«
Expand/Collapse
112 items tagged "mail"
Related tags:
txt [+],
windows [+],
microsoft [+],
server [+],
html [+],
thunderbird [+],
remote [+],
red hat security [+],
mozilla thunderbird [+],
cyrus imapd [+],
and [+],
smtp [+],
outlook [+],
mail server [+],
integer overflow vulnerability [+],
sql injection [+],
security [+],
safer use [+],
php [+],
pam pam [+],
pam [+],
multi [+],
mini [+],
mhonarc [+],
mail directory [+],
mail conversion [+],
linux pam [+],
html mail [+],
env [+],
dashboard widget [+],
cross site scripting [+],
yahoo [+],
verification tool [+],
verification [+],
valid authentication [+],
tool [+],
theo de raadt [+],
testing [+],
sticky [+],
squirrelmail [+],
site [+],
scalable mail [+],
proventia [+],
privilege escalation vulnerability [+],
performance mail [+],
outlook express [+],
openbsd [+],
multiple [+],
mail security [+],
mail messages [+],
mail headers [+],
mail form [+],
mail delivery program [+],
local privilege escalation [+],
linux security [+],
ipsec [+],
information disclosure vulnerability [+],
information disclosure [+],
imap [+],
icewarp [+],
ibm [+],
html mail message [+],
forgery [+],
fetch [+],
external entity [+],
exim [+],
e mail [+],
delivery [+],
debian [+],
cross [+],
content [+],
coffeecup [+],
bugtraq [+],
backdoored [+],
authentication [+],
BackTrack [+],
webapps [+],
vlc [+],
vendor [+],
tutti [+],
thunderbird mail [+],
target [+],
shell [+],
rubygems [+],
quot [+],
package [+],
news [+],
mora tags [+],
mail client [+],
information [+],
hat europe [+],
hacks [+],
gmail [+],
form [+],
feature [+],
europe [+],
error [+],
dsa [+],
direct object [+],
day [+],
command execution [+],
client [+],
classifieds [+],
bt4 [+],
black hat [+],
Requests [+],
vulnerability [+],
xss [+],
wireless video transmitter [+],
wireless doorbell [+],
wire fraud [+],
windows phone [+],
video [+],
u mail [+],
tweak [+],
thomas renck [+],
tax [+],
sslstrip [+],
spread [+],
spoofing [+],
spear [+],
space [+],
solo [+],
snail mail [+],
snail [+],
smacks [+],
simple [+],
shell command [+],
server smtp [+],
sendmail [+],
send [+],
security advisory [+],
secunia [+],
sean [+],
rustock [+],
ruby [+],
rlo [+],
retired [+],
reindirizzamento [+],
race [+],
pycode [+],
pro v2 [+],
priority mail [+],
priority [+],
postal inspectors [+],
postal [+],
plane [+],
php pear [+],
phishing [+],
paper [+],
pagina di login [+],
own mail [+],
outlook express microsoft [+],
news international [+],
multiple file [+],
module [+],
mime [+],
microsoft outlook express [+],
mdvsa [+],
mail package [+],
mail notification [+],
mail box [+],
login [+],
junk mail [+],
junk [+],
javascript links [+],
international mail [+],
international [+],
integer overflow [+],
insert [+],
indicted [+],
inclusion [+],
imap connections [+],
icblogger [+],
home [+],
hackers [+],
hacker [+],
hack attack [+],
hack [+],
guardian [+],
growling [+],
google [+],
gathering [+],
file upload [+],
file [+],
feds [+],
fake mail [+],
fake [+],
e mail addresses [+],
e mail address [+],
drop [+],
doorbell [+],
dll [+],
disclosure [+],
directory traversal [+],
directory [+],
digital postage meters [+],
dei [+],
data thieves [+],
data [+],
daily mail [+],
daily [+],
cyber security alert [+],
cve [+],
corporate desktop [+],
conspiracy [+],
comunicazioni [+],
communicrypt [+],
comingchina [+],
com [+],
ciao a tutti [+],
che [+],
cerco [+],
botnet [+],
blames [+],
big [+],
auto insert [+],
auto [+],
attacker [+],
attack [+],
attachments [+],
arduino [+],
arbitrary code execution [+],
apple [+],
app [+],
advisory [+],
addresses [+],
address [+],
access point [+],
Supporto [+],
Software [+],
Newbie [+],
Generali [+],
Discussioni [+],
Angolo [+]
-
-
19:33
»
Packet Storm Security Advisories
Secunia Security Advisory - Some vulnerabilities have been reported in the Mail gem for Ruby, which can be exploited by malicious people to manipulate certain data and compromise a vulnerable system.
-
-
17:27
»
Packet Storm Security Advisories
Ubuntu Security Notice 1400-4 - USN-1400-3 fixed vulnerabilities in Thunderbird. The new Thunderbird version caused a regression in IMAP connections and mail filtering. This update fixes the problem. Soroush Dalili discovered that Firefox did not adequately protect against dropping JavaScript links onto a frame. Atte Kettunen discovered a use-after-free vulnerability in Firefox's handling of SVG animations. Various other issues were also addressed.
-
-
6:01
»
Hack a Day
[Thomas Renck] recently picked up a 1000mW wireless video transmitter that he ultimately planned to mount in an RC plane. Before he strapped it on a plane to potentially kiss it goodbye for good, he wanted to play with it a while to see what it was capable of. After a friend helped him determine [...]
-
-
13:43
»
Packet Storm Security Advisories
Debian Linux Security Advisory 2377-1 - It was discovered that cyrus-imapd, a highly scalable mail system designed for use in enterprise environments, is not properly parsing mail headers when a client makes use of the IMAP threading feature. As a result, a NULL pointer is dereferenced which crashes the daemon. An attacker can trigger this by sending a mail containing crafted reference headers and access the mail with a client that uses the server threading feature of IMAP.
-
13:43
»
Packet Storm Security Recent Files
Debian Linux Security Advisory 2377-1 - It was discovered that cyrus-imapd, a highly scalable mail system designed for use in enterprise environments, is not properly parsing mail headers when a client makes use of the IMAP threading feature. As a result, a NULL pointer is dereferenced which crashes the daemon. An attacker can trigger this by sending a mail containing crafted reference headers and access the mail with a client that uses the server threading feature of IMAP.
-
13:43
»
Packet Storm Security Misc. Files
Debian Linux Security Advisory 2377-1 - It was discovered that cyrus-imapd, a highly scalable mail system designed for use in enterprise environments, is not properly parsing mail headers when a client makes use of the IMAP threading feature. As a result, a NULL pointer is dereferenced which crashes the daemon. An attacker can trigger this by sending a mail containing crafted reference headers and access the mail with a client that uses the server threading feature of IMAP.
-
-
13:35
»
Packet Storm Security Advisories
Red Hat Security Advisory 2011-1508-01 - The cyrus-imapd packages contain a high-performance mail server with IMAP, POP3, NNTP, and Sieve support. An authentication bypass flaw was found in the cyrus-imapd NNTP server, nntpd. A remote user able to use the nntpd service could use this flaw to read or post newsgroup messages on an NNTP server configured to require user authentication, without providing valid authentication credentials. A NULL pointer dereference flaw was found in the cyrus-imapd IMAP server, imapd. A remote attacker could send a specially-crafted mail message to a victim that would possibly prevent them from accessing their mail normally, if they were using an IMAP client that relies on the server threading IMAP feature.
-
13:35
»
Packet Storm Security Recent Files
Red Hat Security Advisory 2011-1508-01 - The cyrus-imapd packages contain a high-performance mail server with IMAP, POP3, NNTP, and Sieve support. An authentication bypass flaw was found in the cyrus-imapd NNTP server, nntpd. A remote user able to use the nntpd service could use this flaw to read or post newsgroup messages on an NNTP server configured to require user authentication, without providing valid authentication credentials. A NULL pointer dereference flaw was found in the cyrus-imapd IMAP server, imapd. A remote attacker could send a specially-crafted mail message to a victim that would possibly prevent them from accessing their mail normally, if they were using an IMAP client that relies on the server threading IMAP feature.
-
13:35
»
Packet Storm Security Misc. Files
Red Hat Security Advisory 2011-1508-01 - The cyrus-imapd packages contain a high-performance mail server with IMAP, POP3, NNTP, and Sieve support. An authentication bypass flaw was found in the cyrus-imapd NNTP server, nntpd. A remote user able to use the nntpd service could use this flaw to read or post newsgroup messages on an NNTP server configured to require user authentication, without providing valid authentication credentials. A NULL pointer dereference flaw was found in the cyrus-imapd IMAP server, imapd. A remote attacker could send a specially-crafted mail message to a victim that would possibly prevent them from accessing their mail normally, if they were using an IMAP client that relies on the server threading IMAP feature.
-
-
16:56
»
Packet Storm Security Advisories
Red Hat Security Advisory 2011-1438-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. A cross-site scripting flaw was found in the way Thunderbird handled certain multibyte character sets. Malicious, remote content could cause Thunderbird to run JavaScript code with the permissions of different remote content. Note: This issue cannot be exploited by a specially-crafted HTML mail message as JavaScript is disabled by default for mail messages. It could be exploited another way in Thunderbird, for example, when viewing the full remote content of an RSS feed.
-
16:56
»
Packet Storm Security Recent Files
Red Hat Security Advisory 2011-1438-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. A cross-site scripting flaw was found in the way Thunderbird handled certain multibyte character sets. Malicious, remote content could cause Thunderbird to run JavaScript code with the permissions of different remote content. Note: This issue cannot be exploited by a specially-crafted HTML mail message as JavaScript is disabled by default for mail messages. It could be exploited another way in Thunderbird, for example, when viewing the full remote content of an RSS feed.
-
16:56
»
Packet Storm Security Misc. Files
Red Hat Security Advisory 2011-1438-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. A cross-site scripting flaw was found in the way Thunderbird handled certain multibyte character sets. Malicious, remote content could cause Thunderbird to run JavaScript code with the permissions of different remote content. Note: This issue cannot be exploited by a specially-crafted HTML mail message as JavaScript is disabled by default for mail messages. It could be exploited another way in Thunderbird, for example, when viewing the full remote content of an RSS feed.
-
-
14:32
»
Packet Storm Security Advisories
Red Hat Security Advisory 2011-1342-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. Several flaws were found in the processing of malformed HTML content. An HTML mail message containing malicious content could cause Thunderbird to crash or, potentially, execute arbitrary code with the privileges of the user running Thunderbird. A flaw was found in the way Thunderbird processed the "Enter" keypress event. A malicious HTML mail message could present a download dialog while the key is pressed, activating the default "Open" action. A remote attacker could exploit this vulnerability by causing the mail client to open malicious web content.
-
14:32
»
Packet Storm Security Recent Files
Red Hat Security Advisory 2011-1342-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. Several flaws were found in the processing of malformed HTML content. An HTML mail message containing malicious content could cause Thunderbird to crash or, potentially, execute arbitrary code with the privileges of the user running Thunderbird. A flaw was found in the way Thunderbird processed the "Enter" keypress event. A malicious HTML mail message could present a download dialog while the key is pressed, activating the default "Open" action. A remote attacker could exploit this vulnerability by causing the mail client to open malicious web content.
-
14:32
»
Packet Storm Security Misc. Files
Red Hat Security Advisory 2011-1342-01 - Mozilla Thunderbird is a standalone mail and newsgroup client. Several flaws were found in the processing of malformed HTML content. An HTML mail message containing malicious content could cause Thunderbird to crash or, potentially, execute arbitrary code with the privileges of the user running Thunderbird. A flaw was found in the way Thunderbird processed the "Enter" keypress event. A malicious HTML mail message could present a download dialog while the key is pressed, activating the default "Open" action. A remote attacker could exploit this vulnerability by causing the mail client to open malicious web content.
-
-
12:22
»
Packet Storm Security Exploits
IceWarp Mail Server versions 10.3.2 and below suffer from XML external entity injection and PHP information disclosure vulnerabilities.
-
-
10:30
»
Hack a Day
[Sean] was screwing around online looking for nothing in particular when he came across a mailbox hacked to notify the homeowner when the mail had been delivered. Since his mail is delivered via a slot in the door, he had no use for the hack as is, but something similar soon came to mind. His [...]
-
-
9:00
»
Hack a Day
[Mime] lives on one of the upper levels of an apartment complex. The mailboxes, being located at the ground floor can be somewhat inconvenient to check regularly. [Mime] decided to rig up a device to let him know when his mailbox had been accessed. He started with a wireless doorbell, thinking he could use the [...]
-
-
14:24
»
Packet Storm Security Advisories
Theo de Raadt has received a mail stating that the IPSEC stack in OpenBSD may have been backdoored since the year 2000 thanks to the FBI.
-
-
0:00
»
SecDocs
Tags:
postal Event:
PhreakNIC 11 Abstract: A review of the USPS entrails explained with strange things sent through the mail. What is the heaviest thing that you can send in a flat rate box? What happens if you mail a sphere? How do digital postage meters work? How modern automation allows you to send a letter 3000 miles for only 41 cents and what security vulnerabilities might exist in that infrastructure. How to postmark your own mail, how the new "PLANET" barcode will track all mail in the future. 100% legal, but sure to make the mailman wonder. Postal inspectors welcome.
-
-
12:19
»
SecuriTeam
An Insecure Direct Object Reference vulnerability was discovered in IBM Proventia Mail Security System.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
16:59
»
SecuriTeam
An integer overflow vulnerability was discovered in Microsoft Windows Outlook Express and Windows Mail.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
13:57
»
SecuriTeam
An integer overflow vulnerability was discovered in Microsoft Windows Outlook Express and Windows Mail.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
12:56
»
SecuriTeam
An integer overflow vulnerability was discovered in Microsoft Windows Outlook Express and Windows Mail.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
17:12
»
SecuriTeam
Deliver, a mail delivery program installed suid root as /usr/bin/deliver, is vulnerable to several race conditions that can be exploited by a local attacker using symbolic links.
-
Make your website safer. Use external penetration testing service. First report ready in one hour!
-
-
20:34
»
Packet Storm Security Advisories
Technical Cyber Security Alert 2010-131A - Microsoft has released updates to address vulnerabilities in Microsoft Outlook Express, Microsoft Windows Mail, Microsoft Windows Live Mail, Microsoft Office, and Microsoft Visual Basic for Applications.
-
-
21:00
»
Packet Storm Security Recent Files
Debian Linux Security Advisory 2025-1 - Several remote vulnerabilities have been discovered in the Icedove mail client, an unbranded version of the Thunderbird mail client.
-
21:00
»
Packet Storm Security Advisories
Debian Linux Security Advisory 2025-1 - Several remote vulnerabilities have been discovered in the Icedove mail client, an unbranded version of the Thunderbird mail client.
-
-
10:07
»
remote-exploit & backtrack
Salve a tutti... io cercavo una guida o qualcuno che mi potesse da un dritta per il mio problema.
Io sto cercando di riprodurre questo sistema: un Fake Access point che sniffa da un'ignara vittima delle comunicazioni via mail.
Fino a qui con BT4 e ettercap sono riuscito a riprodurre le mie intenzioni.
Il problema dove mi sono bloccato è il reindirizzamento della mail intercettata e un'eventuale modifica del testo.
Qualcuno saprebbe dirmi quale tool è in grado di fare questo? e se esite qualche guida in merito?
Grazie a tutti
Ciao
-
-
8:44
»
remote-exploit & backtrack
Hello experts, I'm using BT4 in my usb for portable purpose.
On the run,, i would like to view movies.
So, i encouraged to install VLC
apt-get vlc
But, i find error, while unpacking deb.
Could you tell me,
1.after typing the command "apt-get vlc"
were the downloaded items get stored.
2.How to overcome the error.
mail me if you have more details share.
with regards,
Nirmal jose.
nirmaljose1309@gmail.com:rolleyes::rolleyes:
-
8:44
»
remote-exploit & backtrack
Hello experts, I'm using BT4 in my usb for portable purpose.
On the run,, i would like to view movies.
So, i encouraged to install VLC
apt-get vlc
But, i find error, while unpacking deb.
Could you tell me,
1.after typing the command "apt-get vlc"
were the downloaded items get stored.
2.How to overcome the error.
mail me if you have more details share.
with regards,
Nirmal jose.
nirmaljose1309@gmail.com:rolleyes::rolleyes:
-
7:19
»
remote-exploit & backtrack
Inizio salutando tutti visto che nella mail inviatami subito dopo la conferma della registrazione mi è stato scritto che posso postare solo qui.
Aspetterò i tre giorni prima di poter fare qualche domanda, ho già cercato nel sito ma non ho trovato ciò che desideravo...ora cerco meglio nel forum, anche quello internazionale.
Detto ciò ho scoperto la backtrack da poco (mese scorso) tuttavia mi sono deciso a utilizzarla/installarla solo questa settimana perchè stavo finendo di testare fedora 12 :p
Mmmmmm bhè non so che altro dire :D
-
-
0:00
»
Packet Storm Security Advisories
Mandriva Linux Security Advisory 2010-025 - Multiple vulnerabilities were discovered and corrected in php-pear. Argument injection vulnerability in the sendmail implementation of the Mail::Send method (Mail/sendmail.php) in the Mail package 1.1.14 f for PEAR allows remote attackers to read and write arbitrary files via a crafted parameter, and possibly other parameters, a different vulnerability than CVE-2009-4023. Packages for 2008.0 are provided for Corporate Desktop 2008.0 customers. The updated packages have been patched to correct these issues.
-
-
6:49
»
remote-exploit & backtrack
Ciao a tutti sto testando su una rete interna la nuova release bt4.
in particolare sto testando il software sslstrip.
Su mail come libero registra correttamente utente e password e mi reinderizza alla pagina dovuta, su mail come gmail oppure una mia mail interna che usa https. registra utente e password inseriti ma mi rimanda alla pagina di login, qualcuno può aiutarmi?
Grazie