Firewall Wizards mailing list archives

Re: Application-level Attacks


From: "Marcus J. Ranum" <mjr () ranum com>
Date: Sat, 29 Jan 2005 04:15:05 -0500

Adam Shostack wrote:
I think that older attacks were not application-layer from a business
perspective

You're talking marketing. WTF is a "business perspective"??? I assume
that means perception, not reality.

RCPT To: fishlips () whitehouse gov
MAIL From: "| sed '1,/^$/d' | /bin/sh"

is pretty damn application-layer, if I recall correctly. The layer is 7,
the application is Sendmail 5. The shell, as they say, is root.

mjr. 

_______________________________________________
firewall-wizards mailing list
firewall-wizards () honor icsalabs com
http://honor.icsalabs.com/mailman/listinfo/firewall-wizards


Current thread: