<br><br><div><span class="gmail_quote">On 10/14/07, <b class="gmail_sendername">pdp (architect)</b> <<a href="mailto:pdp.gnucitizen@googlemail.com">pdp.gnucitizen@googlemail.com</a>> wrote:</span><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
>> military grade exploits? :) dude, I am sorry man.. but you are living<br>>> in some kind of a dream world. get real,<br></blockquote><div><br> So you pick apart three words of the message and the rest is null? you seem to follow techniques of the great valdis [1] when trying to defend worthless things ( in this case your career).
<br> </div><br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">>> most of the military hacks<br>>> are as simple as bruteforcing the login prompt.. or trying something
<br>>> as simple as XSS.</blockquote><div><br> Stop reading yahoo news <br><br></div><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
>> the reason XSS is soo neat is because it bypasses all firewalls</blockquote><div> <br> It doesnt bypass "firewalls" it has nothing to do with them .. this is like saying you beat pax because you used sql injection to get cmd exec on a machine ( something the selinux team probably has in their presentations ).
<br> </div><br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">>> ... what?, your military grade exploit can do that? your<br>>> military grade exploit can attack only the things that are visible
<br>>> from outside. </blockquote><div><br> Or what about attacking the "outside" itself? Did you not see the core impact talk or were you too busy giving gadi a reach around by the pool? </div><br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
>> if you want to sink into the stuff then do web hacking cuz it just works. </blockquote><div><br> You mean "do web hacking because you do not need any skills to look good and automated tools do it all for you". No thanks ill pass
</div><br> <br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">>> different people do different things and are experienced in different disciplines.
</blockquote><div><br> To me this sounds like "i couldnt write an exploit for a strcpy bug so now I write xss code so i can still put hacker on my business card. <br></div><br><blockquote class="gmail_quote" style="border-left: 1px solid rgb(204, 204, 204); margin: 0pt 0pt 0pt 0.8ex; padding-left: 1ex;">
>> btw, this is your 3rd message on FD, right?</blockquote><div><br> I guess I should whore the list more and then people will listen to me? Is this the secret to why gadi evron is still allowed to post here?<br><br>
>> I am just in a mood for philosophical conversations today.<br><br>you should stay that way since you cant handle much else<br><br><br> [1] <a href="http://archives.neohapsis.com/archives/fulldisclosure/2007-05/0226.html">
http://archives.neohapsis.com/archives/fulldisclosure/2007-05/0226.html</a></div><br></div><br>