<?xml version="1.0" encoding="utf-8"?>
<rss version="0.92">
<channel>
<title>SecuObs.com</title>
<link>http://www.secuobs.com</link>
<description>Observatoire de la securite Internet</description>
<language>fr</language>
<webMaster>webmaster@secuobs.com</webMaster>
 <item><title> RT @NTarakanov: Just checked, 0day in Flash which I prepared for #pwnium2 has been killed Thank You very much @j00ru @fjserna You are r </title><description>2012-10-10 02:31:29 - jduck1337 :  RT @NTarakanov: Just checked, 0day in Flash which I prepared for #pwnium2 has been killed Thank You very much @j00ru @fjserna You are r </description><link>http://www.secuobs.com/twitter/news/349413.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/349413.shtml</guid></item>
<item><title> RT @hugofortier: Linux on a peetop http://tco/3mIEP1Pf</title><description>Secuobs.com : 2012-10-10 02:31:29 -  jduck1337 -  RT @hugofortier: Linux on a peetop http://tco/3mIEP1Pf</description><link>http://www.secuobs.com/twitter/news/349412.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/349412.shtml</guid></item>
<item><title> @kutyacica @jonoberheide kernel style</title><description>Secuobs.com : 2012-10-06 19:36:32 - jduck1337 -  @kutyacica @jonoberheide kernel style</description><link>http://www.secuobs.com/twitter/news/348788.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/348788.shtml</guid></item>
<item><title> RT @quine: Mapping and Evolution of Android Permissions from EUSecWest 2012 and SOURCE Seattle by me  @paucis__verbis http://t </title><description>Secuobs.com : 2012-10-05 05:08:06 - jduck1337 -  RT @quine: Mapping and Evolution of Android Permissions from EUSecWest 2012 and SOURCE Seattle by me  @paucis__verbis http://t </description><link>http://www.secuobs.com/twitter/news/348377.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/348377.shtml</guid></item>
<item><title> @DHowett erm no export to pdf for the masses</title><description>Secuobs.com : 2012-10-05 05:08:06 - jduck1337 -  @DHowett erm no export to pdf for the masses</description><link>http://www.secuobs.com/twitter/news/348376.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/348376.shtml</guid></item>
<item><title> RT @__rev: SMAP support getting included in 37 Linux Kernel http://tco/ZsXY80GG</title><description>Secuobs.com : 2012-10-03 10:02:23 - jduck1337 -  RT @__rev: SMAP support getting included in 37 Linux Kernel http://tco/ZsXY80GG</description><link>http://www.secuobs.com/twitter/news/347826.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/347826.shtml</guid></item>
<item><title> Metasploit is moving towards supporting ROP in a more global way Watch out https://tco/CQepsFXq</title><description>Secuobs.com : 2012-10-02 08:07:46 - jduck1337 -  Metasploit is moving towards supporting ROP in a more global way Watch out https://tco/CQepsFXq</description><link>http://www.secuobs.com/twitter/news/347548.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/347548.shtml</guid></item>
<item><title> RT @_juan_vazquez_: Just added #Metasploit mod Samba SetInformationPolicy AuditEventsInfo Heap Overflow CVE-2012-1182 Screenshot: http </title><description>Secuobs.com : 2012-09-30 03:52:00 - jduck1337 -  RT @_juan_vazquez_: Just added #Metasploit mod Samba SetInformationPolicy AuditEventsInfo Heap Overflow CVE-2012-1182 Screenshot: http </description><link>http://www.secuobs.com/twitter/news/347108.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/347108.shtml</guid></item>
<item><title> Bug #6392582 - “Upgrade from S10 FCS to snv_34 wrongly enables CDE RPC services” - Nice description for local privilege escalation</title><description>Secuobs.com : 2012-09-30 03:52:00 - jduck1337 -  Bug #6392582 - “Upgrade from S10 FCS to snv_34 wrongly enables CDE RPC services” - Nice description for local privilege escalation</description><link>http://www.secuobs.com/twitter/news/347107.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/347107.shtml</guid></item>
<item><title> RT @ericlaw: I wrote a bit about #IE10 and ActiveX: http://tco/e6HMnNqH</title><description>Secuobs.com : 2012-09-27 19:50:09 - jduck1337 -  RT @ericlaw: I wrote a bit about #IE10 and ActiveX: http://tco/e6HMnNqH</description><link>http://www.secuobs.com/twitter/news/346473.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/346473.shtml</guid></item>
<item><title> RT @theKos: If you guys use CR-GPG for Chrome and GMail DON'T Remote command injection on current version XSS - to Meterp shell </title><description>Secuobs.com : 2012-09-27 19:50:09 - jduck1337 -  RT @theKos: If you guys use CR-GPG for Chrome and GMail DON'T Remote command injection on current version XSS - to Meterp shell </description><link>http://www.secuobs.com/twitter/news/346472.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/346472.shtml</guid></item>
<item><title> RT @_sinn3r: Could anybody verify if the fix-it actually works for the IE 0day http://tco/RbivdEhT Exploit still works: http://tco/ </title><description>Secuobs.com : 2012-09-20 23:05:28 - jduck1337 -  RT @_sinn3r: Could anybody verify if the fix-it actually works for the IE 0day http://tco/RbivdEhT Exploit still works: http://tco/ </description><link>http://www.secuobs.com/twitter/news/345549.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/345549.shtml</guid></item>
<item><title> @_sinn3r are you sure you have the latest dll version</title><description>Secuobs.com : 2012-09-20 23:05:28 - jduck1337 -  @_sinn3r are you sure you have the latest dll version</description><link>http://www.secuobs.com/twitter/news/345548.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/345548.shtml</guid></item>
<item><title> @kutyacica mostly interested due to convenience of serial and/or jtagging :</title><description>Secuobs.com : 2012-09-20 23:05:28 - jduck1337 -  @kutyacica mostly interested due to convenience of serial and/or jtagging :</description><link>http://www.secuobs.com/twitter/news/345547.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/345547.shtml</guid></item>
<item><title> RT @thezdi: Despite some Layer 1 issues messing with the payload, the Galaxy S3 ultimately fell to @mwrlabs  Congrats guys #Pwn2Own</title><description>Secuobs.com : 2012-09-20 00:20:24 - jduck1337 -  RT @thezdi: Despite some Layer 1 issues messing with the payload, the Galaxy S3 ultimately fell to @mwrlabs  Congrats guys #Pwn2Own</description><link>http://www.secuobs.com/twitter/news/345245.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/345245.shtml</guid></item>
<item><title> RT @_sinn3r: Just added #Metasploit IE 0day IE7/8/9: http://tco/1bI4fmNP Thx @_juan_vazquez_, @binjo, @eromang</title><description>Secuobs.com : 2012-09-19 00:45:24 - jduck1337 -  RT @_sinn3r: Just added #Metasploit IE 0day IE7/8/9: http://tco/1bI4fmNP Thx @_juan_vazquez_, @binjo, @eromang</description><link>http://www.secuobs.com/twitter/news/344957.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/344957.shtml</guid></item>
<item><title> RT @pof: FUD alert: possible 0day to be presented at ekoparty allows remotely permanent bricking of android devices  - spanish http:// </title><description>Secuobs.com : 2012-09-15 05:03:12 - jduck1337 -  RT @pof: FUD alert: possible 0day to be presented at ekoparty allows remotely permanent bricking of android devices  - spanish http:// </description><link>http://www.secuobs.com/twitter/news/344094.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/344094.shtml</guid></item>
<item><title> RT @0xabad1dea: If you missed it, Chrome has disabled SSL compression with a bug report that is 403 https://tco/VbJ6Yl6N We all know w </title><description>Secuobs.com : 2012-09-13 07:53:32 - jduck1337 -  RT @0xabad1dea: If you missed it, Chrome has disabled SSL compression with a bug report that is 403 https://tco/VbJ6Yl6N We all know w </description><link>http://www.secuobs.com/twitter/news/343440.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/343440.shtml</guid></item>
<item><title> RT @egyp7: Blog post about current_user_psexec Metasploit module I demo'd at #defcon - https://tco/bBwYQ66w</title><description>Secuobs.com : 2012-09-13 07:53:32 - jduck1337 -  RT @egyp7: Blog post about current_user_psexec Metasploit module I demo'd at #defcon - https://tco/bBwYQ66w</description><link>http://www.secuobs.com/twitter/news/343439.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/343439.shtml</guid></item>
<item><title> RT @dlitchfield: Wait, what Qualys BrowserCheck for Chrome on Windows has a base address of 0x10000000 #DERP #FAIL #ASLR http://tco/N </title><description>Secuobs.com : 2012-09-13 07:53:32 - jduck1337 -  RT @dlitchfield: Wait, what Qualys BrowserCheck for Chrome on Windows has a base address of 0x10000000 #DERP #FAIL #ASLR http://tco/N </description><link>http://www.secuobs.com/twitter/news/343438.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/343438.shtml</guid></item>
<item><title> RT @TomRittervg: CRIME is probably Compression: http://tco/eeuI53uV Chrome disabled Aug 3rd: http://tco/ihMrTtdE  I guessed right: h </title><description>Secuobs.com : 2012-09-12 02:48:35 - jduck1337 -  RT @TomRittervg: CRIME is probably Compression: http://tco/eeuI53uV Chrome disabled Aug 3rd: http://tco/ihMrTtdE  I guessed right: h </description><link>http://www.secuobs.com/twitter/news/343063.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/343063.shtml</guid></item>
<item><title> RT @OpenSSLFact: OpenSSL vs best practices PKCS#1 signature verification edition http://tco/MYQVo1tf</title><description>Secuobs.com : 2012-09-11 05:43:01 - jduck1337 -  RT @OpenSSLFact: OpenSSL vs best practices PKCS#1 signature verification edition http://tco/MYQVo1tf</description><link>http://www.secuobs.com/twitter/news/342777.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/342777.shtml</guid></item>
<item><title> RT @ochsff: Swipe NFC, suddenly GPS tracking over SSL native ARM RAT 5 kB : http://tco/O3xHgOGL</title><description>Secuobs.com : 2012-09-11 05:43:01 - jduck1337 -  RT @ochsff: Swipe NFC, suddenly GPS tracking over SSL native ARM RAT 5 kB : http://tco/O3xHgOGL</description><link>http://www.secuobs.com/twitter/news/342776.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/342776.shtml</guid></item>
<item><title> RT @spxza: Is it unethical to use fail2ban to trigger metasploit</title><description>Secuobs.com : 2012-09-11 05:43:01 - jduck1337 -  RT @spxza: Is it unethical to use fail2ban to trigger metasploit</description><link>http://www.secuobs.com/twitter/news/342775.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/342775.shtml</guid></item>
<item><title> RT @todb: Two-fisted blogging: The Metasploit #Update at http://tco/nzyHN6J0  @_juan_vazquez_ dives into CVE-2012-2611 http://tco </title><description>Secuobs.com : 2012-09-07 23:27:20 - jduck1337 -  RT @todb: Two-fisted blogging: The Metasploit #Update at http://tco/nzyHN6J0  @_juan_vazquez_ dives into CVE-2012-2611 http://tco </description><link>http://www.secuobs.com/twitter/news/342085.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/342085.shtml</guid></item>
<item><title> @snowfl0w can you imagine how many rootkits they must have installed after looking through malware for copyright violations</title><description>Secuobs.com : 2012-09-07 23:27:20 - jduck1337 -  @snowfl0w can you imagine how many rootkits they must have installed after looking through malware for copyright violations</description><link>http://www.secuobs.com/twitter/news/342084.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/342084.shtml</guid></item>
<item><title> @mdowd @jvanegue hold down alt, and hit 5, 9, then let go usb keyboard is easier :-</title><description>Secuobs.com : 2012-09-07 23:27:20 -  jduck1337 -  @mdowd @jvanegue hold down alt, and hit 5, 9, then let go usb keyboard is easier :-</description><link>http://www.secuobs.com/twitter/news/342083.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/342083.shtml</guid></item>
<item><title> @dcbz32 @i0n1c LOL, ruby is actually most popular in osx circles perhaps not true for osx exploit devs tho</title><description>Secuobs.com : 2012-09-07 00:25:14 - jduck1337 -  @dcbz32 @i0n1c LOL, ruby is actually most popular in osx circles perhaps not true for osx exploit devs tho</description><link>http://www.secuobs.com/twitter/news/341723.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/341723.shtml</guid></item>
<item><title> @asintsov found the oauth slides, any further info on the ASLR/NX stuff</title><description>Secuobs.com : 2012-08-14 20:04:06 - jduck1337 -  @asintsov found the oauth slides, any further info on the ASLR/NX stuff</description><link>http://www.secuobs.com/twitter/news/340054.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/340054.shtml</guid></item>
<item><title> @d0tslash agreed, a bit long, but had a few good points imho 0days will exist until devs stop getting away with writing buggy code</title><description>Secuobs.com : 2012-08-14 20:04:06 - jduck1337 -  @d0tslash agreed, a bit long, but had a few good points imho 0days will exist until devs stop getting away with writing buggy code</description><link>http://www.secuobs.com/twitter/news/340053.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/340053.shtml</guid></item>
<item><title> RT @s7ephen: BlackHat 2012: A Blogpost, A PhotoJournal, and slides from our talk and training http://tco/TikB9T0X</title><description>Secuobs.com : 2012-08-12 17:26:24 - jduck1337 -  RT @s7ephen: BlackHat 2012: A Blogpost, A PhotoJournal, and slides from our talk and training http://tco/TikB9T0X</description><link>http://www.secuobs.com/twitter/news/339743.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/339743.shtml</guid></item>
<item><title> @pod2g usrp + ida pro be careful not to accidently own your neighbors :</title><description>Secuobs.com : 2012-08-11 15:09:04 - jduck1337 -  @pod2g usrp + ida pro be careful not to accidently own your neighbors :</description><link>http://www.secuobs.com/twitter/news/339616.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/339616.shtml</guid></item>
<item><title> RT @d0c_s4vage: @net__ninja same with stack overflows - I really hate it when people use that one when they mean a stack-based buffer ov </title><description>Secuobs.com : 2012-08-11 15:09:04 - jduck1337 -  RT @d0c_s4vage: @net__ninja same with stack overflows - I really hate it when people use that one when they mean a stack-based buffer ov </description><link>http://www.secuobs.com/twitter/news/339615.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/339615.shtml</guid></item>
<item><title> RT @net__ninja: @d0c_s4vage yeah how annoying is it stack exhaustions = stack based buffer overflow :-</title><description>Secuobs.com : 2012-08-11 15:09:04 - jduck1337 -  RT @net__ninja: @d0c_s4vage yeah how annoying is it stack exhaustions = stack based buffer overflow :-</description><link>http://www.secuobs.com/twitter/news/339614.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/339614.shtml</guid></item>
<item><title> RT @julianor: @d0c_s4vage @net__ninja and MiTM = sniffing</title><description>Secuobs.com : 2012-08-11 15:09:04 - jduck1337 -  RT @julianor: @d0c_s4vage @net__ninja and MiTM = sniffing</description><link>http://www.secuobs.com/twitter/news/339613.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/339613.shtml</guid></item>
<item><title> RT @corelanc0d3r: @ax330d haha yeah, that comment usually makes more sense next to the available space for shellcode in an exploit :</title><description>Secuobs.com : 2012-08-06 18:05:51 - jduck1337 -  RT @corelanc0d3r: @ax330d haha yeah, that comment usually makes more sense next to the available space for shellcode in an exploit :</description><link>http://www.secuobs.com/twitter/news/338474.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/338474.shtml</guid></item>
<item><title> RT @roeehay: Android DNS poisoning: Randomness gone bad CVE-2012-2808 http://tco/39LUCEZa  #security #dnspoisoning #android #netsec</title><description>Secuobs.com : 2012-08-06 18:05:51 - jduck1337 -  RT @roeehay: Android DNS poisoning: Randomness gone bad CVE-2012-2808 http://tco/39LUCEZa  #security #dnspoisoning #android #netsec</description><link>http://www.secuobs.com/twitter/news/338473.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/338473.shtml</guid></item>
<item><title> RT @taviso: Random fun fact, Intel's PCI vendor ID is 0x8086 http://tco/3IRpaV5Q</title><description>Secuobs.com : 2012-08-03 16:21:28 - jduck1337 -  RT @taviso: Random fun fact, Intel's PCI vendor ID is 0x8086 http://tco/3IRpaV5Q</description><link>http://www.secuobs.com/twitter/news/337948.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/337948.shtml</guid></item>
<item><title> @julianor @Mario_Vilas @jweyrich @ohunt @omniwired its a stack shifting vuln See phrack article on it You can write anywhere in mem</title><description>Secuobs.com : 2012-08-02 14:53:56 - jduck1337 -  @julianor @Mario_Vilas @jweyrich @ohunt @omniwired its a stack shifting vuln See phrack article on it You can write anywhere in mem</description><link>http://www.secuobs.com/twitter/news/337657.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/337657.shtml</guid></item>
<item><title> RT @nudehaberdasher: Who wants Windows 8 Heap Internals paper/slides Easy 90 pages to relax and read ; https://tco/vgWBPZRt</title><description>Secuobs.com : 2012-08-01 10:49:10 - jduck1337 -  RT @nudehaberdasher: Who wants Windows 8 Heap Internals paper/slides Easy 90 pages to relax and read ; https://tco/vgWBPZRt</description><link>http://www.secuobs.com/twitter/news/337363.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/337363.shtml</guid></item>
<item><title> @BrandonPrry no defcon for me this yeaar,r blackhat only Left fri morn</title><description>Secuobs.com : 2012-07-30 07:36:06 - jduck1337 -  @BrandonPrry no defcon for me this yeaar,r blackhat only Left fri morn</description><link>http://www.secuobs.com/twitter/news/336888.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/336888.shtml</guid></item>
<item><title> Also, I tried triple booting osx/win/linux with refit Never saw refit boot screen once After installing linux windows nor linux will boot</title><description>Secuobs.com : 2012-07-24 23:20:37 - jduck1337 -  Also, I tried triple booting osx/win/linux with refit Never saw refit boot screen once After installing linux windows nor linux will boot</description><link>http://www.secuobs.com/twitter/news/335590.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/335590.shtml</guid></item>
<item><title> RT @theKos: Holy shit, buffer overflow in fsck I didn't think I screwed this FS up that bad</title><description>Secuobs.com : 2012-07-20 18:11:50 - jduck1337 -  RT @theKos: Holy shit, buffer overflow in fsck I didn't think I screwed this FS up that bad</description><link>http://www.secuobs.com/twitter/news/335004.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/335004.shtml</guid></item>
<item><title> @darelgrif @_luism maybe, but will have to search old boxes I was at the defcon, but they might have ran out of cds before I reg'd</title><description>Secuobs.com : 2012-07-18 12:23:03 - jduck1337 -  @darelgrif @_luism maybe, but will have to search old boxes I was at the defcon, but they might have ran out of cds before I reg'd</description><link>http://www.secuobs.com/twitter/news/334345.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/334345.shtml</guid></item>
<item><title> RT @Hfuhs: CLOUD - Can't Locate Our Users Data</title><description>Secuobs.com : 2012-07-18 12:23:03 - jduck1337 -  RT @Hfuhs: CLOUD - Can't Locate Our Users Data</description><link>http://www.secuobs.com/twitter/news/334344.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/334344.shtml</guid></item>
<item><title> @jvanegue perl and cygwin both suck alone, combining them is assured failure</title><description>Secuobs.com : 2012-07-17 17:00:55 - jduck1337 -  @jvanegue perl and cygwin both suck alone, combining them is assured failure</description><link>http://www.secuobs.com/twitter/news/333997.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/333997.shtml</guid></item>
<item><title> @a_greenberg Does Forbes have something against Chrome</title><description>Secuobs.com : 2012-07-16 23:02:38 - jduck1337 -  @a_greenberg Does Forbes have something against Chrome</description><link>http://www.secuobs.com/twitter/news/333795.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/333795.shtml</guid></item>
<item><title> @a_greenberg Looks related to ScriptNo  Even with it disabled in its settings not in chrome settings</title><description>Secuobs.com : 2012-07-16 23:02:38 - jduck1337 -  @a_greenberg Looks related to ScriptNo  Even with it disabled in its settings not in chrome settings</description><link>http://www.secuobs.com/twitter/news/333794.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/333794.shtml</guid></item>
<item><title> RT @michaelossmann: If you want to write about Bluetooth hacking without looking like an idiot, read the Core Specification first</title><description>Secuobs.com : 2012-07-16 23:02:38 - jduck1337 -  RT @michaelossmann: If you want to write about Bluetooth hacking without looking like an idiot, read the Core Specification first</description><link>http://www.secuobs.com/twitter/news/333793.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/333793.shtml</guid></item>
<item><title> RT @stdlib: I just BSoD'd Win2k8 Server by nmap'ing it I'm done for the day; gg computers</title><description>Secuobs.com : 2012-07-16 06:02:13 - jduck1337 -  RT @stdlib: I just BSoD'd Win2k8 Server by nmap'ing it I'm done for the day; gg computers</description><link>http://www.secuobs.com/twitter/news/333469.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/333469.shtml</guid></item>
<item><title> Check out @garethheyes blog post on JavaScript Level Randomization JSLR, http://tco/8grEkh7N #html #defense #xss</title><description>Secuobs.com : 2012-07-16 06:02:13 - jduck1337 -  Check out @garethheyes blog post on JavaScript Level Randomization JSLR, http://tco/8grEkh7N #html #defense #xss</description><link>http://www.secuobs.com/twitter/news/333468.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/333468.shtml</guid></item>
<item><title> RT @johnregehr: just got an IOC bug report of course, an integer overflow of course, in code that I wrote</title><description>Secuobs.com : 2012-07-11 12:37:00 - jduck1337 -  RT @johnregehr: just got an IOC bug report of course, an integer overflow of course, in code that I wrote</description><link>http://www.secuobs.com/twitter/news/332775.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/332775.shtml</guid></item>
<item><title> RT @todb: This week's #Metasploit update is out: new Meterpreter sniffing code, some type safety on our libraries, and more: http://tco </title><description>Secuobs.com : 2012-07-09 00:19:29 - jduck1337 -  RT @todb: This week's #Metasploit update is out: new Meterpreter sniffing code, some type safety on our libraries, and more: http://tco </description><link>http://www.secuobs.com/twitter/news/332461.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/332461.shtml</guid></item>
<item><title> RT @kokanin: Wanted security push from @oracle java- change that default always trust checkbox please</title><description>Secuobs.com : 2012-07-09 00:19:29 - jduck1337 -  RT @kokanin: Wanted security push from @oracle java- change that default always trust checkbox please</description><link>http://www.secuobs.com/twitter/news/332460.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/332460.shtml</guid></item>
<item><title> RT @haaspors: ARM Publishes 64-bit AArch64 Linux Kernel Support: http://tco/32i5tV4a</title><description>Secuobs.com : 2012-07-09 00:19:29 -  jduck1337 -  RT @haaspors: ARM Publishes 64-bit AArch64 Linux Kernel Support: http://tco/32i5tV4a</description><link>http://www.secuobs.com/twitter/news/332459.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/332459.shtml</guid></item>
<item><title> RT @hdmoore: Thanks to help from @stephenfewer, Metasploit now supports the Meterpreter sniffer extension on 64-bit platforms: https://t </title><description>Secuobs.com : 2012-07-04 09:15:23 - jduck1337 -  RT @hdmoore: Thanks to help from @stephenfewer, Metasploit now supports the Meterpreter sniffer extension on 64-bit platforms: https://t </description><link>http://www.secuobs.com/twitter/news/331771.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/331771.shtml</guid></item>
<item><title> @corelanc0d3r @todb including 0day might also represent a tendency towards opsec fail just a thought</title><description>Secuobs.com : 2012-07-04 09:15:23 - jduck1337 -  @corelanc0d3r @todb including 0day might also represent a tendency towards opsec fail just a thought</description><link>http://www.secuobs.com/twitter/news/331770.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/331770.shtml</guid></item>
<item><title> RT @todb: #Metasploit Update is out: http://tco/kXV2SRjA Meterpreter for VC2010, a pile of post modules, a nifty Flash exploit, and more</title><description>Secuobs.com : 2012-07-01 06:28:01 - jduck1337 -  RT @todb: #Metasploit Update is out: http://tco/kXV2SRjA Meterpreter for VC2010, a pile of post modules, a nifty Flash exploit, and more</description><link>http://www.secuobs.com/twitter/news/331377.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/331377.shtml</guid></item>
<item><title> RT @bradthx: There is something ironic about a storm that takes down a cloud</title><description>Secuobs.com : 2012-07-01 06:28:01 - jduck1337 -  RT @bradthx: There is something ironic about a storm that takes down a cloud</description><link>http://www.secuobs.com/twitter/news/331376.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/331376.shtml</guid></item>
<item><title> RT @tmanning: Always use stack buffers so your overflows are protected by stack canaries cc @jduck1337 @0xcharlie</title><description>Secuobs.com : 2012-06-28 13:08:19 -  jduck1337 -  RT @tmanning: Always use stack buffers so your overflows are protected by stack canaries cc @jduck1337 @0xcharlie</description><link>http://www.secuobs.com/twitter/news/330819.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/330819.shtml</guid></item>
<item><title> RT @SecureTips: Be sure to check out the BlackHat panel in Vegas next month by @csoghoian and me titled Armchair Internet Superheros</title><description>Secuobs.com : 2012-06-26 22:04:37 - jduck1337 -  RT @SecureTips: Be sure to check out the BlackHat panel in Vegas next month by @csoghoian and me titled Armchair Internet Superheros</description><link>http://www.secuobs.com/twitter/news/330429.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/330429.shtml</guid></item>
<item><title> RT @_juan_vazquez_: IE8 version of State-sponsored IE 0-day CVE-2012-1889 has made it to #metasploit Pastie: http://tco/e6pwf9EO</title><description>Secuobs.com : 2012-06-22 10:05:35 - jduck1337 -  RT @_juan_vazquez_: IE8 version of State-sponsored IE 0-day CVE-2012-1889 has made it to #metasploit Pastie: http://tco/e6pwf9EO</description><link>http://www.secuobs.com/twitter/news/329298.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/329298.shtml</guid></item>
<item><title> RT @BlackHatEvents: The #BlackHat USA 2012 briefings feature 36 Tools, 17 zero-days, and 49 live onstage demos Register now http://tc </title><description>Secuobs.com : 2012-06-22 10:05:35 - jduck1337 -  RT @BlackHatEvents: The #BlackHat USA 2012 briefings feature 36 Tools, 17 zero-days, and 49 live onstage demos Register now http://tc </description><link>http://www.secuobs.com/twitter/news/329297.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/329297.shtml</guid></item>
<item><title> RT @esizkur: Compared to the innovation that PaX was more than 10 years ago, all of these BlueHat entries look really lame</title><description>Secuobs.com : 2012-06-22 10:05:35 - jduck1337 -  RT @esizkur: Compared to the innovation that PaX was more than 10 years ago, all of these BlueHat entries look really lame</description><link>http://www.secuobs.com/twitter/news/329296.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/329296.shtml</guid></item>
<item><title> RT @todb: Awlright, new #Metasploit weekly blog post is out, featuring Java Meterpreter encryption, MS98-004  and more http://tco/ </title><description>Secuobs.com : 2012-06-15 09:25:34 -  jduck1337 -  RT @todb: Awlright, new #Metasploit weekly blog post is out, featuring Java Meterpreter encryption, MS98-004  and more http://tco/ </description><link>http://www.secuobs.com/twitter/news/327647.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327647.shtml</guid></item>
<item><title> RT @hdmoore: Introducing Metasploitable 2: https://tco/U0shLG5a  a network security punching bag with documentation </title><description>Secuobs.com : 2012-06-14 01:37:07 - jduck1337 -  RT @hdmoore: Introducing Metasploitable 2: https://tco/U0shLG5a  a network security punching bag with documentation </description><link>http://www.secuobs.com/twitter/news/327365.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327365.shtml</guid></item>
<item><title> RT @_argp: The sysret kernel bug and the Linux fix from 2006 clearly demonstrate that Linux's policy of silently patching security bugs  </title><description>Secuobs.com : 2012-06-14 01:37:07 - jduck1337 -  RT @_argp: The sysret kernel bug and the Linux fix from 2006 clearly demonstrate that Linux's policy of silently patching security bugs  </description><link>http://www.secuobs.com/twitter/news/327364.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327364.shtml</guid></item>
<item><title> RT @DidierStevens: I did not expect to find around 500 executables on my main Windows 7 machine signed using MD5 Authenticode</title><description>Secuobs.com : 2012-06-14 01:37:07 - jduck1337 -  RT @DidierStevens: I did not expect to find around 500 executables on my main Windows 7 machine signed using MD5 Authenticode</description><link>http://www.secuobs.com/twitter/news/327363.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327363.shtml</guid></item>
<item><title> RT @dfullerto: Rafal Wojtczuk just released a vulnerability affecting XEN hypervisor / Intel CPU allowing guest to host escalation http: </title><description>Secuobs.com : 2012-06-13 08:29:47 - jduck1337 -  RT @dfullerto: Rafal Wojtczuk just released a vulnerability affecting XEN hypervisor / Intel CPU allowing guest to host escalation http: </description><link>http://www.secuobs.com/twitter/news/327124.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327124.shtml</guid></item>
<item><title> @collinrm yes, its disgusting ruby that generates asm and a gdb script Logs in memory similar to @ochsff blog Painful to extend</title><description>Secuobs.com : 2012-06-13 08:29:47 - jduck1337 -  @collinrm yes, its disgusting ruby that generates asm and a gdb script Logs in memory similar to @ochsff blog Painful to extend</description><link>http://www.secuobs.com/twitter/news/327123.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327123.shtml</guid></item>
<item><title> @ihackbanme I think mitm is a method for forcing people to visit sites, yes Heh</title><description>Secuobs.com : 2012-06-13 08:29:47 - jduck1337 -  @ihackbanme I think mitm is a method for forcing people to visit sites, yes Heh</description><link>http://www.secuobs.com/twitter/news/327122.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327122.shtml</guid></item>
<item><title> RT @scarybeasts: Yikes Active targeted 0-day attacks against MSXML, including Win7  Install hotfix right away: http://tco/oX9YdGBW</title><description>Secuobs.com : 2012-06-13 08:29:47 - jduck1337 -  RT @scarybeasts: Yikes Active targeted 0-day attacks against MSXML, including Win7  Install hotfix right away: http://tco/oX9YdGBW</description><link>http://www.secuobs.com/twitter/news/327121.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327121.shtml</guid></item>
<item><title> RT @Agarri_FR: There's probably a huge # of vectors for CVE-2012-1889 : IE, SQL Server, Office, SharePoint,  #MSXML http://tco/NrsAAp4b</title><description>Secuobs.com : 2012-06-13 08:29:47 - jduck1337 -  RT @Agarri_FR: There's probably a huge # of vectors for CVE-2012-1889 : IE, SQL Server, Office, SharePoint,  #MSXML http://tco/NrsAAp4b</description><link>http://www.secuobs.com/twitter/news/327120.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/327120.shtml</guid></item>
<item><title> @marshray it suffices as is, ubuntu 1004 and 1204 so far, but I think only x64</title><description>Secuobs.com : 2012-06-12 14:58:13 - jduck1337 -  @marshray it suffices as is, ubuntu 1004 and 1204 so far, but I think only x64</description><link>http://www.secuobs.com/twitter/news/326925.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/326925.shtml</guid></item>
<item><title> RT @jcran: Setting up a dev enviroment for metasploit in Netbeans IDE: http://tco/pMrHUOms #handy /via @manils @kernelsmith</title><description>Secuobs.com : 2012-06-12 14:58:13 - jduck1337 -  RT @jcran: Setting up a dev enviroment for metasploit in Netbeans IDE: http://tco/pMrHUOms #handy /via @manils @kernelsmith</description><link>http://www.secuobs.com/twitter/news/326924.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/326924.shtml</guid></item>
<item><title> RT @trailofbits: We have published our initial analysis of Flame's MD5 collision capabilities http://tco/rsvSp6ud</title><description>Secuobs.com : 2012-06-12 14:58:13 -  jduck1337 -  RT @trailofbits: We have published our initial analysis of Flame's MD5 collision capabilities http://tco/rsvSp6ud</description><link>http://www.secuobs.com/twitter/news/326923.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/326923.shtml</guid></item>
<item><title> RT @todb: Weekly Metasploit Update is out -- read up on fuzzing Citrix StreamProcessexe and PHP/Java hash tables here: http://tco/nODg7Lyg</title><description>Secuobs.com : 2012-06-09 03:24:39 - jduck1337 -  RT @todb: Weekly Metasploit Update is out -- read up on fuzzing Citrix StreamProcessexe and PHP/Java hash tables here: http://tco/nODg7Lyg</description><link>http://www.secuobs.com/twitter/news/326245.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/326245.shtml</guid></item>
<item><title> RT @aushack: Added 2 new @metasploit modules this week Old, but rfp's msadcpl '99 exploit Inc @hdmoore s sqlrdspl and ms02-065 #pen </title><description>Secuobs.com : 2012-06-09 03:24:39 - jduck1337 -  RT @aushack: Added 2 new @metasploit modules this week Old, but rfp's msadcpl '99 exploit Inc @hdmoore s sqlrdspl and ms02-065 #pen </description><link>http://www.secuobs.com/twitter/news/326244.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/326244.shtml</guid></item>
<item><title> RT @marshray: It's nice that CAs are phasing out signing with MD5, but it's far important that all client apps stop *accepting* MD5 sign </title><description>Secuobs.com : 2012-06-09 03:24:39 - jduck1337 -  RT @marshray: It's nice that CAs are phasing out signing with MD5, but it's far important that all client apps stop *accepting* MD5 sign </description><link>http://www.secuobs.com/twitter/news/326243.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/326243.shtml</guid></item>
<item><title> @tmanning @noahphex well, except for all the rootkits fighting each other, heh</title><description>Secuobs.com : 2012-06-09 03:24:39 -  jduck1337 -  @tmanning @noahphex well, except for all the rootkits fighting each other, heh</description><link>http://www.secuobs.com/twitter/news/326242.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/326242.shtml</guid></item>
<item><title> RT @craiu: Confirmed that Flame appears to do MitM attacks against Windows Update through Gadget module Malicious upd:  WuSetupVexe</title><description>Secuobs.com : 2012-06-05 15:57:48 - jduck1337 -  RT @craiu: Confirmed that Flame appears to do MitM attacks against Windows Update through Gadget module Malicious upd:  WuSetupVexe</description><link>http://www.secuobs.com/twitter/news/325454.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/325454.shtml</guid></item>
<item><title> RT @humperdink13: Accuvant LABS party * 7/25 wed blackhat 9pm-1am * pure@caesars if you thought last year was good, just wait paul </title><description>Secuobs.com : 2012-06-05 15:57:48 - jduck1337 -  RT @humperdink13: Accuvant LABS party * 7/25 wed blackhat 9pm-1am * pure@caesars if you thought last year was good, just wait paul </description><link>http://www.secuobs.com/twitter/news/325453.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/325453.shtml</guid></item>
<item><title> Is this Samsung bug bounty real or is someone scamming  Hosted on amazon in ireland Weird</title><description>Secuobs.com : 2012-06-03 12:14:01 - jduck1337 -  Is this Samsung bug bounty real or is someone scamming  Hosted on amazon in ireland Weird</description><link>http://www.secuobs.com/twitter/news/325162.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/325162.shtml</guid></item>
<item><title> RT @ONsec_lab: PostgreSQL all 0day vector presented by @d0znpp at this morning Error-based XXE in XMLPARSEDOCUMENT 'xml ' # </title><description>Secuobs.com : 2012-06-02 19:16:33 - jduck1337 -  RT @ONsec_lab: PostgreSQL all 0day vector presented by @d0znpp at this morning Error-based XXE in XMLPARSEDOCUMENT 'xml ' # </description><link>http://www.secuobs.com/twitter/news/325052.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/325052.shtml</guid></item>
<item><title> @miaubiz osx kernel is too ez to crash Just run a few quicktimes at once, boom Ati driver explosion</title><description>Secuobs.com : 2012-05-27 11:23:03 - jduck1337 -  @miaubiz osx kernel is too ez to crash Just run a few quicktimes at once, boom Ati driver explosion</description><link>http://www.secuobs.com/twitter/news/323719.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/323719.shtml</guid></item>
<item><title> RT @egyp7: need a gem in your Metasploit install that we don't ship /opt/metasploit*/diagnostic_shell, then gem install </title><description>Secuobs.com : 2012-05-25 06:50:15 - jduck1337 -  RT @egyp7: need a gem in your Metasploit install that we don't ship /opt/metasploit*/diagnostic_shell, then gem install </description><link>http://www.secuobs.com/twitter/news/323160.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/323160.shtml</guid></item>
<item><title> @quine @0xcharlie free 0day that way</title><description>Secuobs.com : 2012-05-25 06:50:15 - jduck1337 -  @quine @0xcharlie free 0day that way</description><link>http://www.secuobs.com/twitter/news/323159.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/323159.shtml</guid></item>
<item><title> RT @d_olex: Windows XP keyboard layouts pool corruption LPE 0day PoC, post-MS12-034 Code: http://tco/jC7bj4rM writeup RUS: http://t </title><description>Secuobs.com : 2012-05-24 16:53:12 - jduck1337 -  RT @d_olex: Windows XP keyboard layouts pool corruption LPE 0day PoC, post-MS12-034 Code: http://tco/jC7bj4rM writeup RUS: http://t </description><link>http://www.secuobs.com/twitter/news/322905.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/322905.shtml</guid></item>
<item><title> RT @_juan_vazquez_: Just added #Metasploit mod FlexNet License Server Manager lmgrd Buffer Overflow ZDI-12-052 Pastie: http://tco/Td6 </title><description>Secuobs.com : 2012-05-22 09:14:21 -  jduck1337 -  RT @_juan_vazquez_: Just added #Metasploit mod FlexNet License Server Manager lmgrd Buffer Overflow ZDI-12-052 Pastie: http://tco/Td6 </description><link>http://www.secuobs.com/twitter/news/322195.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/322195.shtml</guid></item>
<item><title> RT @mihi42: @mihi42 Or smaller #metasploit payload Win32 EXE+DLLs undetected by #AntiVirus with #srlua: http://tco/iQVUJPsz https://tc </title><description>Secuobs.com : 2012-05-21 18:54:27 - jduck1337 -  RT @mihi42: @mihi42 Or smaller #metasploit payload Win32 EXE+DLLs undetected by #AntiVirus with #srlua: http://tco/iQVUJPsz https://tc </description><link>http://www.secuobs.com/twitter/news/322015.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/322015.shtml</guid></item>
<item><title> RT @duosec: Nick from the Android Security Team writes in with an update about ICS ASLR: PIE and the linker randomization http://tco/F </title><description>Secuobs.com : 2012-05-21 18:54:27 -  jduck1337 -  RT @duosec: Nick from the Android Security Team writes in with an update about ICS ASLR: PIE and the linker randomization http://tco/F </description><link>http://www.secuobs.com/twitter/news/322014.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/322014.shtml</guid></item>
<item><title> RT @Bitweasil: GPUs in heaven: AMD GPU arch, nVidia mem controllers, nVidia driver team In hell: Intel GPU arch, AMD driver team</title><description>Secuobs.com : 2012-05-20 15:43:34 - jduck1337 -  RT @Bitweasil: GPUs in heaven: AMD GPU arch, nVidia mem controllers, nVidia driver team In hell: Intel GPU arch, AMD driver team</description><link>http://www.secuobs.com/twitter/news/321873.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/321873.shtml</guid></item>
<item><title> RT @_juan_vazquez_: Just added #metasploit module Squiggle 17 SVG Browser Java Code X, thx to @Agarri_FR, demo:http://tco/3CUo5OmL</title><description>Secuobs.com : 2012-05-18 10:12:42 - jduck1337 -  RT @_juan_vazquez_: Just added #metasploit module Squiggle 17 SVG Browser Java Code X, thx to @Agarri_FR, demo:http://tco/3CUo5OmL</description><link>http://www.secuobs.com/twitter/news/321440.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/321440.shtml</guid></item>
<item><title> RT @bonsaiviking: @egyp7 @carnal0wnage Even if you write good code, interpreter vulns Ruby: 36, Python: 30, Perl: 22, PHP: 328 http://t </title><description>Secuobs.com : 2012-05-18 10:12:42 - jduck1337 -  RT @bonsaiviking: @egyp7 @carnal0wnage Even if you write good code, interpreter vulns Ruby: 36, Python: 30, Perl: 22, PHP: 328 http://t </description><link>http://www.secuobs.com/twitter/news/321439.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/321439.shtml</guid></item>
<item><title> RT @_juan_vazquez_: Added #metasploit module weblogic apache plugin POST bof, demo http://tco/cELsKjYd, fingerprint via transfer-encodi </title><description>Secuobs.com : 2012-05-18 10:12:42 - jduck1337 -  RT @_juan_vazquez_: Added #metasploit module weblogic apache plugin POST bof, demo http://tco/cELsKjYd, fingerprint via transfer-encodi </description><link>http://www.secuobs.com/twitter/news/321438.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/321438.shtml</guid></item>
<item><title> Welp, Skype released an update including new libpng At least SOMEONE besides Chrome/Firefox give a shit  http://tco/AKe620NF</title><description>Secuobs.com : 2012-05-16 04:08:18 - jduck1337 -  Welp, Skype released an update including new libpng At least SOMEONE besides Chrome/Firefox give a shit  http://tco/AKe620NF</description><link>http://www.secuobs.com/twitter/news/320738.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/320738.shtml</guid></item>
<item><title> @infosecjerk @dwordj but cisco doesn't have code execution vulns Just denial of service</title><description>Secuobs.com : 2012-05-14 19:43:55 - jduck1337 -  @infosecjerk @dwordj but cisco doesn't have code execution vulns Just denial of service</description><link>http://www.secuobs.com/twitter/news/320383.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/320383.shtml</guid></item>
<item><title> RT @mtrancer: Firefox 8/9 AttributeChildRemoved Use-After-Free exploit for Metasploit CVE-2011-3659 - http://tco/WhdPgLux</title><description>Secuobs.com : 2012-05-14 19:43:55 - jduck1337 -  RT @mtrancer: Firefox 8/9 AttributeChildRemoved Use-After-Free exploit for Metasploit CVE-2011-3659 - http://tco/WhdPgLux</description><link>http://www.secuobs.com/twitter/news/320382.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/320382.shtml</guid></item>
<item><title> RT @calciu: From UXSS to code execution in Google Chrome, awesome work from Sergey Glazunov http://tco/QDLbORve</title><description>Secuobs.com : 2012-05-11 02:59:12 - jduck1337 -  RT @calciu: From UXSS to code execution in Google Chrome, awesome work from Sergey Glazunov http://tco/QDLbORve</description><link>http://www.secuobs.com/twitter/news/319636.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/319636.shtml</guid></item>
<item><title> RT @quequero: Analysis of a Microsoft Windows Kernel Win32ksys Local Denial of Service Vulnerability: http://tco/vcXmxnVG</title><description>Secuobs.com : 2012-05-07 17:17:55 -  jduck1337 -  RT @quequero: Analysis of a Microsoft Windows Kernel Win32ksys Local Denial of Service Vulnerability: http://tco/vcXmxnVG</description><link>http://www.secuobs.com/twitter/news/318635.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/318635.shtml</guid></item>
<item><title> RT @i0n1c: BTW: The Metasploit exploit for the PHP CGI RCE is incomplete It does not disable suhosin, safe_mode, open_basedir, disable_ </title><description>Secuobs.com : 2012-05-05 00:41:39 - jduck1337 -  RT @i0n1c: BTW: The Metasploit exploit for the PHP CGI RCE is incomplete It does not disable suhosin, safe_mode, open_basedir, disable_ </description><link>http://www.secuobs.com/twitter/news/318150.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/318150.shtml</guid></item>
<item><title> BTW all, Oracle's half-baked fix thing is nothing new  If anyone reversed the CPU patches, they'd get all kinds of 0days</title><description>Secuobs.com : 2012-05-04 08:31:05 - jduck1337 -  BTW all, Oracle's half-baked fix thing is nothing new  If anyone reversed the CPU patches, they'd get all kinds of 0days</description><link>http://www.secuobs.com/twitter/news/317947.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/317947.shtml</guid></item>
<item><title> RT @roeehay: Android SQLite Journal Information Disclosure CVE-2011-3901 http://tco/jMn7Fh98</title><description>Secuobs.com : 2012-05-04 08:31:05 - jduck1337 -  RT @roeehay: Android SQLite Journal Information Disclosure CVE-2011-3901 http://tco/jMn7Fh98</description><link>http://www.secuobs.com/twitter/news/317946.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/317946.shtml</guid></item>
<item><title> Anyone tried to trigger the fastcgi php-cgi apache_request_headers/getallheaders remote stack buffer overflow yet</title><description>Secuobs.com : 2012-05-04 08:31:05 -  jduck1337 -  Anyone tried to trigger the fastcgi php-cgi apache_request_headers/getallheaders remote stack buffer overflow yet</description><link>http://www.secuobs.com/twitter/news/317945.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/317945.shtml</guid></item>
<item><title> RT @deadbeefuk: @MDSecLabs have just released a whitepaper on iOS app assessment - check it out http://tco/k5tESXYK #iphone #ipad #ios  </title><description>Secuobs.com : 2012-05-03 01:16:08 - jduck1337 -  RT @deadbeefuk: @MDSecLabs have just released a whitepaper on iOS app assessment - check it out http://tco/k5tESXYK #iphone #ipad #ios  </description><link>http://www.secuobs.com/twitter/news/317477.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/317477.shtml</guid></item>
<item><title> @iseezeroday hrm Phrack already is a peer reviewed journal, right</title><description>Secuobs.com : 2012-05-02 10:31:34 - jduck1337 -  @iseezeroday hrm Phrack already is a peer reviewed journal, right</description><link>http://www.secuobs.com/twitter/news/317262.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/317262.shtml</guid></item>
<item><title> Google put up a great blog on their SDLC fuzzing initiative - Chromium Blog: Fuzzing for Security http://tco/mAX3TTIn</title><description>Secuobs.com : 2012-04-28 12:38:33 - jduck1337 -  Google put up a great blog on their SDLC fuzzing initiative - Chromium Blog: Fuzzing for Security http://tco/mAX3TTIn</description><link>http://www.secuobs.com/twitter/news/316352.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/316352.shtml</guid></item>
<item><title> @4Dgifts @briankrebs next java security update is in june</title><description>Secuobs.com : 2012-04-28 12:38:33 - jduck1337 -  @4Dgifts @briankrebs next java security update is in june</description><link>http://www.secuobs.com/twitter/news/316351.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/316351.shtml</guid></item>
<item><title> RT @Agarri_FR: Generic Metasploit modules for XSLT features in PHP and Java apps http://tco/OOjE2vtV Live demos at #HITB2012AMS </title><description>Secuobs.com : 2012-04-27 02:27:39 - jduck1337 -  RT @Agarri_FR: Generic Metasploit modules for XSLT features in PHP and Java apps http://tco/OOjE2vtV Live demos at #HITB2012AMS </description><link>http://www.secuobs.com/twitter/news/315902.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/315902.shtml</guid></item>
<item><title> @sergeybratus @JohnLaTwC agreed in particular, exploiting heap overflows has always been a game of weird machine design - more or less</title><description>Secuobs.com : 2012-04-27 02:27:39 - jduck1337 -  @sergeybratus @JohnLaTwC agreed in particular, exploiting heap overflows has always been a game of weird machine design - more or less</description><link>http://www.secuobs.com/twitter/news/315901.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/315901.shtml</guid></item>
<item><title> RT @jeremiahg: Interesting stat via @daveaitel: Avg time required to create an 0-day as of Jun, 2010:  451 hours Typical consulting eng </title><description>Secuobs.com : 2012-04-27 02:27:39 - jduck1337 -  RT @jeremiahg: Interesting stat via @daveaitel: Avg time required to create an 0-day as of Jun, 2010:  451 hours Typical consulting eng </description><link>http://www.secuobs.com/twitter/news/315900.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/315900.shtml</guid></item>
<item><title> RT @Android: US only Buy #GalaxyNexus unlocked on Google Play Use on any GSM network, incl T-Mobile  ATT Learn more: http://tco/ </title><description>Secuobs.com : 2012-04-25 05:42:10 - jduck1337 -  RT @Android: US only Buy #GalaxyNexus unlocked on Google Play Use on any GSM network, incl T-Mobile  ATT Learn more: http://tco/ </description><link>http://www.secuobs.com/twitter/news/315275.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/315275.shtml</guid></item>
<item><title> @iseezeroday is wondering about stack cookeis on OSX/iOS, anyone care to comment</title><description>Secuobs.com : 2012-04-24 12:11:19 - jduck1337 -  @iseezeroday is wondering about stack cookeis on OSX/iOS, anyone care to comment</description><link>http://www.secuobs.com/twitter/news/315018.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/315018.shtml</guid></item>
<item><title> RT @frama_c: It turns out that that other bug in a SSL implementation is already public: http://tco/9XdHGNgc</title><description>Secuobs.com : 2012-04-24 12:11:19 - jduck1337 -  RT @frama_c: It turns out that that other bug in a SSL implementation is already public: http://tco/9XdHGNgc</description><link>http://www.secuobs.com/twitter/news/315017.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/315017.shtml</guid></item>
<item><title> @lcamtuf interesting news $20k for finding/exploiting blind attacks against Google's SaaS stack</title><description>Secuobs.com : 2012-04-24 12:11:19 - jduck1337 -  @lcamtuf interesting news $20k for finding/exploiting blind attacks against Google's SaaS stack</description><link>http://www.secuobs.com/twitter/news/315016.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/315016.shtml</guid></item>
<item><title> RT @meder: you know how 10 years ago you could tell about the quality of C code by grepping for strcpy in Ruby you grep for 'send' to d </title><description>Secuobs.com : 2012-04-24 12:11:19 - jduck1337 -  RT @meder: you know how 10 years ago you could tell about the quality of C code by grepping for strcpy in Ruby you grep for 'send' to d </description><link>http://www.secuobs.com/twitter/news/315015.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/315015.shtml</guid></item>
<item><title> RT @dragosr: Oracle suing Google over a piece of code a Google employee contributed to Java http://tco/ill7yJiC</title><description>Secuobs.com : 2012-04-23 13:13:22 - jduck1337 -  RT @dragosr: Oracle suing Google over a piece of code a Google employee contributed to Java http://tco/ill7yJiC</description><link>http://www.secuobs.com/twitter/news/314759.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/314759.shtml</guid></item>
<item><title> RT @axtaxt: New blog post: 'Debugging Java VM's JITed code' http://tco/AzsLaGzJ #hotspot #jvm #bug #jit</title><description>Secuobs.com : 2012-04-23 13:13:22 - jduck1337 -  RT @axtaxt: New blog post: 'Debugging Java VM's JITed code' http://tco/AzsLaGzJ #hotspot #jvm #bug #jit</description><link>http://www.secuobs.com/twitter/news/314758.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/314758.shtml</guid></item>
<item><title> @i0n1c and all the 0days you put in the book sit undiscovered for years</title><description>Secuobs.com : 2012-04-21 21:28:00 -  jduck1337 -  @i0n1c and all the 0days you put in the book sit undiscovered for years</description><link>http://www.secuobs.com/twitter/news/314502.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/314502.shtml</guid></item>
<item><title> RT @taviso: Malformed DER parsed via the BIO interface can cause memory corruption in OpenSSL http://tco/Jlmc4txb</title><description>Secuobs.com : 2012-04-21 00:41:44 - jduck1337 -  RT @taviso: Malformed DER parsed via the BIO interface can cause memory corruption in OpenSSL http://tco/Jlmc4txb</description><link>http://www.secuobs.com/twitter/news/314308.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/314308.shtml</guid></item>
<item><title> @caseyjohnellis haven't seen any evidence here Subject is pretty dark Dev cycle for remote kernel bugs is long and painful</title><description>Secuobs.com : 2012-04-21 00:41:44 - jduck1337 -  @caseyjohnellis haven't seen any evidence here Subject is pretty dark Dev cycle for remote kernel bugs is long and painful</description><link>http://www.secuobs.com/twitter/news/314307.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/314307.shtml</guid></item>
<item><title> RT @pedramamini: OpenSSL 0day by @taviso http://tco/5BhuqlWM, found by @mdowd in 2006 https://tco/tP04JKy1 and SSH is spared again via </title><description>Secuobs.com : 2012-04-20 08:33:11 - jduck1337 -  RT @pedramamini: OpenSSL 0day by @taviso http://tco/5BhuqlWM, found by @mdowd in 2006 https://tco/tP04JKy1 and SSH is spared again via </description><link>http://www.secuobs.com/twitter/news/314092.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/314092.shtml</guid></item>
<item><title> RT @frama_c: By the way, we found a bug in an SSL implementation A different bug Just waiting for the fix to go through So there's an </title><description>Secuobs.com : 2012-04-20 08:33:11 - jduck1337 -  RT @frama_c: By the way, we found a bug in an SSL implementation A different bug Just waiting for the fix to go through So there's an </description><link>http://www.secuobs.com/twitter/news/314091.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/314091.shtml</guid></item>
<item><title> RT @dlitchfield: CVE-2012-0552 is a classic stack based buffer overflow that can be exploited when rebuilding a spatial index #oracle</title><description>Secuobs.com : 2012-04-19 11:22:32 - jduck1337 -  RT @dlitchfield: CVE-2012-0552 is a classic stack based buffer overflow that can be exploited when rebuilding a spatial index #oracle</description><link>http://www.secuobs.com/twitter/news/313749.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/313749.shtml</guid></item>
<item><title> RT @Android: Chrome for Android Beta update now available in Google Play for #Android 40 #ICS devices: http://tco/tZKGhoEy</title><description>Secuobs.com : 2012-04-18 15:57:51 - jduck1337 -  RT @Android: Chrome for Android Beta update now available in Google Play for #Android 40 #ICS devices: http://tco/tZKGhoEy</description><link>http://www.secuobs.com/twitter/news/313514.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/313514.shtml</guid></item>
<item><title> RT @iiamit: The #SexyDefense whitepaper is available here: http://tco/pQX0j4Pj the WiKi is here: http://tco/e4aFZKpZ #SourceBOS @SOURC </title><description>Secuobs.com : 2012-04-18 15:57:51 - jduck1337 -  RT @iiamit: The #SexyDefense whitepaper is available here: http://tco/pQX0j4Pj the WiKi is here: http://tco/e4aFZKpZ #SourceBOS @SOURC </description><link>http://www.secuobs.com/twitter/news/313513.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/313513.shtml</guid></item>
<item><title> @agl__ Hey, does openssl or anything else have tests to verify immunity to the bleichenbacher 2006 padding attack</title><description>Secuobs.com : 2012-04-17 20:31:32 - jduck1337 -  @agl__ Hey, does openssl or anything else have tests to verify immunity to the bleichenbacher 2006 padding attack</description><link>http://www.secuobs.com/twitter/news/313282.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/313282.shtml</guid></item>
<item><title> @attritionorg You didn't go back far enough for buffer overflows found in widely deployed RSA reference implementation</title><description>Secuobs.com : 2012-04-17 20:31:32 - jduck1337 -  @attritionorg You didn't go back far enough for buffer overflows found in widely deployed RSA reference implementation</description><link>http://www.secuobs.com/twitter/news/313281.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/313281.shtml</guid></item>
<item><title> RT @mattmight: In PHP and JavaScript, == is pronounced probably equals</title><description>Secuobs.com : 2012-04-17 20:31:32 - jduck1337 -  RT @mattmight: In PHP and JavaScript, == is pronounced probably equals</description><link>http://www.secuobs.com/twitter/news/313280.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/313280.shtml</guid></item>
<item><title> RT @ma1: Current NoScript-clones for Chrome are broken  Care about security Stick with Firefox http://tco/IFvTaV4G #ScriptNo #NotS </title><description>Secuobs.com : 2012-04-17 20:31:32 - jduck1337 -  RT @ma1: Current NoScript-clones for Chrome are broken  Care about security Stick with Firefox http://tco/IFvTaV4G #ScriptNo #NotS </description><link>http://www.secuobs.com/twitter/news/313279.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/313279.shtml</guid></item>
<item><title> RT @mkolsek: @jduck1337 Blackhat covers this in speaking agreement: if you show a tool, it has to be freely available</title><description>Secuobs.com : 2012-04-17 03:33:14 -  jduck1337 -  RT @mkolsek: @jduck1337 Blackhat covers this in speaking agreement: if you show a tool, it has to be freely available</description><link>http://www.secuobs.com/twitter/news/313063.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/313063.shtml</guid></item>
<item><title> RT @0vercl0k: Statically detect bugs in C Python extensions thanks to python GCC hacking ; the guy just did an awesome work: http://tco </title><description>Secuobs.com : 2012-04-16 02:54:15 - jduck1337 -  RT @0vercl0k: Statically detect bugs in C Python extensions thanks to python GCC hacking ; the guy just did an awesome work: http://tco </description><link>http://www.secuobs.com/twitter/news/312784.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/312784.shtml</guid></item>
<item><title> RT @roman_soft: I wrote some comments about CTFs in general and Defcon's in particular: http://tco/VocQKogv /cc @ddtek @thedarktangent</title><description>Secuobs.com : 2012-04-16 02:54:15 -  jduck1337 -  RT @roman_soft: I wrote some comments about CTFs in general and Defcon's in particular: http://tco/VocQKogv /cc @ddtek @thedarktangent</description><link>http://www.secuobs.com/twitter/news/312783.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/312783.shtml</guid></item>
<item><title> @4Dgifts sorry, to clarify: vs bundling one with known published bugs includes bugs fixed already in chrome/flash player standalone</title><description>Secuobs.com : 2012-04-13 05:56:28 - jduck1337 -  @4Dgifts sorry, to clarify: vs bundling one with known published bugs includes bugs fixed already in chrome/flash player standalone</description><link>http://www.secuobs.com/twitter/news/312102.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/312102.shtml</guid></item>
<item><title> @thegrugq I guess Adam Gowdiak is single-handedly bringing the Java bug values up - http://tco/eWNJjlxO http://tco/m3yFoKSV</title><description>Secuobs.com : 2012-04-13 05:56:28 - jduck1337 -  @thegrugq I guess Adam Gowdiak is single-handedly bringing the Java bug values up - http://tco/eWNJjlxO http://tco/m3yFoKSV</description><link>http://www.secuobs.com/twitter/news/312101.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/312101.shtml</guid></item>
<item><title> RT @net__ninja: you have 15 days to evaluate the product really means you have 15 days to find an 0day and get remote code exec</title><description>Secuobs.com : 2012-04-12 18:53:34 - jduck1337 -  RT @net__ninja: you have 15 days to evaluate the product really means you have 15 days to find an 0day and get remote code exec</description><link>http://www.secuobs.com/twitter/news/311807.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311807.shtml</guid></item>
<item><title> RT @bipartite: libo 01 released - a library for fast integer overflow detection http://tco/7KQvJ86i</title><description>Secuobs.com : 2012-04-12 18:53:34 - jduck1337 -  RT @bipartite: libo 01 released - a library for fast integer overflow detection http://tco/7KQvJ86i</description><link>http://www.secuobs.com/twitter/news/311806.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311806.shtml</guid></item>
<item><title> I'm thoroughly entertained that hundreds of thousands of Apple fans got compromised because of Apple's failure to patch Java</title><description>Secuobs.com : 2012-04-12 05:26:25 - jduck1337 -  I'm thoroughly entertained that hundreds of thousands of Apple fans got compromised because of Apple's failure to patch Java</description><link>http://www.secuobs.com/twitter/news/311614.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311614.shtml</guid></item>
<item><title> RT @jruderman: Ideas for preventing MITM theft of saved passwords: https://tco/GqwUlEVp</title><description>Secuobs.com : 2012-04-12 05:26:25 - jduck1337 -  RT @jruderman: Ideas for preventing MITM theft of saved passwords: https://tco/GqwUlEVp</description><link>http://www.secuobs.com/twitter/news/311613.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311613.shtml</guid></item>
<item><title> RT @RecxLtd: Blog: Recx SDL Binary Assurance, Microsoft BinScope and LookingGlass explaining the differences, what and how: http://tc </title><description>Secuobs.com : 2012-04-11 18:37:47 -  jduck1337 -  RT @RecxLtd: Blog: Recx SDL Binary Assurance, Microsoft BinScope and LookingGlass explaining the differences, what and how: http://tc </description><link>http://www.secuobs.com/twitter/news/311386.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311386.shtml</guid></item>
<item><title> RT @RecxLtd: Recx Blog: Recx SDL Binary Assurance for Windows goes 10 we detail what it does http://tco/qwKQiA8f #MSFTsdl #SDL #AppS </title><description>Secuobs.com : 2012-04-10 20:46:52 - jduck1337 -  RT @RecxLtd: Recx Blog: Recx SDL Binary Assurance for Windows goes 10 we detail what it does http://tco/qwKQiA8f #MSFTsdl #SDL #AppS </description><link>http://www.secuobs.com/twitter/news/311045.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311045.shtml</guid></item>
<item><title> RT @mylifeasageek: Freetype2 BDF integer overflow advisory http://tco/FBqhduT2 PoC at http://tco/zGGn01Em</title><description>Secuobs.com : 2012-04-10 20:46:52 - jduck1337 -  RT @mylifeasageek: Freetype2 BDF integer overflow advisory http://tco/FBqhduT2 PoC at http://tco/zGGn01Em</description><link>http://www.secuobs.com/twitter/news/311044.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311044.shtml</guid></item>
<item><title> @notsosecure I haven't given up I just don't have time to devote to it Remote kernel bugs are frustrating tho, maybe I should give up</title><description>Secuobs.com : 2012-04-10 20:46:52 - jduck1337 -  @notsosecure I haven't given up I just don't have time to devote to it Remote kernel bugs are frustrating tho, maybe I should give up</description><link>http://www.secuobs.com/twitter/news/311043.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311043.shtml</guid></item>
<item><title> RT @nelhage: Finally put up a demo I've been working on for a few months grep-as-you-type the entire Linux kernel source tree: http://t </title><description>Secuobs.com : 2012-04-10 20:46:52 - jduck1337 -  RT @nelhage: Finally put up a demo I've been working on for a few months grep-as-you-type the entire Linux kernel source tree: http://t </description><link>http://www.secuobs.com/twitter/news/311042.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311042.shtml</guid></item>
<item><title> RT @nahsra: know too much about the JVM familiar with WeakReferences can you profile written OQL to query heap dumps email me for a  </title><description>Secuobs.com : 2012-04-10 20:46:52 - jduck1337 -  RT @nahsra: know too much about the JVM familiar with WeakReferences can you profile written OQL to query heap dumps email me for a  </description><link>http://www.secuobs.com/twitter/news/311041.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/311041.shtml</guid></item>
<item><title> RT @4Dgifts: whoah a code-injecting denial of service vulnI thought only Cisco knew about themhttp://tco/HHM667I4</title><description>Secuobs.com : 2012-04-08 21:39:44 -  jduck1337 -  RT @4Dgifts: whoah a code-injecting denial of service vulnI thought only Cisco knew about themhttp://tco/HHM667I4</description><link>http://www.secuobs.com/twitter/news/310526.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/310526.shtml</guid></item>
<item><title> RT @wkandek: Apple releases fix for critical Java flaw, Patch now as attacks are in the wild - http://tco/DwmmhWAO</title><description>Secuobs.com : 2012-04-04 20:20:48 - jduck1337 -  RT @wkandek: Apple releases fix for critical Java flaw, Patch now as attacks are in the wild - http://tco/DwmmhWAO</description><link>http://www.secuobs.com/twitter/news/309343.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/309343.shtml</guid></item>
<item><title> RT @damienmiller: OpenSSH 60 will have sandbox support for @redpig's new seccomp syscall filter system on Linux: http://tco/Syv4dJfq yay</title><description>Secuobs.com : 2012-04-04 20:20:48 - jduck1337 -  RT @damienmiller: OpenSSH 60 will have sandbox support for @redpig's new seccomp syscall filter system on Linux: http://tco/Syv4dJfq yay</description><link>http://www.secuobs.com/twitter/news/309342.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/309342.shtml</guid></item>
<item><title> @janmuenther huh Java itself or customer code</title><description>Secuobs.com : 2012-04-03 23:07:33 - jduck1337 -  @janmuenther huh Java itself or customer code</description><link>http://www.secuobs.com/twitter/news/309061.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/309061.shtml</guid></item>
<item><title> RT @todb: The ripping tale of @_sinn3r and @_juan_vazquez_ 's new #Metasploit module for Java CVE-2012-0507 detailed here: http://tco/t </title><description>Secuobs.com : 2012-03-30 03:14:52 - jduck1337 -  RT @todb: The ripping tale of @_sinn3r and @_juan_vazquez_ 's new #Metasploit module for Java CVE-2012-0507 detailed here: http://tco/t </description><link>http://www.secuobs.com/twitter/news/307856.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/307856.shtml</guid></item>
<item><title> @net__ninja Very nice Planning metasploit module or  Was the infoleak mentioned in that video I think @nudehaberdasher tweeted it before</title><description>Secuobs.com : 2012-03-29 08:10:08 - jduck1337 -  @net__ninja Very nice Planning metasploit module or  Was the infoleak mentioned in that video I think @nudehaberdasher tweeted it before</description><link>http://www.secuobs.com/twitter/news/307619.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/307619.shtml</guid></item>
<item><title> RT @nicowaisman: Have you guys have been following the Heap Overflow for Humans they are amazing https://tco/5hOFZdJg</title><description>Secuobs.com : 2012-03-29 08:10:08 - jduck1337 -  RT @nicowaisman: Have you guys have been following the Heap Overflow for Humans they are amazing https://tco/5hOFZdJg</description><link>http://www.secuobs.com/twitter/news/307618.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/307618.shtml</guid></item>
<item><title> RT @todb: Are you ready kids #Metasploit is updated, now with a fancy new DNS-based payload smuggler from @corelanc0d3r http://tco/eeO </title><description>Secuobs.com : 2012-03-29 08:10:08 - jduck1337 -  RT @todb: Are you ready kids #Metasploit is updated, now with a fancy new DNS-based payload smuggler from @corelanc0d3r http://tco/eeO </description><link>http://www.secuobs.com/twitter/news/307617.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/307617.shtml</guid></item>
<item><title> RT @johnregehr: more details about integer overflow in C/C++ than you probably want to know final copy of our ICSE paper: http://tco </title><description>Secuobs.com : 2012-03-29 08:10:08 - jduck1337 -  RT @johnregehr: more details about integer overflow in C/C++ than you probably want to know final copy of our ICSE paper: http://tco </description><link>http://www.secuobs.com/twitter/news/307616.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/307616.shtml</guid></item>
<item><title> MOAR denial of service only cisco vulns Is this true</title><description>Secuobs.com : 2012-03-29 08:10:08 -  jduck1337 -  MOAR denial of service only cisco vulns Is this true</description><link>http://www.secuobs.com/twitter/news/307615.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/307615.shtml</guid></item>
<item><title> Erm, is the AATL Adobe Approved Trust List the list of people that can run arbitrary code when you open their PDF http://tco/Vp3WbMjB</title><description>Secuobs.com : 2012-03-28 13:51:23 - jduck1337 -  Erm, is the AATL Adobe Approved Trust List the list of people that can run arbitrary code when you open their PDF http://tco/Vp3WbMjB</description><link>http://www.secuobs.com/twitter/news/307303.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/307303.shtml</guid></item>
<item><title> @aris_ada @dwordj AFAIK this list is who can delegate the ability to sign documents to others IIRC signed pdf == can execute commands</title><description>Secuobs.com : 2012-03-28 13:51:23 - jduck1337 -  @aris_ada @dwordj AFAIK this list is who can delegate the ability to sign documents to others IIRC signed pdf == can execute commands</description><link>http://www.secuobs.com/twitter/news/307302.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/307302.shtml</guid></item>
<item><title> RT @joernchen: Wrote a simple Ruby on Rails scanner for accessible/protected attributes: https://tco/nSyFjJFj might help to find mass a </title><description>Secuobs.com : 2012-03-27 03:57:28 - jduck1337 -  RT @joernchen: Wrote a simple Ruby on Rails scanner for accessible/protected attributes: https://tco/nSyFjJFj might help to find mass a </description><link>http://www.secuobs.com/twitter/news/306820.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/306820.shtml</guid></item>
<item><title> RT @net__ninja: Heap Overflows for Humans 104 - https://tco/1LJ3tRl4</title><description>Secuobs.com : 2012-03-25 10:57:24 -  jduck1337 -  RT @net__ninja: Heap Overflows for Humans 104 - https://tco/1LJ3tRl4</description><link>http://www.secuobs.com/twitter/news/306470.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/306470.shtml</guid></item>
<item><title> @ochsff I managed to get eip control by using a simple test harness that prep'd the heap on linux Didn't test extensively</title><description>Secuobs.com : 2012-03-24 21:20:03 -  jduck1337 -  @ochsff I managed to get eip control by using a simple test harness that prep'd the heap on linux Didn't test extensively</description><link>http://www.secuobs.com/twitter/news/306354.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/306354.shtml</guid></item>
<item><title> RT @miaubiz: My slogan is written on a USB cable: data  power</title><description>Secuobs.com : 2012-03-24 03:38:19 - jduck1337 -  RT @miaubiz: My slogan is written on a USB cable: data  power</description><link>http://www.secuobs.com/twitter/news/306215.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/306215.shtml</guid></item>
<item><title> RT @xanda: CVE-2010-0248 MS10-002 Internet Explorer Object Handling Use After Free exploit added to Metasploit http://tco/XFBidzRn</title><description>Secuobs.com : 2012-03-24 03:38:19 - jduck1337 -  RT @xanda: CVE-2010-0248 MS10-002 Internet Explorer Object Handling Use After Free exploit added to Metasploit http://tco/XFBidzRn</description><link>http://www.secuobs.com/twitter/news/306214.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/306214.shtml</guid></item>
<item><title> RT @0xc0ffee: SAP wants you to almost disable ActiveX security probably not the best idea http://tco/X5sKgG2C</title><description>Secuobs.com : 2012-03-22 21:54:08 - jduck1337 -  RT @0xc0ffee: SAP wants you to almost disable ActiveX security probably not the best idea http://tco/X5sKgG2C</description><link>http://www.secuobs.com/twitter/news/305805.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/305805.shtml</guid></item>
<item><title> RT @todb: #Metasploit update is out, with the DoS PoC for RDP, @corelanc0d3r 's new http payload, and loads more: http://tco/0z6r6E8e</title><description>Secuobs.com : 2012-03-22 05:34:29 - jduck1337 -  RT @todb: #Metasploit update is out, with the DoS PoC for RDP, @corelanc0d3r 's new http payload, and loads more: http://tco/0z6r6E8e</description><link>http://www.secuobs.com/twitter/news/305546.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/305546.shtml</guid></item>
<item><title> RT @hdmoore: @CoreSecurity we may disagree on the terms commercial-grade and exploit, in metasploit-land a remote BSoD is neither</title><description>Secuobs.com : 2012-03-20 03:46:36 - jduck1337 -  RT @hdmoore: @CoreSecurity we may disagree on the terms commercial-grade and exploit, in metasploit-land a remote BSoD is neither</description><link>http://www.secuobs.com/twitter/news/304916.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304916.shtml</guid></item>
<item><title> RT @scarybeasts: Some random weekend observations on Linux ASLR: http://tco/XFQOHy3k</title><description>Secuobs.com : 2012-03-20 03:46:36 - jduck1337 -  RT @scarybeasts: Some random weekend observations on Linux ASLR: http://tco/XFQOHy3k</description><link>http://www.secuobs.com/twitter/news/304915.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304915.shtml</guid></item>
<item><title> RT @searchio: tip: windows kernel debugging on OSX, stick to VMware Fusion 3 and _don't_ upgrade to VMware Fusion 4, serial is broken in </title><description>Secuobs.com : 2012-03-18 09:59:26 - jduck1337 -  RT @searchio: tip: windows kernel debugging on OSX, stick to VMware Fusion 3 and _don't_ upgrade to VMware Fusion 4, serial is broken in </description><link>http://www.secuobs.com/twitter/news/304471.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304471.shtml</guid></item>
<item><title> RT @hdmoore: Need some new threads Get your geek on at the new Metasploit Store: http://tco/TrcvLUxq #metasploitswag RT to win a free </title><description>Secuobs.com : 2012-03-18 00:39:54 - jduck1337 -  RT @hdmoore: Need some new threads Get your geek on at the new Metasploit Store: http://tco/TrcvLUxq #metasploitswag RT to win a free </description><link>http://www.secuobs.com/twitter/news/304396.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304396.shtml</guid></item>
<item><title> RT @i0n1c: For those that want information about the exploits I am using All you get is: I am using 3 kernel bugs and 3 user land bugs</title><description>Secuobs.com : 2012-03-18 00:39:54 - jduck1337 -  RT @i0n1c: For those that want information about the exploits I am using All you get is: I am using 3 kernel bugs and 3 user land bugs</description><link>http://www.secuobs.com/twitter/news/304395.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304395.shtml</guid></item>
<item><title> @scarybeasts @i0n1c oh hell, I think its time to learn xss and sqli</title><description>Secuobs.com : 2012-03-18 00:39:54 - jduck1337 -  @scarybeasts @i0n1c oh hell, I think its time to learn xss and sqli</description><link>http://www.secuobs.com/twitter/news/304394.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304394.shtml</guid></item>
<item><title> RT @pod2g: @i0n1c Hey, that was fast Congrats for the 0day untether Awesomeness</title><description>Secuobs.com : 2012-03-17 15:32:21 -  jduck1337 -  RT @pod2g: @i0n1c Hey, that was fast Congrats for the 0day untether Awesomeness</description><link>http://www.secuobs.com/twitter/news/304314.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304314.shtml</guid></item>
<item><title> RT @aionescu: http://tco/fZwtmpzX DoS PoC for MS12-020 in C, based on the Ruby/Python code from jduck  others, based on the origin </title><description>Secuobs.com : 2012-03-17 06:20:38 - jduck1337 -  RT @aionescu: http://tco/fZwtmpzX DoS PoC for MS12-020 in C, based on the Ruby/Python code from jduck  others, based on the origin </description><link>http://www.secuobs.com/twitter/news/304208.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304208.shtml</guid></item>
<item><title> @scarybeasts yeah, nevermind that the fixes were in chrome's open source repo the whole time Right</title><description>Secuobs.com : 2012-03-17 06:20:38 -  jduck1337 -  @scarybeasts yeah, nevermind that the fixes were in chrome's open source repo the whole time Right</description><link>http://www.secuobs.com/twitter/news/304207.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304207.shtml</guid></item>
<item><title> RT @dlitchfield: Exploit writing like it's 2002 Oracle classic stack-based buffer overflow 0-day No cookie; no DEP; no ASLR Fish B </title><description>Secuobs.com : 2012-03-16 14:07:49 - jduck1337 -  RT @dlitchfield: Exploit writing like it's 2002 Oracle classic stack-based buffer overflow 0-day No cookie; no DEP; no ASLR Fish B </description><link>http://www.secuobs.com/twitter/news/304013.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304013.shtml</guid></item>
<item><title> RT @thezdi: 5 Samba remote pre-auth 0days reported yesterday, and today we receive an e-mail from the Samba team stating they have patch </title><description>Secuobs.com : 2012-03-16 14:07:49 - jduck1337 -  RT @thezdi: 5 Samba remote pre-auth 0days reported yesterday, and today we receive an e-mail from the Samba team stating they have patch </description><link>http://www.secuobs.com/twitter/news/304012.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304012.shtml</guid></item>
<item><title> RT @aaronportnoy: Peter @WTFuzz on our team wrote a nice blog post on how he exploited a public IE CVE from #Pwn2Own w/out heapspray:  </title><description>Secuobs.com : 2012-03-16 14:07:49 - jduck1337 -  RT @aaronportnoy: Peter @WTFuzz on our team wrote a nice blog post on how he exploited a public IE CVE from #Pwn2Own w/out heapspray:  </description><link>http://www.secuobs.com/twitter/news/304011.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/304011.shtml</guid></item>
<item><title> RT @dlitchfield: As it happens will also be talking about giving 20/20 vision to blind SQL vulns in the Oracle PL/SQL gateway #BlackHatEU</title><description>Secuobs.com : 2012-03-15 20:40:59 - jduck1337 -  RT @dlitchfield: As it happens will also be talking about giving 20/20 vision to blind SQL vulns in the Oracle PL/SQL gateway #BlackHatEU</description><link>http://www.secuobs.com/twitter/news/303847.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/303847.shtml</guid></item>
<item><title> If anyone is bored, come to #ms12-020 on freenode Live collaborative reverse engineering and exploit development </title><description>Secuobs.com : 2012-03-15 10:41:11 -  jduck1337 -  If anyone is bored, come to #ms12-020 on freenode Live collaborative reverse engineering and exploit development </description><link>http://www.secuobs.com/twitter/news/303702.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/303702.shtml</guid></item>
<item><title> RT @manicode: If you are on a trusted network that can push policy to your bowser then they can MITM all SSL with no browser warning  </title><description>Secuobs.com : 2012-03-15 02:08:40 - jduck1337 -  RT @manicode: If you are on a trusted network that can push policy to your bowser then they can MITM all SSL with no browser warning  </description><link>http://www.secuobs.com/twitter/news/303570.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/303570.shtml</guid></item>
<item><title> RT @treyford: RT @manicode:If UR on a trusted network that pushes policy to UR browser, they can MITM all SSL w/ no warning - @jjarmoc </title><description>Secuobs.com : 2012-03-15 02:08:40 - jduck1337 -  RT @treyford: RT @manicode:If UR on a trusted network that pushes policy to UR browser, they can MITM all SSL w/ no warning - @jjarmoc </description><link>http://www.secuobs.com/twitter/news/303569.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/303569.shtml</guid></item>
<item><title> RT @hdmoore: The bounty for a reliable CVE-2012-0002 Metasploit module was just upped by $1337 $1387 so far: http://tco/0cC7VFZn cc  </title><description>Secuobs.com : 2012-03-15 02:08:40 - jduck1337 -  RT @hdmoore: The bounty for a reliable CVE-2012-0002 Metasploit module was just upped by $1337 $1387 so far: http://tco/0cC7VFZn cc  </description><link>http://www.secuobs.com/twitter/news/303568.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/303568.shtml</guid></item>
<item><title> Need some new threads Get your geek on at the new Metasploit Store: http://tco/Svym2Rg2 #metasploitswag</title><description>Secuobs.com : 2012-03-14 01:13:07 - jduck1337 -  Need some new threads Get your geek on at the new Metasploit Store: http://tco/Svym2Rg2 #metasploitswag</description><link>http://www.secuobs.com/twitter/news/303096.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/303096.shtml</guid></item>
<item><title> RT @dveditz: Still haven't seen any details on the Firefox Pwn2Own bug  :-</title><description>Secuobs.com : 2012-03-13 02:30:12 - jduck1337 -  RT @dveditz: Still haven't seen any details on the Firefox Pwn2Own bug  :-</description><link>http://www.secuobs.com/twitter/news/302772.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/302772.shtml</guid></item>
<item><title> RT @cryptopathe: 14-year old Bleichenbacher attack still present in OpenSSL PKCS #7 code  http://tco/f2Dh6RuH</title><description>Secuobs.com : 2012-03-13 02:30:12 - jduck1337 -  RT @cryptopathe: 14-year old Bleichenbacher attack still present in OpenSSL PKCS #7 code  http://tco/f2Dh6RuH</description><link>http://www.secuobs.com/twitter/news/302771.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/302771.shtml</guid></item>
<item><title> @0x6D6172696F @bilcorry Not to be confused with an application sandbox eg Chrome, Office, Adobe Reader X</title><description>Secuobs.com : 2012-03-12 18:52:49 - jduck1337 -  @0x6D6172696F @bilcorry Not to be confused with an application sandbox eg Chrome, Office, Adobe Reader X</description><link>http://www.secuobs.com/twitter/news/302631.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/302631.shtml</guid></item>
<item><title> RT @mramsmeets: blog Integrating DMA attacks into Metasploit: http://tco/Uo7uSLJq /c @hdmoore #metasploit</title><description>Secuobs.com : 2012-03-11 13:52:43 - jduck1337 -  RT @mramsmeets: blog Integrating DMA attacks into Metasploit: http://tco/Uo7uSLJq /c @hdmoore #metasploit</description><link>http://www.secuobs.com/twitter/news/302334.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/302334.shtml</guid></item>
<item><title> RT @jeremiahg: Error Handling in Java webxml http://tco/TNousUZi  simple, yet important no need to help the bad guys</title><description>Secuobs.com : 2012-03-10 08:08:53 - jduck1337 -  RT @jeremiahg: Error Handling in Java webxml http://tco/TNousUZi  simple, yet important no need to help the bad guys</description><link>http://www.secuobs.com/twitter/news/302047.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/302047.shtml</guid></item>
<item><title> RT @ryanaraine: big takeawayfrom pwn2own: dep/aslr are irrelevant  sandboxes are no panacea either #findnewmitigations</title><description>Secuobs.com : 2012-03-10 08:08:53 - jduck1337 -  RT @ryanaraine: big takeawayfrom pwn2own: dep/aslr are irrelevant  sandboxes are no panacea either #findnewmitigations</description><link>http://www.secuobs.com/twitter/news/302046.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/302046.shtml</guid></item>
<item><title> RT @joernchen: Damn : Looks like the phrack proposed FORTIFY_SOURCE bypass for fmtstrings will die soon:http://tco/apsKfT5k</title><description>Secuobs.com : 2012-03-10 00:25:46 - jduck1337 -  RT @joernchen: Damn : Looks like the phrack proposed FORTIFY_SOURCE bypass for fmtstrings will die soon:http://tco/apsKfT5k</description><link>http://www.secuobs.com/twitter/news/301865.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/301865.shtml</guid></item>
<item><title> RT @KismetWireless: http://tco/esE2mwjB  Framer is doing some cool stuff w/ excessive amounts of wifi cards plugged into Kismet</title><description>Secuobs.com : 2012-03-09 13:34:09 - jduck1337 -  RT @KismetWireless: http://tco/esE2mwjB  Framer is doing some cool stuff w/ excessive amounts of wifi cards plugged into Kismet</description><link>http://www.secuobs.com/twitter/news/301674.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/301674.shtml</guid></item>
<item><title> @i0n1c not so weird maybe, its basically a full stack-based vm</title><description>Secuobs.com : 2012-03-09 03:45:25 - jduck1337 -  @i0n1c not so weird maybe, its basically a full stack-based vm</description><link>http://www.secuobs.com/twitter/news/301528.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/301528.shtml</guid></item>
<item><title> RT @mtrancer: Adobe Flash Player mp4 'cprt' Overflow exploit CVE-2012-0754 for Metasploit - https://tco/ZmzjIBc4</title><description>Secuobs.com : 2012-03-08 19:23:48 - jduck1337 -  RT @mtrancer: Adobe Flash Player mp4 'cprt' Overflow exploit CVE-2012-0754 for Metasploit - https://tco/ZmzjIBc4</description><link>http://www.secuobs.com/twitter/news/301358.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/301358.shtml</guid></item>
<item><title> RT @dave_rel1k: Blog Spam: Building AV-safe Reverse HTTP Shell with AES  Encryption + Proxy support - http://tco/9TZZwuQA</title><description>Secuobs.com : 2012-03-08 19:23:48 - jduck1337 -  RT @dave_rel1k: Blog Spam: Building AV-safe Reverse HTTP Shell with AES  Encryption + Proxy support - http://tco/9TZZwuQA</description><link>http://www.secuobs.com/twitter/news/301357.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/301357.shtml</guid></item>
<item><title> RT @julianor: adding github SSH keys wasn't always possible with wiki XSS</title><description>Secuobs.com : 2012-03-08 04:32:29 - jduck1337 -  RT @julianor: adding github SSH keys wasn't always possible with wiki XSS</description><link>http://www.secuobs.com/twitter/news/301109.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/301109.shtml</guid></item>
<item><title> RT @justinschuh: We have a full Chrome own at #Pwnium Looks like we will be awarding at the $60k level</title><description>Secuobs.com : 2012-03-08 04:32:29 - jduck1337 -  RT @justinschuh: We have a full Chrome own at #Pwnium Looks like we will be awarding at the $60k level</description><link>http://www.secuobs.com/twitter/news/301108.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/301108.shtml</guid></item>
<item><title> RT @scarybeasts: @jeremiahg @ryanaraine I browse using Chrome without Flash, Java, etc As do you I suspect : Remains to be seen if tha </title><description>Secuobs.com : 2012-03-08 04:32:29 - jduck1337 -  RT @scarybeasts: @jeremiahg @ryanaraine I browse using Chrome without Flash, Java, etc As do you I suspect : Remains to be seen if tha </description><link>http://www.secuobs.com/twitter/news/301107.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/301107.shtml</guid></item>
<item><title> @taviso hopefullyno one was, every month is month of java bugs, courtesy of oracle</title><description>Secuobs.com : 2012-03-06 20:48:40 - jduck1337 -  @taviso hopefullyno one was, every month is month of java bugs, courtesy of oracle</description><link>http://www.secuobs.com/twitter/news/300529.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/300529.shtml</guid></item>
<item><title> RT @HaifeiLi: Seems Chrome's making mistakes on its version http://tco/cBCVFuO2, and the Flash Player hasn't been updated yet http:/ </title><description>Secuobs.com : 2012-03-06 20:48:40 - jduck1337 -  RT @HaifeiLi: Seems Chrome's making mistakes on its version http://tco/cBCVFuO2, and the Flash Player hasn't been updated yet http:/ </description><link>http://www.secuobs.com/twitter/news/300528.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/300528.shtml</guid></item>
<item><title> RT @daeken: Simple JS version of Metasploit's pattern_*rb tools: http://tco/CqwXpIQ9</title><description>Secuobs.com : 2012-03-06 05:40:12 - jduck1337 -  RT @daeken: Simple JS version of Metasploit's pattern_*rb tools: http://tco/CqwXpIQ9</description><link>http://www.secuobs.com/twitter/news/300326.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/300326.shtml</guid></item>
<item><title> @taviso Interesting that Java creates such dirs Did you track down why or when this was introduced</title><description>Secuobs.com : 2012-03-06 05:40:12 - jduck1337 -  @taviso Interesting that Java creates such dirs Did you track down why or when this was introduced</description><link>http://www.secuobs.com/twitter/news/300325.shtml</link><guid isPermaLink="false">http://www.secuobs.com/twitter/news/300325.shtml</guid></item>
</channel>
</rss>
 
