OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Full-disclosure] informative...

From: Andrea Purificato - bunker (bunkerfastwebnet.it)
Date: Wed Aug 29 2007 - 12:41:27 CDT


On Wednesday 29 August 2007, Fabio Pietrosanti (naif) wrote:

> http://seclists.org/fulldisclosure/2007/Jul/0504.html
> comments?

Hi Fabio,

I fully agree with you, but i have less trouble than you speaking about this
type of vulnerability after reporting the XSS to the owner.
If nobody replies to me after reasonable time, I consider my work finished and
I feel free to talking about anything, in the spirit of full-disclosure.

If someone wants to public "0day" XSS without report it to the owner, it's not
my problem!

Regards,
--
Andrea "bunker" Purificato
+++++++++++[>++++++>+++++++++++++++++++++++++++++++++>++++
++++++<<<-]>.>++++++++++.>.<----------.>---------.<+++++++.

http://rawlab.mindcreations.com

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/