Re: RES: Instant Messenger

From: RSnake (rsnake_at_shocking.com)
Date: 09/05/04

  • Next message: Chris Brenton: "Rogue activity methodology (was: Tool to find hidden web proxy server)"
    Date: Sun, 5 Sep 2004 12:49:49 -0700 (PDT)
    To: Alexandre Cezar <acezar@opencs.com.br>
    
    

            On the flip side I wrote a short paper on bypassing content filters by
    sending Trillian Pro messages over SSH. It's a tad off topic, but still
    relevant: http://www.shocking.com/~rsnake/trillianremote.html

    On Fri, 3 Sep 2004, Alexandre Cezar wrote:

    | Date: Fri, 3 Sep 2004 11:42:31 -0300
    | From: Alexandre Cezar <acezar@opencs.com.br>
    | To: Ido Rosen <ido@cs.uchicago.edu>,
    | "Murtland, Jerry" <MurtlandJ@Grangeinsurance.com>
    | Cc: pen-test@securityfocus.com, webappsec@securityfocus.com,
    | full-disclosure@lists.netsys.com
    | Subject: RES: Instant Messenger
    |
    | Take a look at http://www.akonix.com for securing IM communication and
    | I recommend this paper
    | www.giac.org/practical/GSEC/Frank_Reiss_GSEC.pdf
    |
    |
    | Regards
    | -----Mensagem original-----
    | De: Ido Rosen [mailto:ido@cs.uchicago.edu]
    | Enviada em: quinta-feira, 2 de setembro de 2004 23:17
    | Para: Murtland, Jerry
    | Cc: pen-test@securityfocus.com; webappsec@securityfocus.com;
    | full-disclosure@lists.netsys.com
    | Assunto: Re: Instant Messenger
    |
    | Jabber.
    |
    | On Thu, 2 Sep 2004 10:00:18 -0400
    | "Murtland, Jerry" <MurtlandJ@Grangeinsurance.com> wrote:
    |
    | > I am looking for white papers on enterprise Instant Messenger security
    | > concerns. It doesn't have to be, but anything on MSN IM would be
    | > helpful too. Does anyone have any good resources to share?
    | >
    | > Jerry J. Murtland
    | >
    | >
    | >
    |
    |
    | --
    | +-------------------------------------------------+
    | | Email : ido@ieee.org / ido@cs.uchicago.edu |
    | | Jabber : phaedo@jabber.org |
    | | PGP : http://www.dork.com/ido |
    | +-------------------------------------------------+
    |

    -R

    The information in this email is confidential and may be legally
    privileged. It is intended solely for the addressee. Access to
    this email by anyone else is unauthorized. If you are not the
    intended recipient, any disclosure, copying, distribution or any
    action taken or omitted to be taken in reliance on it is
    expressly prohibited and may be unlawful.

    ------------------------------------------------------------------------------
    Ethical Hacking at the InfoSec Institute. All of our class sizes are
    guaranteed to be 12 students or less to facilitate one-on-one interaction
    with one of our expert instructors. Check out our Advanced Hacking course,
    learn to write exploits and attack security infrastructure. Attend a course
    taught by an expert instructor with years of in-the-field pen testing
    experience in our state of the art hacking lab. Master the skills of an
    Ethical Hacker to better assess the security of your organization.

    http://www.infosecinstitute.com/courses/ethical_hacking_training.html
    -------------------------------------------------------------------------------


  • Next message: Chris Brenton: "Rogue activity methodology (was: Tool to find hidden web proxy server)"

    Relevant Pages

    • [Full-Disclosure] RE: RES: Instant Messenger
      ... I'm sure it would make other security staff ... Jerry Murtland ... Subject: RES: Instant Messenger ...
      (Full-Disclosure)
    • RES: Instant Messenger
      ... Para: Murtland, Jerry ... Check out our Advanced Hacking course, learn to write exploits and attack security infrastructure. ...
      (Pen-Test)
    • Re: write with cURL
      ... Part of Jerrys' security is not letting you on his server... ... them from setting the execute bit on a file. ... I'm still thinking that Jerry did not challenge you, it was the other way around. ...
      (alt.php)
    • [Full-Disclosure] Re: RES: Instant Messenger
      ... | Subject: RES: Instant Messenger ... | Para: Murtland, Jerry ... |> I am looking for white papers on enterprise Instant Messenger security ...
      (Full-Disclosure)
    • Re: Microsoft Security Bulletin MS03-040 - 828750
      ... Okay Phil you scored one point but you would have gotten a lot farther ... posting and not attacked the messenger. ... I honestly don't know when Jerry sleeps. ... >>All security bulletins are released by Microsoft with standard wording. ...
      (microsoft.public.security.virus)