OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Full-disclosure] NuralStorm Webmail Multiple Vulnerabilities

Valdis.Kletnieksvt.edu
Date: Thu Jul 15 2010 - 08:16:43 CDT


On Thu, 15 Jul 2010 11:44:57 +0200, Pavel Kankovsky said:
> On Mon, 12 Jul 2010, musnt live wrote:
>
> > Performing security research and disclosure of projects over 8 years
> > old is stupid [...]
>
> If people spent more time studying mistakes made 8 years ago (or even
> more than 50 years ago (*)) they would not repeat them today as
> often as they do.
>
> (*) In-band signalling in telephone networks.

Feel free to elucidate a *feasible* way to have deployed out-of-band signaling
on the installed copper-pair base back then. Also, compare the *actual* costs
and losses due to phreakers snagging free service due to in-band signaling to
the eventual cost of upgrading every single central office to something that
supported out-of-band.

Maybe those bell-heads weren't so dumb...

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.10 (GNU/Linux)
Comment: Exmh version 2.5 07/13/2001

iD8DBQFMPwo7cC3lWbTT17ARAsGiAKDqRTCVyIuCXirz/jPF+gzLWTy/eACggyo5
OyD0MABjjCbb2Jkjhz/1pSo=
=O5Qg
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/