New User, Welcome!     Login

New Zealand

[CFP] Kiwicon 2k7 - Call For Papers

[-----------------------------------------------------------------]


After travelling the world to attend many excellent security conferences 
with our compatriots, we decided it was time to pull finger and organise 
one in Aotearoa, New Zealand.

This is the call for presenters for the inaugural Kiwicon.

[WTF?]


WizzRSS Firefox Extension - Privileged Code Injection

For more details regarding exploitation of Firefox
extensions, refer to our DEFCON 17 presentation at
http://security-assessment.com/files/presentations/liverani_freeman_abusing_firefox_extensions_defcon17.pdf.

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

ScribeFire Firefox Extension - Privileged Code Injection

For more details regarding exploitation of Firefox
extensions, refer to our DEFCON 17 presentation at
http://security-assessment.com/files/presentations/liverani_freeman_abusing_firefox_extensions_defcon17.pdf.

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Kiwicon IV: Our Worst CFP Yet

      ___ ___  __            __                        ___  ___ ___
     |   Y   )|__|.--.--.--.|__|.----..-----..-----.  |   ||   Y   |
     |.  1  / |  ||  |  |  ||  ||  __||  _  ||     |  |.  ||.  |   |
     |.  _  \ |__||________||__||____||_____||__|__|  |.  ||.  |   |
     |:  |   \                27-28 November, 2010AD  |:  ||:  1   |
     |::.| .  )              Wellington, New Zealand  |::.| \:.. ./
     `--- ---'                                        `---'  `---'

 Yes, by hoof or by boot, it is time to plan once again the journey to the
 idyllic palm-tree lined shores of New Zealand's sheep shearing capital -
 Te Kuiti - for the annual gathering of our ilk. See the mighty shears! Taste

CoolPreviews - Firefox Extension - Chrome Privileged Code Injection

For more details regarding exploitation of Firefox
extensions, refer to our DEFCON 17 presentation at

http://www.security-assessment.com/files/presentations/liverani_freeman_abusing_firefox_extensions_defcon17.pdf

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Security-Assessment.com Advisory: BroadWorks Call Detail Record Disclosure Vulnerability

+-----------------------------+
|About Security-Assessment.com|
+-----------------------------+

Security-Assessment.com is a New Zealand based world leader in web
application testing,
network security and penetration testing. Security-Assessment.com
services organisations
across New Zealand, Australia, Asia Pacific, the United States and the
United Kingdom.

ChemViewX v1.9.5 ActiveX Control Mutliple Stack Overflows

Discovered and advised to Hyleos in December 2009 by Paul <dot> Craig - Security-Assessment.com
This advisory is also available from our website:
http://www.security-assessment.com/files/advisories/2010-02-11_ChemviewX_Activex.pdf

Security-Assessment.com is a New Zealand based world leader in web application testing, network security
and penetration testing. Security-Assessment.com works with organisations across New Zealand, Australia,
Asia Pacific, the United States and the United Kingdom.


Security-Assessment.com WhitePaper/Addendum: Cross Context Scripting with Firefox & Exploiting Cross Context Scripting vulnerabilities in Firefox

+-----------------------------+
|About Security-Assessment.com|
+-----------------------------+

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Update Scanner - Firefox Extension - Chrome Privileged Code Injection

For more details regarding exploitation of Firefox
extensions, refer to our DEFCON 17 presentation at
http://www.security-assessment.com/files/presentations/liverani_freeman_abusing_firefox_extensions_defcon17.pdf

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom. 

Security-Assessment.com Advisory: Oracle JRE - java.net.URLConnection class - Same-of-Origin (SOP) Policy Bypass

+-----------------------------+
|About Security-Assessment.com|
+-----------------------------+

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Multiple Adobe Products - XML External Entity And XML Injection Vulnerabilities

+-----------------------------+
|About Security-Assessment.com|
+-----------------------------+

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Yoono Firefox Extension - Privileged Code Injection

For more details regarding exploitation of Firefox
extensions, refer to our DEFCON 17 presentation at
http://security-assessment.com/files/presentations/liverani_freeman_abusing_firefox_extensions_defcon17.pdf.

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

Feed Sidebar Firefox Extension - Privileged Code Injection

For more details regarding exploitation of Firefox
extensions, refer to our DEFCON 17 presentation at
http://security-assessment.com/files/presentations/liverani_freeman_abusing_firefox_extensions_defcon17.pdf.

Security-Assessment.com is a New Zealand based world
leader in web application testing, network security
and penetration testing. Security-Assessment.com
services organisations across New Zealand, Australia,
Asia Pacific, the United States and the United
Kingdom.

[MORNINGSTAR-2009-02] Multiple security issues in Cute News and UTF-8 Cute News

10. About Morning Star Security
----------------------------------------------------------------------------------------------
MorningStar Security is an IT security consulting firm in Christchurch, 
New Zealand.

The freshest blend of IT security news is available for your daily 
consumption at http://www.morningstarsecurity.com/news/



iKAT - Interactive Kiosk Attack Tool v3 : Defcon 18 Edition

Designed as a SaaS, iKAT features many methods of escaping out of a
browser jailed environment and gaining command execution.
iKAT is a website you visit from a Kiosk, its quick, free, and aims to please.
iKAT is solely developed by myself (Paul Craig) a Kiosk hacking
enthusiast from New Zealand.

Defcon 18 Edition:
---------------------
iKAT and Defcon seem to go hand in hand, and when the con is on
Kiosks get 'visited' by iKAT. Traffic to the iKAT website increased by

COMPENG 2010 - Extended Submission Deadline

* V. Piuri (Universit&agrave; degli Studi di Milano, Italy)
* D. Prattichizzo (Universit&agrave; degli Studi di Siena, Italy)
* E. H. Ruspini (European Centre for Soft Computing, Mieres, Spain)
* R. Sole (ICREA and Universidad Pompeu Fabra, Barcelona, Spain)
* A. Sachenko (Ternopil Academy of National Economy, Ternopil, Ukraine)
* G. Sen Gupta (Massey University, Palmerston North, New Zealand)
* S. Valverde (ICREA and Universidad Pompeu Fabra, Barcelona, Spain)

=== Treasurer ===

* R. Falciai (IFAC-CNR, Italy, and IEEE Italy Section, Treasurer)

RE: Country by Country ISA Computer Sets

> > that would block WAY more than I would want.
> [...]
> 
> In my professional life, I see frequent requests of this nature from
> customers in western/English-speaking countries. My immediate
> response is, "you *are* aware that Australia and New Zealand are
> part of APNIC, right?"

Yep- which is why I said "but that would block WAY more than I want." ;)

t

CfP: 16th ACM Conference on Computer and Communications Security (CCS) 2009

Jon Giffin (Georgia Institute of Tech., USA)
Virgil Gligor (Carnegie Mellon Univ., USA)
Eu-Jin Goh (Stanford University, USA)
Rachel Greenstadt (Drexel University)
Minaxi Gupta (Indiana University, USA)
Peter Guttman (U of Auckland, New Zealand)
Alex Halderman (Princeton University, USA)
Sotiris Ioannidis (ICS/FORTH, Greece)
Trent Jaeger (Penn State University, USA)
Farnam Jahanian (University of Michigan, USA)
Rob Johnson (Stony Brook University, USA)

Re: Country by Country ISA Computer Sets

> In my professional life, I see frequent requests of this nature from
> customers in western/English-speaking countries. My immediate
> response is, "you *are* aware that Australia and New Zealand are
> part of APNIC, right?"

http://ftp.apnic.net/stats/apnic/delegated-apnic-latest
http://ftp.apnic.net/stats/ripe-ncc/delegated-ripencc-latest

I've used the above lists to block only certain countries of the APNIC
with some degree of success.

Re: Country by Country ISA Computer Sets

> that would block WAY more than I would want.
[...]

In my professional life, I see frequent requests of this nature from
customers in western/English-speaking countries. My immediate
response is, "you *are* aware that Australia and New Zealand are
part of APNIC, right?"
-- 
{ IRL(Jeremy_Stanley); PGP(9E8DFF2E4F5995F8FEADDC5829ABF7441FB84657);
SMTP(fungi@yuggoth.org); IRC(fungi@irc.yuggoth.org#ccl); ICQ(114362511);
AIM(dreadazathoth); YAHOO(crawlingchaoslabs); FINGER(fungi@yuggoth.org);

DeepSec 2008 - Conference Schedule

‣ José Nazario ; Arbor Networks ; USA
‣ Kurt Grutzmacher ; Pacific Gas & Electric ; USA
‣ Luciano Bello ; CITEFA/Si6 , Debian Project ; Argentina
‣ Marc Schoenefeld ; University of Bamberg ; Germany
‣ Matt Jonkman ; Emerging Threats.net (formerly bleedingthreats.net) ; USA
‣ Morgan Marquis-Boire ; Security-Assessment.com ; New Zealand
‣ Neelay S. Shah ; Foundstone Inc., A Division of McAfee ; USA
‣ Paolo Perego ; Spike Reply srl, Owasp Orizon Project leader ; Italy
‣ Peter Panholzer ; SEC Consult Unternehmensberatung GmbH ; Austria
‣ Rafael Dominguez Vega ; MWR InfoSecurity ; UK
‣ Saumil Udayan Shah ; CEO, Net-Square ; India

[MORNINGSTAR-2009-01] Multiple security issues in Open Auto Classifieds version <= 1.5.9

10. About Morning Star Security
----------------------------------------------------------------------------------------------
MorningStar Security is an IT security consulting firm in Christchurch, 
New Zealand.

The freshest blend of IT security news is available for your daily 
consumption at http://www.morningstarsecurity.com/news/



Insomnia : ISVA-100730.1 - CMS Multiple SQL injection Vulnerabilities

 Description
_______________

EasyManage Content Management System is a modular system designed
by New Zealand company, Face Limited.

It contains two modules which may be easily exploited to carry out
SQL injection attacks.

_______________



Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!