Re: [Full-Disclosure] New MyDoom exploiting IFRAME

From: Georgi Guninski (guninski_at_guninski.com)
Date: 11/10/04

  • Next message: Peter: "[Full-Disclosure] could use some help with this logging"
    To: n3td3v <xploitable@gmail.com>
    Date: Wed, 10 Nov 2004 11:42:56 +0200
    
    

    microsoft are acting "responsibly", following "commonly accepted practice"
    [1].
    they are masters of managing "responsibility" - just check their EULAs.
    but why their management don't declare "sickurity - top priority"?

    -- 
    georgi
    1. http://news.com.com/Exploit+code+makes+IE+flaw+more+dangerous/2100-1002_3-5439370.html
    On Tue, Nov 09, 2004 at 10:14:08PM +0000, n3td3v wrote:
    > On Tue, 9 Nov 2004 11:08:26 +0100 (CET), Berend-Jan Wever
    > <skylined@edup.tudelft.nl> wrote:
    > > Hi all,
    > > 
    > > There's a new MyDoom variant exploiting the IFRAME issue 
    > 
    > The worst problem with this is microsoft have not announced a patch
    > for the exploit which the virii exploits, so this is wild in every
    > description of the word "wild". (unless i was cross-minded with a
    > seperate recently unleashed virii)
    > 
    > Further remarks on this subject would be useful....
    > 
    > 
    > Thanks, n3td3v
    > 
    > http://www.geocities.com/n3td3v
    > 
    > I'm a security enthusiast
    > 
    > _______________________________________________
    > Full-Disclosure - We believe in it.
    > Charter: http://lists.netsys.com/full-disclosure-charter.html
    _______________________________________________
    Full-Disclosure - We believe in it.
    Charter: http://lists.netsys.com/full-disclosure-charter.html
    

  • Next message: Peter: "[Full-Disclosure] could use some help with this logging"

    Relevant Pages