Re: [Full-disclosure] Publishing exploit code - what is it good for

From: Erik Fichtner (emf_at_obfuscation.org)
Date: 06/30/05

  • Next message: Erick Mechler: "Re: [Full-disclosure] Publishing exploit code - what is it good for"
    Date: Thu, 30 Jun 2005 13:35:37 -0400
    To: Joachim Schipper <j.schipper@math.uu.nl>
    
    
    
    

    Joachim Schipper wrote:

    > This is doubly true if we're not talking about a dedicated pentester,
    > but about a sysadmin with a networking/security background who likes to
    > verify that the patches did, indeed, work.

    Likewise; a sysadmin that likes to verify that their other security
    management tools work properly: firewalls, IDS's, VA GUI's, ...

    ...especially when there isn't a patch yet.

    -- 
    Erik Fichtner; Unix Ronin
    "Mathematics is something best shared between consenting adults
    in the privacy of their own office" - Adam O'Donnell
    
    

    
    

    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.grok.org.uk/full-disclosure-charter.html
    Hosted and sponsored by Secunia - http://secunia.com/



  • Next message: Erick Mechler: "Re: [Full-disclosure] Publishing exploit code - what is it good for"

    Relevant Pages

    • Re: Simple Admin Questions using ADO
      ... > SO I am asking for help to Grant permissions and to verify that sysadmin ... > properly assigned to the login. ... Try this newsgroup too: microsoft.public.sqlserver.security ...
      (borland.public.delphi.database.ado)
    • Re: Global Temp Table permissions
      ... Perhaps the sysadmin account has an appropriate permissions on filesystem. ... Can you verify it? ... The SP creates a global temp table on the data and structure of an input ... but also doesn't create the GTT. ...
      (microsoft.public.sqlserver.security)
    • Re: Windows patch mgmt.
      ... > I haven't used Windws update Server, but my understanding was this did ... > not allow you to verify the patch was installed. ... It allows only for deployment of patches. ...
      (Security-Basics)
    • Patches not showing as applied, whats up w/this MS
      ... verify that all patches for a given system are installed (W2k Adv. ... What I'm running into is a few patches that I've applied that are not showing ... I've run hfnetchk and MBSA and I'm using Add/Remove Programs to ... MBSA is saying that I have not applied KB891861, ...
      (microsoft.public.windowsupdate)
    • Re: Weird font behaviour solaris 8
      ... I don't know why he only did it on one server, ... the sysadmin left the company but left us with a problem. ... no fonts visible in CDE when a menu is opened, ... First thing to do is get a list of patches that were applied. ...
      (comp.unix.solaris)