|
Colapse all |
Post message
RE: Abuse report email for CitiBank/CitiCards? 2004-01-13 Lance James (lance james bakbone com) www.securityfocus.com/infocus/1745 for a better and clear experience with Citibank folks and their responses. -----Original Message----- From: Nicholas Weaver [mailto:nweaver (at) CS.berkeley (dot) edu [email concealed]] Sent: Monday, January 12, 2004 11:07 AM To: winstrel Cc: bugtraq (at) securityfocus (dot) com [email concealed] Subject: Re: Abuse r [ more ] [ reply ] nCipher Advisory #8: payShield library may verify bad requests 2004-01-14 nCipher Support (technotifications us ncipher com) [RHSA-2004:006-01] Updated kdepim packages resolve security vulnerability 2004-01-14 bugzilla redhat com symlink vul for Antivir / Linux Version 2.0.9-9 (maybe lower) 2004-01-13 Rene (l0om excluded org) discovered and written: l0om <l0om (at) excluded (dot) org [email concealed]> date: 13.01.2004 risk: medium page: www.excluded.org symlink vul for Antivir / Linux Version 2.0.9-9 (maybe lower) antivir gets started on bootup and creats a tmp file (/tmp/.pid_antivir_$$ - where $$ is the process id). [ more ] [ reply ] PhpDig 1.6.x: remote command execution 2004-01-14 FraMe (frame hispalab com) Product: PhpDig 1.6.x Vendor: phpdig.net Author: FraMe ( frame at kernelpanik.org ) URL: http://www.kernelpanik.org CONTENTS 1. Overview 2. Description. 3. Details 4. Patches. 1. Overview. PhpDig is a http spider/search engine written in Php with a MySql database in backend. PhpDig builds a glos [ more ] [ reply ] SRT2004-01-9-1022 - Symantec LiveUpdate allows local users to become SYSTEM 2004-01-12 KF (dotslash snosoft com) RE: [Fwd: [TH-research] OT: Israeli Post Office break-in] 2004-01-13 John Airey rnib org uk > -----Original Message----- > From: Gadi Evron [mailto:ge (at) egotistical.reprehensible (dot) net [email concealed]] > Sent: 11 January 2004 04:07 > To: bugtraq (at) securityfocus (dot) com [email concealed] > Cc: full-disclosure (at) lists.netsys (dot) com [email concealed] > Subject: [Fwd: [TH-research] OT: Israeli Post Office break-in] > > > I thought this story might interest [ more ] [ reply ] [SECURITY] [DSA 423-1] New Linux 2.4.17 packages fix several problems (ia64) 2004-01-15 joey infodrom org (Martin Schulze) January 15 is Personal Firewall Day, help the cause 2004-01-15 tlarholm pivx com I just wanted to remind everybody that tomorrow is Personal Firewall Day. http://www.personalfirewallday.org/ The Personal Firewall Day is a campaign designed to raise awareness about the dangers we face without a personal firewall. Security experts such as yourself are encouraged to use the [ more ] [ reply ] CERT Advisory CA-2004-01 Multiple H.323 Message Vulnerabilities 2004-01-14 CERT Advisory (cert-advisory cert org) [slackware-security] INN security update (SSA:2004-014-02) 2004-01-15 Slackware Security Team (security slackware com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] INN security update (SSA:2004-014-02) INN (InterNetNews) is used to run a news (NNTP) server. New INN packages are available for Slackware 9.0, 9.1, and -current. These have been upgraded to inn-2.4.1 to fix a potentially exploi [ more ] [ reply ] SuSE linux 9.0 YaST config Skribt [exploit] 2004-01-13 Rene (l0om excluded org) Author: l0om <l0om (at) excluded (dot) org [email concealed]> Date: 12.01.2004 page: www.excluded.org SuSE 9.0 - YaST script SuSEconfig.gnome-filesystem There is a symlink problem in the SuSEconfig.gnome-filesystem scribt. a normal user can creat and overwrite every file on the system. This [ more ] [ reply ] [SECURITY] [DSA-422-1] multiple CVS improvements 2004-01-13 Wichert Akkerman (wichert wiggy net) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 - ------------------------------------------------------------------------ Debian Security Advisory DSA-422-1 security (at) debian (dot) org [email concealed] http://www.debian.org/security/ Wichert Akkerman January 13, 2004 - ------------- [ more ] [ reply ] FW: Abuse report email for CitiBank/CitiCards? 2004-01-12 Sullivan, Barbra A (barbra a sullivan citigroup com) (1 replies) All, To report such issues for Citibank or Citicards, please refer to the about email fraud link on www.citibank.com or www.citi.com. Regards, Barbra Sullivan Citigroup -----Original Message----- From: winstrel [mailto:winstrel (at) ewall (dot) org [email concealed]] Sent: Saturday, January 10, 2004 3:36 PM To: bugtraq@secu [ more ] [ reply ] Re: FW: Abuse report email for CitiBank/CitiCards? 2004-01-12 Nicholas Weaver (nweaver CS berkeley edu) [slackware-security] kdepim security update (SSA:2004-014-01) 2004-01-15 Slackware Security Team (security slackware com) -----BEGIN PGP SIGNED MESSAGE----- Hash: SHA1 [slackware-security] kdepim security update (SSA:2004-014-01) New kdepim packages are available for Slackware 9.0 and 9.1 to fix a security issue with .VCF file handling. For Slackware -current, a complete upgrade to kde-3.1.5 is available. Here a [ more ] [ reply ] MDKSA-2004:003 - Updated kdepim packages fix vulnerability 2004-01-15 Mandrake Linux Security Team (security linux-mandrake com) SUSE Security Announcement: Linux Kernel (SuSE-SA:2004:003) 2004-01-15 thomas suse de (Thomas Biege) DameWare Mini Remote Control < v3.73 remote exploit by kralor] 2004-01-10 Iván Rodriguez Almuiña (kralor coromputer net) Directory Traversal in Accipiter Direct Server 6.0 2004-01-09 Bassett, Mark (mbassett omaha com) - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - ~ Severity: High ~ Title: Accipiter Direct Server ~ Date: January 09, 2004 - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - - Synopsis ======== A security vulnerability has been found in Ac [ more ] [ reply ] Abuse report email for CitiBank/CitiCards? 2004-01-10 winstrel (winstrel ewall org) Anyone know valid email addresses for reporting potential abuse or fraud at to CitiBank.com/CitiCards.com? I'd like to forward some fraud emails (e.g. "Please go to this link and enter your card number and PIN that you use for ATM access...") for their information, but most of the usual suspects (a [ more ] [ reply ] PHP Manpage lookup directory transversal / file disclosing 2004-01-10 Cabezon Aurélien (aurelien cabezon isecurelabs com) Hi ppl, _Manpage Lookup_ is a PHP class that helps you to build a "manpage" frontend in php. It is powered by Andy (http://php.amnuts.com). The script _class.manpagelookup.php_ was vulnerable to a directory transversal bug (because of leaks is input validation) that could lead to disclose any read [ more ] [ reply ] [SECURITY] [DSA 420-1] New jitterbug packages fix arbitrary command execution 2004-01-12 joey infodrom org (Martin Schulze) |
|
Privacy Statement |
I wondered if anyone knew of a product security contact within Network
Associates, in particular for their McAfee line of products?
Up to this point I've tried:
security-alert (at) nai (dot) com [email concealed] (as described in bugtraq post from 2002)
Jim_Magdych (at) nai (dot) com [email concealed] (sender of above post)
sec_labs (at) nai (dot) com [email concealed]
[ more ] [ reply ]