RE: Edonkey/Overnet Plugins capable of Virus/Worm behavior

From: ashton (ashton_at_joltmedia.com)
Date: 12/18/03

  • Next message: Julian Ashton: "Re: Edonkey/Overnet Plugins capable of Virus/Worm behavior"
    To: "'Pavel Kankovsky'" <peak@argo.troja.mff.cuni.cz>
    Date: Thu, 18 Dec 2003 07:03:17 -0500
    
    

    1. giFT is unix - until noted otherwise, so goodluck. 2. Windows Media is
    not P2P with a built in search of 1.2 million people for the "uber upload
    limit crack plugin" in which when loaded is an actual virus, it's very hard
    for joe average to get a harmful WMP plugin but with this method in Overnet
    it's too easy, plus they could propogate themselves through Overnet
    vulnerabilities on top.

    -----Original Message-----
    From: Pavel Kankovsky [mailto:peak@argo.troja.mff.cuni.cz]
    Sent: Wednesday, December 17, 2003 6:43 PM
    To: Julian Ashton
    Cc: bugtraq@securityfocus.com
    Subject: Re: Edonkey/Overnet Plugins capable of Virus/Worm behavior

    On 17 Dec 2003, Julian Ashton wrote:

    > Good question, I have been working on plugin systems suchs as giFT and
    > Windows Media for quite a while and while they can do some neat
    > things, this kind of behavoir cannot happen because of the way they
    > were architechted. When I think of "plugins" I think of 1. An sdk. 2.
    > Methods that you create that the "client" listens for. 3. All code in
    > the plugin is sent to the "client" not the OS level. 4. Mainly COM
    > (this plugin uses full use of C++/MFC in a DLL)

    Excuse me...how do giFT or Windows Media prevent their plugins from
    accessing the OS interface directly and doing whatever they (the plugins)
    want to do? Do they run the plugins in a virtual machine?

    --Pavel Kankovsky aka Peak [ Boycott Microsoft--http://www.vcnet.com/bms ]
    "Resistance is futile. Open your source code and prepare for assimilation."


  • Next message: Julian Ashton: "Re: Edonkey/Overnet Plugins capable of Virus/Worm behavior"

    Relevant Pages

    • Re: Edonkey/Overnet Plugins capable of Virus/Worm behavior
      ... On 17 Dec 2003, Julian Ashton wrote: ... this kind of behavoir cannot happen because of the way they ... Excuse me...how do giFT or Windows Media prevent their plugins from ...
      (Bugtraq)
    • Re: No Sound on Photo Story 3
      ... You might want to see if the Windows Media 9 Codec package from Microsoft ... Try disabling any audio-related plugins. ... > just stops and will not play in the preview window, I then save it to play on ...
      (microsoft.public.windowsxp.photos)
    • Re: Down loading license
      ... saying " your netscape browser does not have Microsoft windows media ... services" plugins ... What's your default browser - Firefox? ...
      (microsoft.public.windowsmedia.player)
    • RE: My own plugin
      ... > In my last Thread I described the job I have to develope (Windows Media ... > plugins" with c#? ... I have looked at the reference of the Microsoft Website ...
      (microsoft.public.windowsmedia.server)
    • Re: Debian / Linux KaZaA client?
      ... That aside you could try mldonkey or xmule for the edonkey network or gift. ... There are plugins for gift that support fasttrack aka kazaa and gnutella. ...
      (Debian-User)