OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Subject: Re: Alert: Cart32 secret password backdoor (CISADV000427)
From: steve.banksSHELLGASDIRECT.CO.UK
Date: Thu Apr 27 2000 - 09:32:00 CDT


I think I'll add my 2p...

In principle I think the list should be full disclosure and I don't have a problem with Steve Manzuik publishing what he gets sent. What I think is irresponsible is that the level of detail in the original Cerberus advisory was so great that any 'script kiddie' could cut and paste them and cause a great deal of damage.

-Steve

** These are my opinions and are nothing to do with my employer...

_____________________________________________________________________
** TO UNSUBSCRIBE, send the command "UNSUBSCRIBE win2ksecadvice"
** FOR A WEEKLY DIGEST, send the command "SET win2ksecadvice DIGEST"
SEND ALL COMMANDS TO: listservlistserv.ntsecurity.net