.com/ http://ca.linkedin.com/in/davejwarren ___ Sent through the Full Disclosure mailing list https://nmap.org/mailman/listinfo/fulldisclosure

Re: [FD] Responsible disclosure: terms and conditions

2014-06-08 Thread Dave Warren
that a reasonable number of researchers use. -- Dave Warren http://www.hireahit.com/ http://ca.linkedin.com/in/davejwarren ___ Sent through the Full Disclosure mailing list http://nmap.org/mailman/listinfo/fulldisclosure Web Archives & RSS: http://seclists.org/fulldisclosure/

Re: [FD] TrueCrypt?

2014-06-08 Thread Dave Warren
Given that everything in that zone is public anyway, what's the problem? I agree that locking down zone transfers is best practise, and allowing open transfers is odd, but this one looks simple enough and straightforward enough that I have trouble getting too excited about public information bei

Re: [FD] TrueCrypt?

2014-06-04 Thread Dave Warren
On 2014-06-03 04:09, Dave Howe wrote: The issue we have with the current TC builds is that they are not reproducible. The source code is available online, and is in the process of being audited, but there is no guarantee the installer almost all the users have installed TC with contained code ac

Re: [FD] Discussion: Teamviewer "Feature" or "Bug"?

2014-05-08 Thread Dave Warren
akage. On the flip side, this is a *very* useful feature. Ideally it would have a "Share clipboard with remote side? (Yes, no, for this session, always)" dialog the first time someone modifies the clipboard while TeamViewer is being used to give users some level of contr

Re: [FD] Arbitrary code execution by admins in File Gallery 1.7.7 (WordPress plugin)

2014-04-29 Thread Dave Warren
alled plugin, but not to install their own. The same may be true if this plugin were installed in multiuser mode, although I haven't kept up on what is permitted in multiuser mode, or whether this plugin works in multiuser mode or not. -- Dave Warren http://www.hireahit.com/ http://ca.linke