Full Disclosure mailing list archives

IE7 Information Disclosure - For sale


From: <0x80 () hush ai>
Date: Thu, 4 May 2006 18:34:23 -0700


I just found a second bug that allows one to remotely retrieve the 
contents of other tabs inside of IE7.

Again, for sale.  Highest bidder.

Exploit example is to trick luser to visiting website which would 
then download contents of all open tabs including cookie and 
session information.



Concerned about your privacy? Instantly send FREE secure email, no account required
http://www.hushmail.com/send?l=480

Get the best prices on SSL certificates from Hushmail
https://www.hushssl.com?l=485

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/


Current thread: