Re: a dangerous fast spreading (yet simple) trojan horse.
From: Andreas Reich (cyraxx_at_scention.de)
Date: 10/27/03
- Previous message: Francisco Andrades: "Re: Java 1.4.2_02 InsecurityManager JVM crash"
- In reply to: Gadi Evron: "a dangerous fast spreading (yet simple) trojan horse."
- Next in thread: Craig Holmes: "Re: a dangerous fast spreading (yet simple) trojan horse."
- Reply: Craig Holmes: "Re: a dangerous fast spreading (yet simple) trojan horse."
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Date: Mon, 27 Oct 2003 17:43:27 +0100 To: bugtraq@securityfocus.com
Gadi Evron wrote:
> The jpeg is actually an HTML file, and when the web browser receives it,
> it thinks that it is a server error message for the file not existing,
> and loads the page.
Not necessarily. Often it is just a directory named xyz.jpg. The browser
then
gets redirected to /url/xyz.jpg/ and loads the index.html there.
-Andreas
- Previous message: Francisco Andrades: "Re: Java 1.4.2_02 InsecurityManager JVM crash"
- In reply to: Gadi Evron: "a dangerous fast spreading (yet simple) trojan horse."
- Next in thread: Craig Holmes: "Re: a dangerous fast spreading (yet simple) trojan horse."
- Reply: Craig Holmes: "Re: a dangerous fast spreading (yet simple) trojan horse."
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ] [ attachment ]
Relevant Pages
|