Site Statistics
 
Threads: 4,069
Posts: 17,792
Members: 3,119
Users Online: 14
Newest Member: princesssam


Go Back   PC101 > Computer Related Forums > PC & Tech Related News, Events and More!

PC & Tech Related News, Events and More! Find information regarding technology news, events, alerts, websites of interest... really, any random sorts of things that are PC/Tech related but don't fall into the other forums.


Reply
 
LinkBack Thread Tools Display Modes
Old 10-29-2006, 04:07 AM   #1
Junior
 
Join Date: Mar 2006
Posts: 176
Rep Power: 3 eeeboy is on a distinguished road
IE 7 New vulnerability Found !

A weakness has been discovered in Internet Explorer, which can be exploited by malicious
people to conduct phishing attacks.

The problem is that it's possible to display a popup with a somewhat spoofed address bar where a number of special characters have been appended to the URL. This makes it possible to only display a part of the address bar, which may trick users into performing certain unintended actions.

The weakness is confirmed in Internet Explorer 7 on a fully patched Windows XP SP2 system.

Solution:
Do not follow links from untrusted sources.


Will , I have the JS code that would exploit this hole. If you permit , I can post it here. I mean its just for educational purpose security learning, nothing to help exploiting.
eeeboy is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Old 10-29-2006, 08:41 AM   #2
Professor
 
Join Date: Jul 2005
Posts: 2,208
Rep Power: 6 Will.Spencer is on a distinguished road
Sounds interesting!
Will.Spencer is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
TomTom bug bug found found Lyte PC Security 3 01-30-2007 06:14 PM
Adobe: Users should upgrade Reader, Acrobat to mitigate vulnerability Lyte PC Security 0 01-07-2007 05:59 PM
Patch issued for OpenOffice.org WMF vulnerability Mercury UNIX / Linux 0 01-04-2007 07:35 PM
Intel patches Centrino WiFi vulnerability - engadget Lyte Wired and Wireless Networking 0 08-06-2006 11:46 PM
eEye Reports Dangerous Vulnerability in Symantec Anti-Virus Will.Spencer PC Security 0 05-26-2006 08:11 PM



All times are GMT -5. The time now is 06:53 PM.

Powered by vBulletin Version 3.7.0
Copyright ©2000 - 2008, Jelsoft Enterprises Ltd.
Search Engine Optimization by vBSEO 3.2.0 RC5