OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [ISN] Backdoor Exposes Credit Cards

From: William Knowles (wkC4I.ORG)
Date: Tue May 02 2000 - 15:58:39 CDT


[Forwarded by: JJ Gray <nexuspatrol.i-way.co.uk>]

Hi there,

Hmmm... is this more security by obscurity ? Lets hope no-one reads
the BugTraq mailing lists and shouts "wemilo" in a loud voice ;-) You
may wish to inform the list of the fix by The L0pht to this issue :

Executable file: http://www.l0pht.com/advisories/cartfix.exe
Source code: http://www.l0pht.com/advisories/cartfixsrc.zip

Or the workaround mention by David at
http://www.cerberus-infosec.co.uk/advisories.shtml

Regards,
            JJ

Sed quis custodiet ipsos custodes ?

----- Original Message -----
From: "William Knowles" <wkC4I.ORG>
To: <ISNSECURITYFOCUS.COM>
Sent: Thursday, April 27, 2000 8:46 PM
Subject: [ISN] Backdoor Exposes Credit Cards

> http://www.wired.com/news/politics/0,1283,35954,00.html
>
> by Declan McCullagh
>
> 8:00 a.m. Apr. 27, 2000 PDT
>
> (Editor's note: This story has been modified since its initial
> posting. The original publication of this story included the password
> in question.)

[snip]

ISN is sponsored by SecurityFocus.com
---
To unsubscribe email LISTSERVSecurityFocus.com with a message body of
"SIGNOFF ISN".