Chercher :
Newsletter :  

Revues :
- Presse
- Presse FR
- Vidéos
- Twitter
- Secuobs





Sponsors :

Sommaires :
- Tendances
- Failles
- Virus
- Concours
- Reportages
- Acteurs
- Outils
- Breves
- Infrastructures
- Livres
- Tutoriels
- Interviews
- Podcasts
- Communiques
- Commentaires


Revue Presse:
- Tous
- Francophone
- Par mot clé
- Par site
- Le tagwall


Top bi-hebdo:
- Ensemble
- Articles
- Revue
- Videos
- Twitter
- Auteurs


Articles :
- Par mot clé
- Par auteur
- Par organisme
- Le tagwall


Videos :
- Toutes
- Par mot clé
- Par site
- Le tagwall


Twitter :
- Tous
- Par mot clé
- Par compte
- Le tagwall


Commentaires :
- Breves
- Virus
- Failles
- Outils
- Tutoriels
- Tendances
- Acteurs
- Reportages
- Infrastructures
- Interviews
- Concours
- Livres
- Communiques


Secumail :
- Secunia
- Full Disclosure
- Bugtraq
- DailyDave
- Vulnwatch
- Vulndiscuss
- FunSec
- Focus-IDS
- WebAppSec
- Security-Basis


RSS/XML :
- Articles
- Brèves
- Commentaires
- Revue
- Revue FR
- Videos
- Twitter
- Secunia
- Full Disclosure
- Bugtraq
- DailyDave
- Vulnwatch
- Vulndiscuss
- FunSec
- Focus-IDS
- WebAppSec
- Security-Basis


RSS SecuObs :
- sécurité
- exploit
- windows
- microsoft
- réseau
- attaque


RSS Revue :
- security
- microsoft
- windows
- hacker
- attack
- network


RSS Videos :
- vmware
- security
- virus
- biometric
- windows
- lockpicking


RSS Twitter :
- security
- linux
- botnet
- attack
- metasploit
- cisco


RSS Comments :
- Breves
- Virus
- Failles
- Outils
- Tutoriels
- Tendances
- Acteurs
- Reportages
- Infrastructures
- Interviews
- Concours
- Livres
- Communiques


RSS OPML :
- Français
- International











Revue de presse francophone :
- CERT-XMCO La vulnérabilité 0-day affectant Firefox sera corrigée dans la version 3.6.2 disponible le 30 mars
- Vigilance - CiscoWorks débordement de IPM CORBA GIOP
- Analyse de winpcap - Petite rectification
- Attaques en DDoS et guerres entre mondes virtuels
- Vigilance - Noyau Linux déni de service du routage
- Vigilance - SAP WebAS exécution de code via ITS
- Vigilance - gunzip exécution de code via Huffman
- Vigilance - gunzip exécution de code via LZW
- Vigilance - Noyau Linux déni de service via NFS
- Triton de Websense la sécurité unifiée
- L'Internet des objets doit encore apprendre à interpréter
- Alvin et les Chipmunks contre les Majors
- Frédéric Renard, Arkeia Software la virtualisation, un enjeu à ne pas louper
- CERTA-2010-ACT-011 Bulletin d'actualité numéro 011 de l'année 2010 19 mars 2010
- CERTA-2010-AVI-128 Multiples vulnérabilités dans CA ARCserve Backup 19 mars 2010

Dernier articles de SecuObs :
- VASTO une extension Metasploit dédiée à l'exploitation des infrastructures virtuelles
- Hogger automatise la création des tables d'attributs Snort à partir des scans Nmap
- Edenwall obtient une subvention de la DGA
- Imposter 0.9 une plateforme de phishing ciblant les navigateurs Web
- Une faille dans l’implémentation RSA de OpenSSL
- Flint un scanner pour simuler, vérifier et nettoyer les règles de filtrage
- SET 0.4.1 - Social Engineering Toolkit - une plateforme de Social Engineering
- 100 000 dollars pour le Pwn2own 2010
- Un botnet qui rapporte gros
- Webraider offre un reverse shell contre une simple injection SQL

Revue de presse internationale :
- Sci-Fi Writer Peter Watts Convicted of Assault
- Bootstrapping the next generation.
- POV clock inside acrylic block
- GSD Recent Comment Sidebar link references fixed
- How to Fix Trojan.FakeAlert.5 Bitdefender Alert
- Popular Apple Faces Increased Malware Risk
- Reuters Grand jury indicts ex-Madoff programmers A U.S. grand jury formalized criminal charges on Wednesday against two former computer programmers at swindler Bernard Madoff's firm
- eDisplay Personal FTP server 1.0.0 Multiple Post-Authentication Stack BOF
- Canada's Top Court Quashes Child Porn Warrant
- Man in suit takes taxi, robs office building Tampa Bay, St. Petersburg, Clearwater, Sarasota WTSP.com 10 Connects
- BitDefender 2010 Update Problem, Sat, Mar 20th
- By popular demand the OK Go Rube Goldberg machine
- Cracking WPA WPA2 with Hidden SSID Aircrack and Airolib Video Tutorial
- An Anti-malware Test Common Sense Wins
- w3af wins Segurinfo 2009 award

Annuaire des videos
- Pwn2Own 2010 Contest Participant Order Drawing
- Shmoocon 2010 Becoming Jack Flack Real Life Cloak Dagger 3 6
- Building a Hackerspace Learning how to play again by FedeK at BlueHat
- IBM Virtual Server Security for VMware
- Avast AntiVirus 4 8 Professional with Life Time Keygen
- Comodo 4 Internet Security Review and Tests Part 1
- Root Kit Hacker Defender aufsp ren
- Remove a Virus Worm Spyware Adware Rootkit or Potentially Unwanted
- Xmas Special Crypto Encryption Protect Your Sensitive Data
- User Rights Management For Databases
- Hacking Websites You think you are secure
- Security12 Introduction Ep 01
- CAPeD Calm Audio controlled Personalized Display
- Business Logic Automatons Friend or Foe Amichai Shulman
- Shmoocon 2010 Cyborg Information Security Defense Against the Dark Arts 2 5

Revue Twitter
- RT @SocialMediaSec Social Media Security Podcast 11 ? Google Buzz, Geostalking, Twitter?s Phishing Filter http://bit.ly/9K4kas
- DONE! 3 new vids at wiresharkbook.com/coffee... time for sleep...
- RT @canoetech: Stakes Raised At CanSecWest Vancouver 2010 http://bit.ly/a7WNRW
- RT @ohjeongwook: OK. Officially I'll not speak at CanSecWest for personal reason. I'll try again surely.
- RT @mhaddy: Mac OS X: Safer, but less secure ~ http://ow.ly/1oBmN ~ Let's see what happens at CanSecWest next week @thehutch @ckoolmike ...
- RT @manzuik: Next week is my last week at Juniper and it's cut in half by cansecwest. :-)
- RT @apopli: 'upping' the game at CansecWest - http://bit.ly/aOIsoC
- @pentestit Just grabbed XSSer, getting Inconsistent use of tabs, line 43 of XSSer.py - thoughts?
- RT @Paterva: Info porn video on latest v3 update at http://maltego.blogspot.com/Using Maltego 3 and NER. Enjoy!
- Coding something in Python for the first time in a long while. Need to remember how this stuff works!

Mini-Tagwall
Revue de presse : security, microsoft, windows, hacker, attack, network, vulnerability, google, exploit, malware, internet, remote, iphone

+ de mots clés pour la revue de presse

Annuaires des videos : vmware, security, virus, biometric, windows, lockpicking, password, botnet, metasploit, tutorial, attack, crypt, linux

+ de mots clés pour les videos

Revue Twitter : security, linux, botnet, attack, metasploit, cisco, defcon, phish, exploit, google, inject, server, firewall

+ de mots clés pour la revue Twitter



Top bi-hebdo des articles de SecuObs
- Apprendre à parler Skype pour mieux le faire taire !
- Une faille dans l’implémentation RSA de OpenSSL
- Imposter 0.9 une plateforme de phishing ciblant les navigateurs Web
- VASTO une extension Metasploit dédiée à l'exploitation des infrastructures virtuelles
- SET 0.4.1 - Social Engineering Toolkit - une plateforme de Social Engineering
- Keimpx un outil d'audit pour les réseaux Microsoft Windows
- [Metasploit 2.x – Partie 1] Introduction et présentation
- Edenwall obtient une subvention de la DGA
- Comment changer un mot de passe perdu pour un compte WINDOWS
- Webraider offre un reverse shell contre une simple injection SQL

Top bi-hebdo de la revue de presse
- Sun Ray interception de données des DTU
- How to Jailbreak iPhone 3.1.3 IPSW with PwnageTool 3.1.5
- Dev Team Confirms iPhone 3.1.3 IPSW Jailbreak
- Rozlyn Papa sex tape rumours lead to malware
- FREE Kaspersky Internet Security 2010 Activation Code Valid for 6 Months
- installer backtrack 4 [tuto]
- Nouveau dictionnaire WPA Livebox
- IIS 6 may stop responding after you install Microsoft update KB 973917
- La Face cachée de Facebook
- Téléchargements Ados de mal en pis

Top bi-hebdo de l'annuaire des videos
- Comment creer un server botnet!!!!(Réseau de pc zombies)
- vSphere 4 0 update 1 VMware Update Manager and EMC PowerPath VE
- Ettercap Tutorial Man In The Middle Arp Attack
- Shmoocon 2010 Firetalks SHODAN for Penetration Testers 1 2
- install MacOSX Snow Leopard in Windows PC using Vmware Workstation as virtual machine
- Blaze botnet in action www opensc ws
- Windows XP Pro SP3 in VMWare off iSCSI Target using gPXE over 802.11n
- Running Wireshark on Mac OS X 10 6 Snow Leopard
- Avast Internet Security 5 0 396 Final Free Full Download Licensed with Serial Key
- Ch0ry Euro iPhone 3G 3GS 30 Hack WIFI key

Top bi-hebdo de la revue Twitter
- How to secure a Cisco router http://ping.fm/FkG7O
- RT @manicode: Very interesting Java ESAPI-like library coming out of Apache : http://bit.ly/9poefg
- Wirshark + SSH = Wireshark Remote Capturing - http://www.howtoforge.com/wireshark-remote-capturing (via @welias)
- Nessus Scan through a Meterpreter Session (demo) http://vimeo.com/10203481 #PaulDotCom #nessus #meterpreter
- Nux Keylogger 0.0.1 http://packetstormsecurity.org/filedesc/nuxkeylogger0.0.1.c.html
- Collection of security checks for Linux http://bit.ly/a7IH7m
- RT @FrikiFeeds: The newbie's guide to hacking the Linux kernel | TuxRadar Linux http://dlvr.it/6sQp
- Exploit for Apache mod_isapi = 2.2.14 Dangling Pointer (CVE2010-0425) vulnerability ported to Metasploit http://bit.ly/ctDQjk
- Discoverer: Automatic Protocol Reverse Engineering from Network Traces #pdf http://ow.ly/1gHd1
- New Weblog Post -- Finding Malware on your network via cached DNS entries http://bit.ly/ajpcmU

Top des articles les plus commentés
- [Metasploit 2.x – Partie 1] Introduction et présentation
- Microsoft !Exploitable un nouvel outil gratuit pour aider les développeurs à évaluer automatiquement les risques
- Webshag, un outil d'audit de serveur web
- Les navigateurs internet, des mini-systèmes d’exploitation hors de contrôle ?
- CAINE un Live[CD|USB] pour faciliter la recherche légale de preuves numériques de compromission
- [Renforcement des fonctions de sécurité du noyau Linux – Partie 1] Présentation
- Yellowsn0w un utilitaire de déblocage SIM pour le firmware 2.2 des Iphone 3G
- Microsoft Gazelle, mini-OS virtuel basé sur MashupOS pour une navigation Web sécurisée par isolation
- Nessus 4.0 placé sous le signe de la performance, de l'unification et de la personnalisation
- GreenSQL un proxy MySQL pour filtrer les requêtes SQL et contrer les injections

Les derniers commentaires publiés sur SecuObs (1-5):
- ESRT @mikkohypponen @carnal0wnage - Spoofing your Foursquare location with Me
- ESRT @mikkohypponen - Yes, that just might work, license plate SQL injection
- ESRT @mikkohypponen The Android phone with a Win32 USB worm on it's memory ca
- opennhrp 0.11.5
- Mozilla confirmed a critical vulnerability in the newest version of Firefox


[Message Precedent sur la mailing][Message Suivant sur la mailing][Precedent dans le fil][Prochain dans le fil][Index par Date][Index par fil] [Full-disclosure] [ MDVSA-2010:033 ] squid

-----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 ________________________ Mandriva Linux Security Advisory MDVSA-2010:033 link://[click] ________________________ Package : squid Date : February 5, 2010 Affected: 2008.0, 2009.0, 2009.1, 2010.0, Corporate 4.0, Enterprise Server 5.0, Multi Network Firewall 2.0 ________________________ Problem Description: A vulnerability have been discovered and corrected in Squid 2.x, 3.0 through 3.0.STABLE22, and 3.1 through 3.1.0.15, which allows remote attackers to cause a denial of service (assertion failure) via a crafted DNS packet that only contains a header (CVE-2010-0308).

This update provides a fix to this vulnerability.

________________________ References: link://[click] ________________________ Updated Packages: Mandriva Linux 2008.0: 56d1a099888684549450987984ab07e5 2008.0/i586/squid-2.6.STABLE16-1.5mdv2008.0.i586.rpm 23ae7f244ee664020270c010d9bffc93 2008.0/i586/squid-cachemgr-2.6.STABLE16-1.5mdv2008.0.i586.rpm 952676e8f79dcb3cf48beb693082a055 2008.0/SRPMS/squid-2.6.STABLE16-1.5mdv2008.0.src.rpm Mandriva Linux 2008.0/X86_64: 6e3757e4957a31a2c7b2c698d70a23ec 2008.0/x86_64/squid-2.6.STABLE16-1.5mdv2008.0.x86_64.rpm 4090afb42b9c821567ef9585f72826de 2008.0/x86_64/squid-cachemgr-2.6.STABLE16-1.5mdv2008.0.x86_64.rpm 952676e8f79dcb3cf48beb693082a055 2008.0/SRPMS/squid-2.6.STABLE16-1.5mdv2008.0.src.rpm Mandriva Linux 2009.0: 514ac3e366722bf224c6c268133c8bf5 2009.0/i586/squid-3.0-22.2mdv2009.0.i586.rpm af1e6999474f66abd50c0830838c37e1 2009.0/i586/squid-cachemgr-3.0-22.2mdv2009.0.i586.rpm 111816fac7c13dac76fc4cbb32c5d5b8 2009.0/SRPMS/squid-3.0-22.2mdv2009.0.src.rpm Mandriva Linux 2009.0/X86_64: 26a88dff2af3b818c765740a226a304a 2009.0/x86_64/squid-3.0-22.2mdv2009.0.x86_64.rpm 63f5a3ca8f76e30fd55b3d0491161b29 2009.0/x86_64/squid-cachemgr-3.0-22.2mdv2009.0.x86_64.rpm 111816fac7c13dac76fc4cbb32c5d5b8 2009.0/SRPMS/squid-3.0-22.2mdv2009.0.src.rpm Mandriva Linux 2009.1: ac595f8e4d801933fa14c9737f2bda2f 2009.1/i586/squid-3.0-22.2mdv2009.1.i586.rpm 62de73c22f47725da6c437364a46e940 2009.1/i586/squid-cachemgr-3.0-22.2mdv2009.1.i586.rpm c7e94a138db6a4c1388229755aee5140 2009.1/SRPMS/squid-3.0-22.2mdv2009.1.src.rpm Mandriva Linux 2009.1/X86_64: 90303168b09d33f47bce7242b669a214 2009.1/x86_64/squid-3.0-22.2mdv2009.1.x86_64.rpm cd8aaa4a61c8ecdb5170bd9cc0d3c1f3 2009.1/x86_64/squid-cachemgr-3.0-22.2mdv2009.1.x86_64.rpm c7e94a138db6a4c1388229755aee5140 2009.1/SRPMS/squid-3.0-22.2mdv2009.1.src.rpm Mandriva Linux 2010.0: eddb97e4799437f2cf0a78c6a359cb5e 2010.0/i586/squid-3.0-22.2mdv2010.0.i586.rpm 555c13ad31b3b6aacd50bbfcb6fa9eef 2010.0/i586/squid-cachemgr-3.0-22.2mdv2010.0.i586.rpm 7f79b208080e8e3ead74b69e7ac840e5 2010.0/SRPMS/squid-3.0-22.2mdv2010.0.src.rpm Mandriva Linux 2010.0/X86_64: a13f8f1b479b99bdc40ddc5ad86d0be4 2010.0/x86_64/squid-3.0-22.2mdv2010.0.x86_64.rpm d648754975631b54d6bc992a0e39cbae 2010.0/x86_64/squid-cachemgr-3.0-22.2mdv2010.0.x86_64.rpm 7f79b208080e8e3ead74b69e7ac840e5 2010.0/SRPMS/squid-3.0-22.2mdv2010.0.src.rpm Corporate 4.0: 0bd70b523f3e0d4d6a3b61b3e42997d1 corporate/4.0/i586/squid-2.6.STABLE1-4.7.20060mlcs4.i586.rpm 934c278650d457d10adda359441432e2 corporate/4.0/i586/squid-cachemgr-2.6.STABLE1-4.7.20060mlcs4.i586.rpm 357f99500713686172ab432852f9d3c2 corporate/4.0/SRPMS/squid-2.6.STABLE1-4.7.20060mlcs4.src.rpm Corporate 4.0/X86_64: 18b0b7e594cbab3d6c19a1a017b7d4b0 corporate/4.0/x86_64/squid-2.6.STABLE1-4.7.20060mlcs4.x86_64.rpm a22aace447ac83f960fa58fa7e8a1329 corporate/4.0/x86_64/squid-cachemgr-2.6.STABLE1-4.7.20060mlcs4.x86_64.rpm 357f99500713686172ab432852f9d3c2 corporate/4.0/SRPMS/squid-2.6.STABLE1-4.7.20060mlcs4.src.rpm Mandriva Enterprise Server 5: 0672692de71c27f8f39e9908b3738c41 mes5/i586/squid-3.0-22.2mdvmes5.i586.rpm 369ada9958ee2314f05c521ebcfdf538 mes5/i586/squid-cachemgr-3.0-22.2mdvmes5.i586.rpm c016e10f40be982e8721bd25d7cbde2b mes5/SRPMS/squid-3.0-22.2mdvmes5.src.rpm Mandriva Enterprise Server 5/X86_64: ed47df165089fab968431ca1530e609e mes5/x86_64/squid-3.0-22.2mdvmes5.x86_64.rpm 52c1eefa1b67c95d50ade95e2b37b4ae mes5/x86_64/squid-cachemgr-3.0-22.2mdvmes5.x86_64.rpm c016e10f40be982e8721bd25d7cbde2b mes5/SRPMS/squid-3.0-22.2mdvmes5.src.rpm Multi Network Firewall 2.0: e42b3292a67b734d582f565ffb7376ce mnf/2.0/i586/squid-2.5.STABLE9-1.11.M20mdk.i586.rpm 288d79b7fa0bdf3e3c3ae17b65a661ac mnf/2.0/SRPMS/squid-2.5.STABLE9-1.11.M20mdk.src.rpm ________________________ To upgrade automatically use MandrivaUpdate or urpmi. The verification of md5 checksums and GPG signatures is performed automatically for you.

All packages are signed by Mandriva for security. You can obtain the GPG public key of the Mandriva Security Team by executing: gpg --recv-keys --keyserver pgp.mit.edu 0x22458A98 You can view other update advisories for Mandriva Linux at: link://[click] If you want to report vulnerabilities, please contact security_(at)_mandriva.com ________________________ Type Bits/KeyID Date User ID pub 1024D/22458A98 2000-07-10 Mandriva Security Team <security*mandriva.com> -----BEGIN PGP SIGNATURE----- Version: GnuPG v1.4.9 (GNU/Linux) iD8DBQFLbETtmqjQ0CJFipgRAgrOAKDfmBXv7ZKffTKHwH71Zq8CanAv3QCg3gT2 QstUAAOi99OUju/Jgx1QWm4= =GZzx -----END PGP SIGNATURE----- Full-Disclosure - We believe in it.

Charter: link://[click] Hosted and sponsored by Secunia - link://[click]


Archives de la liste de diffusion Secunia
Archives de la liste de diffusion BugTraq
Archives de la liste de diffusion DailyDave
Archives de la liste de diffusion FunSec
Archives de la liste de diffusion Full Disclosure
Archives de la liste de diffusion Focus-IDS (FD)
Archives de la liste de diffusion Webappsec (FD)
Archives de la liste de diffusion Security-basics (FD)
Archives de la liste de diffusion Vulndiscuss
Archives de la liste de diffusion Vulnwatch






Les derniers commentaires publiés sur SecuObs (6-25):
- libnids 1.24
- XSSer Automate your XSS Injections
- Cross Application Scripting All you KDE are belong to US
- ESRT @ChrisJohnRiley @carnal0wnage - Exploiting hard filtered SQL Injections
- Malicious Code Evolution from IE Zero-Day Exploit Code
- Google Releases Skipfish Application Security Scanner
- ESRT @securityninja - Burp Suite Tutorial - Repeater and Comparer Tool
- ESRT @dinodaizovi - New metasploit blog post - analyzes the first public Perm
- ESRT @iagox86 @hdmoore - Using Metasploit to Locate and Exploit the Energizer
- ESRT @innismir - New Weblog Post -- Finding Malware on your network via cache
- Sniffing with Wireshark as a Non-Root User
- Focus on MacNikto v1.1.1
- New Google Chrome v4.1.249.1036 released, fixes multiple security vulnerabili
- ESRT @opexxx @synopsi - Remote stack overflows
- ESRT @postmodern_mod3 @tmm1 - memprof now displays stack frames and threads
- ESRT @_MDL_ @gollmann - Locking botnet agents to specific victim systems in o
- CsFire 0.4.1 autonomously protects against dangerous or malicious cross-domai
- Seccubus v1.4.1 - Nessus 4.2 compatibility release
- ESRT @JGamblin @threatpost - Hackers say they will definitely break into an A
- ESRT @hdmoore @iagox86 - Weaponizing dnscat - first version of dnscat shellco


SecuToolBox :

Mini-Tagwall des articles publiés sur SecuObs :

Archives Failles Secunia :
- SA39038 SiteDone Custom Edition articleId SQL Injection Vulnerability
- SA38977 Ubuntu update for thunderbird
- SA38930 Debian update for php5
- SA39044 IBM HTTP Server Multiple Vulnerabilities
- SA38929 CA ARCserve Backup JRE Multiple Vulnerabilities

Archives Mailing Full Disclosure :
- Full-disclosure Claude Mercier/CLSC-CHSLD BVLV/Reg03/SSSS est absent(e).
- Full-disclosure Setting the record straight on The Return of Koobface
- Full-disclosure Malware 2010 Call for Papers
- Re: Full-disclosure Fingerprinting Paper with Laser
- Re: Full-disclosure Fingerprinting Paper with Laser

Archives Mailing Bugtraq :
- announcing skipfish, an automated web app security scanner
- Vulnerability Httpdx v1.5.3b
- IBM Lotus 6.x HTTP Response Splitting Vulnerability
- There are lost of xss vul in PHPWind v6.0 !
- CA20100318-01: Security Notice for CA ARCserve Backup
- SECURITY DSA-2018-1 New php5 packages fix null pointer dereference

Mini-Tagwall de l'annuaire video :

Mini-Tagwall des articles de la revue de presse :

Mini-Tagwall des Tweets de la revue Twitter :