Full Disclosure mailing list archives

Anonymous surfing my ass!


From: full-disclosure () lists netsys com (Berend-Jan Wever)
Date: Sun, 14 Jul 2002 02:15:48 +0200

This is a multi-part message in MIME format.

------=_NextPart_000_000C_01C22ADC.5E924090
Content-Type: text/plain;
        charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

(html: =
http://spoor12.edup.tudelft.nl/SkyLined%20v4.2/?Advisories/Anonymous =
surfing, NOT!)

Anonymous surfing websites are written by incompetend programmers keen =
on your money and not your privacy; I tested a few of them and found =
them wanting:
- Anonymizer.com (I have hacked my way out of Anonymizer 4 times before =
and they still lack proper filtering!)
- The-cloak.com
- Megaproy.com
These were all the sites I found with google and could get acces to =
without registering, if you know some more, I'd be happy to hack my way =
out of their filters.
I'd like to mention that all filter faults were found within minutes, =
just to show (off) how easy this was.

Vendor status: hereby informed of the issue.

Berend-Jan Wever aka SkyLined
http://spoor12.edup.tudelft.nl

PS. I'm going on a holiday, so I won't respond to any replies for about =
a week. Though luck!

------=_NextPart_000_000C_01C22ADC.5E924090
Content-Type: text/html;
        charset="iso-8859-1"
Content-Transfer-Encoding: quoted-printable

<!DOCTYPE HTML PUBLIC "-//W3C//DTD HTML 4.0 Transitional//EN">
<HTML><HEAD>
<META http-equiv=3DContent-Type content=3D"text/html; =
charset=3Diso-8859-1">
<META content=3D"MSHTML 6.00.2716.2200" name=3DGENERATOR>
<STYLE></STYLE>
</HEAD>
<BODY bgColor=3D#ffffff>
<DIV><FONT face=3DArial size=3D2>(html: <A=20
href=3D"http://spoor12.edup.tudelft.nl/SkyLined%20v4.2/?Advisories/Anonym=
ous surfing, =
NOT!">http://spoor12.edup.tudelft.nl/SkyLined%20v4.2/?Advisories/Anonymou=
s=20
surfing, NOT!</A>)</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Anonymous surfing websites are written =
by=20
incompetend programmers keen on your money and not your privacy; =
</FONT><FONT=20
face=3DArial size=3D2>I tested a few of them and found them =
wanting:</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>- Anonymizer.com</FONT><FONT =
face=3DArial size=3D2> (I=20
have hacked my way out of Anonymizer 4 times before and they still lack =
proper=20
filtering!)</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>- The-cloak.com</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>- Megaproy.com</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>These were all the sites I&nbsp;found =
with google=20
and could get acces to without registering, if you know some more, I'd =
be happy=20
to hack my way out of their filters.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2>I'd like to mention that all filter =
faults were=20
found within minutes, just to show (off) how easy this was.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Vendor status: hereby informed of the=20
issue.</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>Berend-Jan Wever aka =
SkyLined</FONT></DIV>
<DIV><FONT face=3DArial size=3D2><A=20
href=3D"http://spoor12.edup.tudelft.nl";>http://spoor12.edup.tudelft.nl</A=
</FONT></DIV>
<DIV><FONT face=3DArial size=3D2></FONT>&nbsp;</DIV>
<DIV><FONT face=3DArial size=3D2>PS. I'm going on a holiday, so I won't =
respond to=20
any replies for about a week. Though luck!</FONT></DIV></BODY></HTML>

------=_NextPart_000_000C_01C22ADC.5E924090--



Current thread: