Re: Internet Explorer SuperCookies bypass P3P and cookie controls

From: Robert D. Johnston (rj@SYSTEMAXDEV.COM)
Date: 01/15/02


Date:         Tue, 15 Jan 2002 17:19:08 -0000
From: "Robert D. Johnston" <rj@SYSTEMAXDEV.COM>
To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM

Note:

Working as advertised with:
IE5.5 SP2 (Build: 5.50.4807.2300)
WMP 6.4 (Build: 6.4.09.1121)
Windows 2000 Server (SP2)

WMP 6.4 has no "Allow/Disallow GUID" setting.

-- 
Robert Johnston
Internet Developer, Systemax Europe Ltd.
+44 (0)208 523 4020 x354
--
Bad Headlines #5:
        Patient At Death's Door--Doctors Pull Him Through

This e-mail has been scanned for all viruses by Star Internet. The service is powered by MessageLabs. For more information on a proactive anti-virus service working around the clock, around the globe, visit: http://www.star.net.uk

====================================== Delivery co-sponsored by VeriSign - The Internet Trust Company ====================================== FREE E-COMMERCE SECURITY INFRASTRUCTURE GUIDE When building an e-commerce site, you want to start with a strong, secure foundation. Learn how with VeriSign's FREE White Paper, "Building an E-Commerce Trust Infrastructure." See how you can authenticate your site to customers, use 128-Bit SSL encryption to secure your web servers, and accept secure payments online. Click here: http://www.verisign.com/cgi-bin/go.cgi?a=n116965650045000 ======================================



Relevant Pages

  • Re: NT4 -> Win2K3 question
    ... disable SMB signing for the Workstation or Server service on a domain ... Get Secure! ... The File Replication Service Event log test ... controller to the following destination domain ...
    (microsoft.public.windows.server.migration)
  • [OT] Re: RSA implementation, please comment.
    ... on a separate server is actually a very good idea, ... This web front uses a well defined and secure ... Don't store the private key on the server. ... Every client gets a smartcard for the decryption (or a HSM, ...
    (comp.lang.perl.misc)
  • Re: Word 2007 Missing User Level Securitty - ARRRGGGGHHHH What were they thinking?
    ... File servers aren't secure? ... Access predates Windows security, ... database system has never been updated or kept current. ... the OS-based database server product, ...
    (microsoft.public.access.security)
  • Re: local admin account password
    ... >> except its based on something specific about the server. ... >> more recovery console and don't think cached logins will work. ... >> The DB file would be encrypted with EFS so only the limited user SQL ... >> and the app itself doesn't really need to be secure as the ...
    (Focus-Microsoft)
  • Re: Questions on secure remote access to Fedora Core 2
    ... not secure at all, because hostnames can be forged. ... The users should generate themselves key pairs for SSH access. ... on the server, work on it, and then send it back. ... Linux-based, then Network Block Devices are a good idea, too. ...
    (comp.os.linux.security)