Re: [Full-disclosure] FFSpy, a firefox malware PoC

2009-05-25 Thread FUDder Guy
From: saphex saphex_at_gmail.com Date: Wed, 20 May 2009 01:42:16 +0100 I think this is interesting, http://myf00.net/?p=18 So, how does someone manage to edit the overlay file? Are they going to use some javascript from a malicious website to edit the overlay file of an addon? Or are they

Re: [Full-disclosure] FFSpy, a firefox malware PoC

2009-05-25 Thread FUDder Guy
On Mon, May 25, 2009 at 8:26 PM, saphex sap...@gmail.com wrote: This isn't about making the user install a malware add-on. It's about gaining access to the system trough an exploit, or physical access, modify an existing add-on with your code. And Firefox wont even notice. Instead of