<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Foofus.Net Security Stuff</title>
	<atom:link href="http://www.foofus.net/?feed=rss2" rel="self" type="application/rss+xml" />
	<link>http://www.foofus.net</link>
	<description>Foofus.Net Advanced Security Services Forum</description>
	<lastBuildDate>Thu, 03 May 2012 13:54:39 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>SQL Injection and other issues in Micro Technology Services, Inc. Lynx</title>
		<link>http://www.foofus.net/?p=582</link>
		<comments>http://www.foofus.net/?p=582#comments</comments>
		<pubDate>Thu, 03 May 2012 13:54:39 +0000</pubDate>
		<dc:creator>bede</dc:creator>
				<category><![CDATA[Advisories]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=582</guid>
		<description><![CDATA[The Micro Technology Services Inc. &#8220;Lynx Message Server 7.11.10.2&#8243; and/or &#8220;LynxTCPService version 1.1.62&#8243; web interface is vulnerable to SQL Injection, Cross-Site Scripting, and other security problems. See: http://www.foofus.net/?page_id=562 - Bede 5/3/12]]></description>
			<content:encoded><![CDATA[<p>The Micro Technology Services Inc. &#8220;Lynx Message Server 7.11.10.2&#8243; and/or &#8220;LynxTCPService version 1.1.62&#8243; web interface is vulnerable to SQL Injection, Cross-Site Scripting, and other security problems.</p>
<p>See:  http://www.foofus.net/?page_id=562</p>
<p>- Bede 5/3/12</p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=582</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Medusa 2.1 Release</title>
		<link>http://www.foofus.net/?p=534</link>
		<comments>http://www.foofus.net/?p=534#comments</comments>
		<pubDate>Mon, 02 Apr 2012 21:01:44 +0000</pubDate>
		<dc:creator>jmk</dc:creator>
				<category><![CDATA[Medusa]]></category>
		<category><![CDATA[tools]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=534</guid>
		<description><![CDATA[Medusa 2.1 is now available for public download. http://www.foofus.net/jmk/tools/medusa-2.1.tar.gz What is Medusa? Medusa is a speedy, massively parallel, modular, login brute-forcer for network services created by the geeks at Foofus.net. It currently has modules for the following services: AFP, CVS, FTP, HTTP, IMAP, MS-SQL, MySQL, NCP (NetWare), NNTP, PcAnywhere, POP3, PostgreSQL, rexec, rlogin, rsh, SMB, [...]]]></description>
			<content:encoded><![CDATA[<p>Medusa 2.1 is now available for public download.</p>
<p><a href="http://www.foofus.net/jmk/tools/medusa-2.1.tar.gz">http://www.foofus.net/jmk/tools/medusa-2.1.tar.gz</a></p>
<p>What is Medusa? Medusa is a speedy, massively parallel, modular, login brute-forcer for network services created by the geeks at Foofus.net. It currently has modules for the following services: AFP, CVS, FTP, HTTP, IMAP, MS-SQL, MySQL, NCP (NetWare), NNTP, PcAnywhere, POP3, PostgreSQL, rexec, rlogin, rsh, SMB, SMTP (AUTH/VRFY), SNMP, SSHv2, SVN, Telnet, VmAuthd, VNC. It also includes a basic web form module and a generic wrapper module for external scripts.</p>
<p>While Medusa was designed to serve the same purpose as THC-Hydra, there are several significant differences. For a brief comparison, see:</p>
<p><a title="http://www.foofus.net/jmk/medusa/medusa-compare.html" href="http://www.foofus.net/jmk/medusa/medusa-compare.html">http://www.foofus.net/jmk/medusa/medusa-compare.html</a></p>
<p>This release does not introduce any major changes to the core of the application, however, it does include two years worth of bug-fixes throughout the code base and numerous incremental improvements.</p>
<p>Enjoy,</p>
<p>Joe</p>
<p>&nbsp;</p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=534</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Praeda version 0.02.0b is now available for download</title>
		<link>http://www.foofus.net/?p=529</link>
		<comments>http://www.foofus.net/?p=529#comments</comments>
		<pubDate>Thu, 29 Mar 2012 16:49:16 +0000</pubDate>
		<dc:creator>percX</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=529</guid>
		<description><![CDATA[Updated release of Praeda 0.02.0b  can be downloaded from HERE . This release contains a few new modules  and an update to the dispatcher, allowing NMAP .gnmap as target input.]]></description>
			<content:encoded><![CDATA[<p title="PRAEDA">Updated release of Praeda 0.02.0b  can be downloaded from <a href="http://www.foofus.net/~percX/praeda/praeda.tgz">HERE</a> . This release contains a few new modules  and an update to the dispatcher, allowing NMAP .gnmap as target input.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=529</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PercX to present at HackCon in Oslo, Norway in March</title>
		<link>http://www.foofus.net/?p=512</link>
		<comments>http://www.foofus.net/?p=512#comments</comments>
		<pubDate>Tue, 21 Feb 2012 14:21:32 +0000</pubDate>
		<dc:creator>percX</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=512</guid>
		<description><![CDATA[PercX will be presenting more printer hacking at the Oslo, Norway security conference  HackCon  on March 28th  &#8220;From Printer to Pwnd &#8211; Leveraging Multifunction Printers During Penetration Testing&#8221;. During his presentation he will also be discussing a new &#8216;simple&#8217; attack against printer firmware update process on high end business MFP devices to gain root level [...]]]></description>
			<content:encoded><![CDATA[<p>PercX will be presenting more printer hacking at the Oslo, Norway security conference  <a href="http://www.hackcon.org/">HackCon</a>  on March 28th  &#8220;From Printer to Pwnd &#8211; Leveraging Multifunction Printers During Penetration Testing&#8221;. During his presentation he will also be discussing a new &#8216;simple&#8217; attack against printer firmware update process on high end business MFP devices to gain root level access. This will also coincide with an updated release of <a title="PRAEDA" href="http://www.foofus.net/~percX/praeda/praeda.tgz">PRAEDA</a> that will contain updates to the dispatcher, allowing NMAP .gnmap as target input.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=512</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>More Multifunction Printer Information Leakage Issues</title>
		<link>http://www.foofus.net/?p=497</link>
		<comments>http://www.foofus.net/?p=497#comments</comments>
		<pubDate>Mon, 07 Nov 2011 15:22:31 +0000</pubDate>
		<dc:creator>percX</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=497</guid>
		<description><![CDATA[While examining a Lexmark X656de multifunction printer awhile back I was pleased to &#8220;NOT&#8221; find any of the common information leakage vulns like passwords within the html source that you typically find on these type of devices. Which was a good sign. Although with a little more testing it was quickly found that the export [...]]]></description>
			<content:encoded><![CDATA[<p>While examining a Lexmark X656de multifunction printer awhile back I was pleased to &#8220;NOT&#8221; find any of the common information leakage vulns like passwords within the html source that you typically find on these type of devices. Which was a good sign. Although with a little more testing it was quickly found that the export setting feature was a total fail. Once I exported the system setting (settingfile.ucf) using the export function, it revealed the plain test password for the SMTP settings .</p>
<p>For the latest advisory on this click <a href="http://www.foofus.net/?page_id=483">here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=497</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Printer Pass-Back-Attack Tutorial</title>
		<link>http://www.foofus.net/?p=468</link>
		<comments>http://www.foofus.net/?p=468#comments</comments>
		<pubDate>Fri, 28 Oct 2011 04:47:13 +0000</pubDate>
		<dc:creator>percX</dc:creator>
				<category><![CDATA[Advisories]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=468</guid>
		<description><![CDATA[At Defcon 19 during my presentation we discussed a new attack method against printers. This attack method involved tricking the printer into passing LDAP or SMB credential back to attacker in plain text. We refer to this attack as a Pass-Back-Attack . So its been awhile, but we wanted to release a short tutorial discussing [...]]]></description>
			<content:encoded><![CDATA[<p>At Defcon 19 during my presentation we discussed a new attack method against printers. This attack method involved tricking the printer into passing LDAP or SMB credential back to attacker in plain text. We refer to this attack as a Pass-Back-Attack . So its been awhile, but we wanted to release a short tutorial discussing how this attack is performed. A PDF of the Tutorial can be downloaded from <a href="http://www.foofus.net/~percX/praeda/pass-back-attack.pdf">here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=468</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Toshiba eStudio Multifunction Printer Information Leakage</title>
		<link>http://www.foofus.net/?p=460</link>
		<comments>http://www.foofus.net/?p=460#comments</comments>
		<pubDate>Wed, 26 Oct 2011 04:19:04 +0000</pubDate>
		<dc:creator>percX</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=460</guid>
		<description><![CDATA[Ok now that we have showed you how to bypass authentication on a Toshiba eStudio MFP device. The next obvious step is what data can be extracted. Well it turns out that the Toshiba eStudio multifunction printers also leaks data. If you examine the HTML source code of any of the configuration pages you will [...]]]></description>
			<content:encoded><![CDATA[<p>Ok now that we have showed you how to bypass authentication on a Toshiba eStudio MFP device. The next obvious step is what data can be extracted. Well it turns out that the Toshiba eStudio multifunction printers also leaks data. If you examine the HTML source code of any of the configuration pages you will find the passwords in plan text. Yes that ******* in the password configuration setting field is not really hiding anything.</p>
<p>For Latest Advisory click <a href="http://www.foofus.net/?page_id=457">here</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=460</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PercX is scheduled to speak at BSides in Wilmington Delaware</title>
		<link>http://www.foofus.net/?p=444</link>
		<comments>http://www.foofus.net/?p=444#comments</comments>
		<pubDate>Fri, 21 Oct 2011 20:26:50 +0000</pubDate>
		<dc:creator>percX</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=444</guid>
		<description><![CDATA[PercX will being speaking on printers, and embedded device information gathering attacks. Covering how the information is leveraged to gain access to other core network server systems. Also will be discussing the tool Praeda and its features, functions, and future. So join PercX at BSides Delaware. Registration is available here and schedule information is available [...]]]></description>
			<content:encoded><![CDATA[<p>PercX will being speaking on printers, and embedded device information gathering attacks. Covering how the information is leveraged to gain access to other core network server systems. Also will be discussing the tool Praeda and its features, functions, and future. So join PercX at BSides Delaware. Registration is available <a href="http://BSidesDE2011.eventbrite.com">here</a> and schedule information is available <a href="http://www.securitybsides.com/w/page/28563447/BSidesDelaware">here</a>. Follow PercX on twitter at <a href="http://twitter.com/#!/Percent_X/">@Percent_X</a></p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=444</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>Toshiba eStudio Multifunction Printer Authentication Bypass</title>
		<link>http://www.foofus.net/?p=431</link>
		<comments>http://www.foofus.net/?p=431#comments</comments>
		<pubDate>Sun, 16 Oct 2011 21:38:48 +0000</pubDate>
		<dc:creator>percX</dc:creator>
				<category><![CDATA[Advisories]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=431</guid>
		<description><![CDATA[Wow this one was so simple I still cant stop laughing. This was originally released at Shmoocon on January 29 2011 Thought it was time to follow up with an advisory because most end users still do not know about this vulnerability. The authentication on Toshiba eStudio MFP devices is easily bypassed by adding an [...]]]></description>
			<content:encoded><![CDATA[<p>Wow this one was so simple I still cant stop laughing. This was originally released at Shmoocon on January 29 2011 Thought it was time to follow up with an advisory because most end users still do not know about this vulnerability. The authentication on Toshiba eStudio MFP devices is easily bypassed by adding an extra / in the URL after TopAccess.</p>
<p>Example:<br />
http://IP Address/TopAccess//Administrator/Setup/ScanToFile/List.htm</p>
<p>For Latest Advisory click <a href="http://www.foofus.net/?page_id=411">here</a></p>
<p>Really easy as you can see. Iam looking for assistance to better map out devices with this issue. If you have a Toshiba eStudio please check out the request at <a href="http://praeda.foofus.net">http://praeda.foofus.net</a> to give me a hand.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=431</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
		<item>
		<title>PercX to take PRAEDA printer hacking to India</title>
		<link>http://www.foofus.net/?p=403</link>
		<comments>http://www.foofus.net/?p=403#comments</comments>
		<pubDate>Thu, 01 Sep 2011 15:52:47 +0000</pubDate>
		<dc:creator>percX</dc:creator>
				<category><![CDATA[General]]></category>

		<guid isPermaLink="false">http://www.foofus.net/?p=403</guid>
		<description><![CDATA[PercX will be presenting more printer hacking at the Bangalore, India security conference  Securitybyte on September 6th. This will coincide with an updated release of PRAEDA that will contain several new modules to test for default authentication credentials and information leakage on embedded network appliances.]]></description>
			<content:encoded><![CDATA[<p>PercX will be presenting more printer hacking at the Bangalore, India security conference  <a title="SecurityByte" href="http://www.securitybyte.org">Securitybyte</a> on September 6th. This will coincide with an updated release of <a title="PRAEDA" href="http://www.foofus.net/~percX/praeda/praeda.tgz">PRAEDA</a> that will contain several new modules to test for default authentication credentials and information leakage on embedded network appliances.</p>
]]></content:encoded>
			<wfw:commentRss>http://www.foofus.net/?feed=rss2&#038;p=403</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>

