Full Disclosure mailing list archives
Re: defacements for the installation of malcode
From: Vympel <vympel () zone-h org>
Date: Fri, 16 Feb 2007 20:19:53 -0300
Hi, this is a old known "issue" many defacers put in mirrors some type of a trojan or some xss trick to stolen hotmail cookie. If someone like a "POC" just take a look in Iskorpitx defacements (http://www.zone-h.org/component/option,com_attacks/Itemid,43/filter_defacer,iskorpitx/) you will found some of this virus ;-) Also default hotmail/msn site is vulnerable a xss ;-) Fix: Just disable java runtime machine and never open a link with some char codes Best Regards Vympel Zone-H Admin _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/
Current thread:
- defacements for the installation of malcode Gadi Evron (Feb 12)
- <Possible follow-ups>
- Re: defacements for the installation of malcode Jeremy Epstein (Feb 15)
- Re: defacements for the installation of malcode Gadi Evron (Feb 15)
- Re: defacements for the installation of malcode phish_n_bots (Feb 16)
- Re: defacements for the installation of malcode Gadi Evron (Feb 15)
- Re: defacements for the installation of malcode Vympel (Feb 17)