Microsoft Security Bulletin (MS00-030) - Patch Available for "Malformed Extension Data in URL" Vulnerability. Microsoft has released a patch for a security vulnerability in Microsoft Internet Information Server. The vulnerability could be used to slow the performance of an affected server, or temporarily stop it altogether. Microsoft FAQ on this issue available here.
0666fde59bbaa3d9fe8958d4a3e68e0a73b4c29517505c79d5b9cee0a78141d3
Gnapster and possibly other napster clients do not check the integrity of filenames in download requests. Any filename that the client user has read access to may be downloaded. Also includes some service denial techniques.
5712de51a767ac94e1223643e7f8b24f6f5b3594014d86267156adb3b30b5091
Security Auditor's Research Assistant (SARA) is a security analysis tool based on the SATAN model. It is updated frequently to address the latest threats. Checks for common old holes, backdoors, trust relationships, default cgi, common logins.
dd029b6b8d61c2d6fca7cfa2dc6903da6be5b0f2cac146c0a5a2a5620aa8940b
Windows Security Update May 10 - In this issue: Aladdin eToken Allows Physical Access to Data, DMailWeb Buffer Overflow, DNewsWeb Buffer Overflow, Listserv Web Archives Buffer Overflow, News: New Virus Loves You, News: Microsoft Publishes Details of Kerberos Authorization Data, Software Prevents Receipt of Love Bug, Online Scanning Service Cleans Systems, Tip: Limit Buffer Size on IIS, and Writing Secure Code: Writing a Secure POP3 Server.
1a28e581ba2bcb95f16cb5e74bc2baa0c5068e20bbdc3e630f88a1426f13892b
SAINT is the Security Administrator's Integrated Network Tool. It gathers as much information about remote hosts and networks as possible by examining all network services and potential security flaws. The collected data can then be analyzed using a simple rules-based system (or via other included interfaces). In Exploratory Mode, SAINT will examine the avenues of trust and dependency and iterate further data collection runs over secondary hosts.
4d15a04df4cc55612833c627a1ea694d2d23ebe56b176c68bb44e450cc133969
Hotmail is vulnerable to yet another serious security problem involving javascript. Windows, MacOS, and Linux users are affected. Consequences include hotmail account takeover, redirecting a hotmail user to any site, or access to the users computer if combined with other known exploits.
b5c11b65292e58dd2677389be22affdd1c3df87cc7488c5d48a5d785938ef4f6
Exploit for the (patched) major security issue with networksolutions.com(easysteps.pl) which would have set up a bindshell if it had been run.
9341f14a0079af7d87506afc61d98b1ef1589d7eeb8b50a03d204c3b48807cbf