<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: ETA is Leaking, drops a few docs</title>
	<atom:link href="http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/</link>
	<description></description>
	<lastBuildDate>Thu, 05 Jan 2012 11:44:23 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
	<item>
		<title>By: Vap0r</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-769</link>
		<dc:creator>Vap0r</dc:creator>
		<pubDate>Tue, 20 Oct 2009 04:20:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-769</guid>
		<description>Yeah, I don&#039;t have a beef with you either. (ETA members can quote me on that.) Anyways, I would probably post it on securityfocus.com (my preference of security website). But I want to experiment with images made by php that include XSS holes first, that would be cool. Meh, whatever, I still feel you shouldn&#039;t be &quot;lurking&quot; the forums. I mean, honestly, you are a titled security expert, drop some input into some of the threads. I&#039;m admin, if someone flames you for no reason, I&#039;ll delete the post, but seriously, at least be active, please.</description>
		<content:encoded><![CDATA[<p>Yeah, I don&#8217;t have a beef with you either. (ETA members can quote me on that.) Anyways, I would probably post it on securityfocus.com (my preference of security website). But I want to experiment with images made by php that include XSS holes first, that would be cool. Meh, whatever, I still feel you shouldn&#8217;t be &#8220;lurking&#8221; the forums. I mean, honestly, you are a titled security expert, drop some input into some of the threads. I&#8217;m admin, if someone flames you for no reason, I&#8217;ll delete the post, but seriously, at least be active, please.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wesley McGrew</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-768</link>
		<dc:creator>Wesley McGrew</dc:creator>
		<pubDate>Mon, 19 Oct 2009 16:07:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-768</guid>
		<description>Also, just a heads up: I&#039;ll approve pretty much anything you want to post as a comment through the moderation queue, but the last one went into the Spam queue for whatever reason.

I&#039;ll keep a close eye on the Spam queue too, but if you post something and a lot of time goes by without it showing up, It may be because I overlooked and cleared it.  Send me an email and I&#039;ll straighten it out.</description>
		<content:encoded><![CDATA[<p>Also, just a heads up: I&#8217;ll approve pretty much anything you want to post as a comment through the moderation queue, but the last one went into the Spam queue for whatever reason.</p>
<p>I&#8217;ll keep a close eye on the Spam queue too, but if you post something and a lot of time goes by without it showing up, It may be because I overlooked and cleared it.  Send me an email and I&#8217;ll straighten it out.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wesley McGrew</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-767</link>
		<dc:creator>Wesley McGrew</dc:creator>
		<pubDate>Mon, 19 Oct 2009 16:01:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-767</guid>
		<description>The 0-day might be interesting, I&#039;ll give you that.  Post it to milw0rm and/or full-d, get the credit you deserve for it, and enjoy it.  I agree that&#039;s what hacking&#039;s all about.

I think we&#039;re speaking at cross-purposes here, but to straighten it out: We both agree that the information you found isn&#039;t really that interesting no matter how you found it, but the exploit itself could be.  Is that fair?

I honestly don&#039;t have a beef with you, or what you&#039;ve done (otherwise I wouldn&#039;t have mirrored it on my own site).  It&#039;s just interesting to point it out in context, for the folks who follow this site to enjoy and have a laugh at.</description>
		<content:encoded><![CDATA[<p>The 0-day might be interesting, I&#8217;ll give you that.  Post it to milw0rm and/or full-d, get the credit you deserve for it, and enjoy it.  I agree that&#8217;s what hacking&#8217;s all about.</p>
<p>I think we&#8217;re speaking at cross-purposes here, but to straighten it out: We both agree that the information you found isn&#8217;t really that interesting no matter how you found it, but the exploit itself could be.  Is that fair?</p>
<p>I honestly don&#8217;t have a beef with you, or what you&#8217;ve done (otherwise I wouldn&#8217;t have mirrored it on my own site).  It&#8217;s just interesting to point it out in context, for the folks who follow this site to enjoy and have a laugh at.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Vap0r</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-766</link>
		<dc:creator>Vap0r</dc:creator>
		<pubDate>Mon, 19 Oct 2009 14:54:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-766</guid>
		<description>Since when in the security community was finding an 0-day not a big deal? I was merely stating that while some of the posters dropped stupid pipl.com and google.com searches, even those that were poorly done. I used an interesting 0-day, which, really, is what hacking is all about. The information is not that interesting, the method, is. Especially if it is considered the innovative php that could be devised to exploit this hole.</description>
		<content:encoded><![CDATA[<p>Since when in the security community was finding an 0-day not a big deal? I was merely stating that while some of the posters dropped stupid pipl.com and google.com searches, even those that were poorly done. I used an interesting 0-day, which, really, is what hacking is all about. The information is not that interesting, the method, is. Especially if it is considered the innovative php that could be devised to exploit this hole.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wesley McGrew</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-765</link>
		<dc:creator>Wesley McGrew</dc:creator>
		<pubDate>Mon, 19 Oct 2009 12:23:37 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-765</guid>
		<description>You may have found my IP address and User Agent by some zero-day exploit in their forum, but what I&#039;m saying is that it&#039;s nothing that I have tried to hide.  That&#039;s the same information that gets provided by the browser to any of hundreds of sites I visit in a day.  It&#039;s sitting in logs for any webmaster bright enough to read them, and probably for some sites, publicly indexed in Google in folks&#039; aw-stats.

I know that finding my IP and UA wasn&#039;t your only reason for hacking the eoeta forums, but here you&#039;re acting like you deserve props for finding them just because you did it a &quot;harder&quot; way.  If you want a cookie for that, you&#039;ll have to go elsewhere.</description>
		<content:encoded><![CDATA[<p>You may have found my IP address and User Agent by some zero-day exploit in their forum, but what I&#8217;m saying is that it&#8217;s nothing that I have tried to hide.  That&#8217;s the same information that gets provided by the browser to any of hundreds of sites I visit in a day.  It&#8217;s sitting in logs for any webmaster bright enough to read them, and probably for some sites, publicly indexed in Google in folks&#8217; aw-stats.</p>
<p>I know that finding my IP and UA wasn&#8217;t your only reason for hacking the eoeta forums, but here you&#8217;re acting like you deserve props for finding them just because you did it a &#8220;harder&#8221; way.  If you want a cookie for that, you&#8217;ll have to go elsewhere.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Vap0r</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-764</link>
		<dc:creator>Vap0r</dc:creator>
		<pubDate>Mon, 19 Oct 2009 11:39:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-764</guid>
		<description>Actually, the information I got was from an 0-day exploit I found on the SMF forums, before the switch. I don&#039;t believe you released the version of your browser and your ip online. I don&#039;t know, maybe you did, but I found it using this exploit. Anyways, what I did was in no way illegal, because it&#039;s dynamically loaded content that YOU load on your computer, by visiting the website you are agreeing to such scans. For a security expert, you don&#039;t seem to know much about your profession.</description>
		<content:encoded><![CDATA[<p>Actually, the information I got was from an 0-day exploit I found on the SMF forums, before the switch. I don&#8217;t believe you released the version of your browser and your ip online. I don&#8217;t know, maybe you did, but I found it using this exploit. Anyways, what I did was in no way illegal, because it&#8217;s dynamically loaded content that YOU load on your computer, by visiting the website you are agreeing to such scans. For a security expert, you don&#8217;t seem to know much about your profession.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Wesley McGrew</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-763</link>
		<dc:creator>Wesley McGrew</dc:creator>
		<pubDate>Thu, 08 Oct 2009 12:42:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-763</guid>
		<description>If you&#039;d like a current address, why don&#039;t you just whois my domain name?  It&#039;s not like I&#039;m trying to hide it.

Do you usually need this much help from the guy you&#039;re &quot;dropping docs&quot; on?</description>
		<content:encoded><![CDATA[<p>If you&#8217;d like a current address, why don&#8217;t you just whois my domain name?  It&#8217;s not like I&#8217;m trying to hide it.</p>
<p>Do you usually need this much help from the guy you&#8217;re &#8220;dropping docs&#8221; on?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MR^E</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-762</link>
		<dc:creator>MR^E</dc:creator>
		<pubDate>Thu, 08 Oct 2009 04:49:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-762</guid>
		<description>hey mcgrew is this your real address i wouldn&#039;t mind coming over for a beer
7867A HWY 19 N COLLINSVILLE, MS 39325</description>
		<content:encoded><![CDATA[<p>hey mcgrew is this your real address i wouldn&#8217;t mind coming over for a beer<br />
7867A HWY 19 N COLLINSVILLE, MS 39325</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MR^E</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-761</link>
		<dc:creator>MR^E</dc:creator>
		<pubDate>Wed, 07 Oct 2009 07:29:50 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-761</guid>
		<description>mcgrew do you actually provide security or do you just bitch all day about nothing</description>
		<content:encoded><![CDATA[<p>mcgrew do you actually provide security or do you just bitch all day about nothing</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: fixer</title>
		<link>http://www.mcgrewsecurity.com/2009/09/30/eta-is-leaking/#comment-760</link>
		<dc:creator>fixer</dc:creator>
		<pubDate>Tue, 06 Oct 2009 07:11:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.mcgrewsecurity.com/?p=609#comment-760</guid>
		<description>r00t34d , you are a fucking retarded mogaloid and punk with no respect. Your opinion means jack shit, and little to anyone.  And as far as this anonfaggot &quot;dropping dox&quot; You havent done shit ass clown.

But here, allow me, my names

Benjamin E. Nichols 405 753 7158
1926 N Rockwell #249
Bethany, Ok 73008

awwww snap guess wut anonfag, Im not afraid of you, and I dont give a fuck.</description>
		<content:encoded><![CDATA[<p>r00t34d , you are a fucking retarded mogaloid and punk with no respect. Your opinion means jack shit, and little to anyone.  And as far as this anonfaggot &#8220;dropping dox&#8221; You havent done shit ass clown.</p>
<p>But here, allow me, my names</p>
<p>Benjamin E. Nichols 405 753 7158<br />
1926 N Rockwell #249<br />
Bethany, Ok 73008</p>
<p>awwww snap guess wut anonfag, Im not afraid of you, and I dont give a fuck.</p>
]]></content:encoded>
	</item>
</channel>
</rss>

