[Full-disclosure] killbits? should have named them kibbles and bits

From: Ill will (xillwillx_at_gmail.com)
Date: 09/19/05

  • Next message: h4cky0u_at_gmail.com: "Alstrasoft Epay Pro 2.0 and prior Directory Traversal Vulnerability"
    Date: Mon, 19 Sep 2005 11:16:49 -0400
    To: full-disclosure@lists.grok.org.uk, bugtraq@securityfocus.com
    
    

    Background:
    Killbits are used to block certain activex controls from running within windows
    It is possible using certain methods to bypass this remotely.

    This goes out to my favorite company in the whole world Microsoft.
    Thanks for the upcoming vacation. :)
    MS security department head (Hi Terry) will stop at nothing to cover
    that killbit can be bypassed remotely and to keep it a secret from vendors
    Heres a hint evil browser hax0rs:
    play around with every different way to instantiate active x objects
    More to come?
    hack the planet
    illwill
    all your exploits are back to belonging to us


  • Next message: h4cky0u_at_gmail.com: "Alstrasoft Epay Pro 2.0 and prior Directory Traversal Vulnerability"

    Relevant Pages

    • [Full-disclosure] killbits? should have named them kibbles and bits
      ... Killbits are used to block certain activex controls from running within windows ... It is possible using certain methods to bypass this remotely. ...
      (Full-Disclosure)
    • Re: Question about BugOff
      ... the exploits it protects against are already patched. ... It merely sets some killbits for certain ActiveX controls. ... So, who cares? ...
      (comp.security.misc)
    • Re: Microsoft Update Error 0x80096010 / Genuine Advantage Errors
      ... Start a free Windows Update support incident request: ... Publisher: Unknown Publisher ... Download unsigned ActiveX controls: Disabled ... Allow scripting of Internet Explorer Webbrowser control: ...
      (microsoft.public.windowsupdate)
    • Re: Windows update failure
      ... were any other Options presented besides Install? ... The 0x80070002 during the WGA check just means that the Windows Genuine ... Online Validation Code: N/A ... Download unsigned ActiveX controls: Prompt ...
      (microsoft.public.windowsupdate)
    • Re: Validation Key
      ... I can finish out this product key for you. ... only worked with the enterprise version of Windows XP Pro. ... Download unsigned ActiveX controls: Disabled ... Initialize and script ActiveX controls not marked as safe: ...
      (microsoft.public.windowsxp.help_and_support)