Security Basics mailing list archives
Re: files containing web llinks
From: "Jeffrey F. Bloss" <jbloss () tampabay rr com>
Date: Fri, 24 Nov 2006 20:07:54 -0500
pdp (architect) wrote:
Hi, it is possible to open links from several types of media formats including images, although this is the first case someone mentions it on a security list I believe. This type of issue was found in PDF, RealMedia, QuickTime, and QuckTime Media Link. It is good to note that
[...]
http://www.gnucitizen.org/blog/backdooring-mp3-files http://www.gnucitizen.org/blog/backdooring-quicktime-movies
[...] These are *not* image files, or any sort of image file format. They're links to image files either local or remote that load additional, possibly unnecessary or unwanted data. They're essentially scripts with names that happen to end in .mp3, .mov, etc... -- Hand crafted on 24 November, 2006 at 19:58:59 EST using only the finest domestic and imported ASCII. If society fits you comfortably enough, you call it freedom. -- Robert Frost
Attachment:
signature.asc
Description:
Current thread:
- files containing web llinks mr . nasty (Nov 20)
- Re: files containing web llinks pdp (architect) (Nov 24)
- Re: files containing web llinks Jeffrey F. Bloss (Nov 27)
- Segregation of Duties related Faheem SIDDIQUI (Nov 27)
- <Possible follow-ups>
- Re: files containing web llinks mr . nasty (Nov 21)
- Re: files containing web llinks Jeffrey F. Bloss (Nov 22)
- RE: files containing web llinks David Gillett (Nov 23)
- Re: files containing web llinks Jeffrey F. Bloss (Nov 23)
- Re: files containing web llinks Jeffrey F. Bloss (Nov 22)
- Re: files containing web llinks pdp (architect) (Nov 24)
- Re: Re: files containing web llinks krymson (Nov 23)
- RE: files containing web llinks Laundrup, Jens (Nov 23)