RE: RE: Informing Companies about security vulnerabilities...

From: Levenglick, Jeff (JLevenglick@fhlbatl.com)
Date: Thu Oct 05 2006 - 16:08:06 EDT


You should read the email. Where did you see scanning?

He never mentioned looking for ip addresses, ports or services.
He did say -

"This probably won't sound like that big of a deal, but it still
bothered me so I figured I'd ask the list. I was teaching a Web
Application Security class last week and we were performing simple XXS,
SQL Injection, etc on the vulnerable web apps I use for class."

That is pen testing and/or hacking.

-----Original Message-----
From: listbounce@securityfocus.com [mailto:listbounce@securityfocus.com]
On Behalf Of none@none.com
Sent: Thursday, October 05, 2006 2:48 PM
To: pen-test@securityfocus.com
Subject: Re: RE: Informing Companies about security vulnerabilities...

since when did Scanning something turn into pen testing or hacking
it???/

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=7016
00000008bOW
------------------------------------------------------------------------



-----------------------------------------
This e-mail message is private and may contain confidential or
privileged information.

------------------------------------------------------------------------
This List Sponsored by: Cenzic

Need to secure your web apps?
Cenzic Hailstorm finds vulnerabilities fast.
Click the link to buy it, try it or download Hailstorm for FREE.
http://www.cenzic.com/products_services/download_hailstorm.php?camp=701600000008bOW
------------------------------------------------------------------------



This archive was generated by hypermail 2.1.7 : Sat Apr 12 2008 - 10:57:07 EDT