[EMAIL PROTECTED] wrote:
Original is here:
http://www.insecure.ws/article.php?story=20031122012748282
Safari will never exit a loop in javascript. Since javascript isn't
executed in a thread, this cause a DoS (Safari crashes).
It should be noted that it's relatively easy to DoS most JS
I wrote:
b='';a=b=b+' ';
for (var i=0;i15;++i) a+=a;
// Above line creates a 64MB script
// Now run the 64MB script, 100,000 times
for (var i=0;i10;++i) eval(a);
Just a quick note; I had altered the script without updating
the comments. It only creates a 256KB script, now; a longer
one
I just found a new backdoor program in the wild. It is a reverse backdoor
that uses udp port 53 to communicate with the server side. It uses a
couple of interesting techniques, for example, it injects itself in hidden
IE instance.
I wrote a little paper about the analysis:
There is always the popular
while(1){
document.alert(Hi);
}
Which forces people to use process viewer to quit. On Win98 it calls
for a restart. (Or pview if you have it).
--
Jason Freidman [EMAIL PROTECTED]
signature.asc
Description: This is a digitally signed message part
I think I've seen this one before. Some keywords that come to mind are APRE
(Advanced Port Redirection Engine), Assassin 2.0, and the site that hosts
those files (forget the name). These guys code Trojans for $$$!!! But they
also offer free tools to make Trojans and it looks like this one is
Not sure if this is it, but similar idea:
http://www.lommage.co.uk/index.php?view=lompolyinject/lompolyinject
And I found the website where you can purchase Trojans and
components:
http://www.evileyesoftware.com/
Kristian Hermansen
---
http://www.securityfocus.com/bid/8967/info/
[...]
Solution:
VieNuke has released a patch:
http://www.vienuke.com/VieBoard_Patch.zip
[...]
---
http://www.securityfocus.com/bid/8967/solution/
[...]
VieNuke VieBoard 2.6 Beta 1:
VieNuke Patch VieBoard_Patch.zip
Kristian Hermansen wrote:
I think I've seen this one before. Some keywords that come to mind are APRE
(Advanced Port Redirection Engine), Assassin 2.0, and the site that hosts
those files (forget the name). These guys code Trojans for $$$!!! But they
also offer free tools to make Trojans
. : Shell Security Advisory : .
Subject: Buffer overflow in the cable modem Thomson TCM315
It also works in a Thomson TCM305.
It causes a full restart.
It's a bug of all the TCM series???
Or of all Thomson firmware cable modems???
I'm just curious, has anybody else noticed a marked increase in the
amount of swen mailings received? When swen first appeared, I got about
4 or 5 of them each day for about a week, then they tapered off to about
once a week. ...until the last 60 hours, during which time I have
receieved no less
I have remarked a large increase as well. And they are coming from all over
the world( Japan, Turkey, Latvia, Italy, Netherlands etc.) and from
different addresses that the onslaught I received earlier.
-Original Message-
From: [EMAIL PROTECTED]
[mailto:[EMAIL PROTECTED] On Behalf Of
The Birth Of A Gay Slut
Copyright (all rights reserved) by Dave Aitel ([EMAIL PROTECTED]) Jan
31, 1997
http://groups.google.com/groups?q=birth+of+a+gay+sluthl=enlr=ie=UTF-8oe=UTF-8selm=544eli%249704151525%40qz.little-neck.ny.usrnum=1
(-)
Dave Aitel wrote:
there once was a boy
The author seems to be very active, there are at least 2 more variants
of this Trojan horse out there, that we know of at the moment.
--
Gadi Evron,
[EMAIL PROTECTED]
The Trojan Horses Research mailing list - http://ecompute.org/th-list
My resume (Hebrew) -
Mail server has received 105 swen since Nov 1st.
___
Dave Kleiman, CISSP, MCSE, CIFI
[EMAIL PROTECTED]
www.SecurityBreachResponse.com
High achievement always takes place in the framework of high expectation.
Jack Kinder
-Original Message-
From: [EMAIL
There once was a sailor from Brighton,
who said to his girl yer a tight one!;
She said, 'pon my soul, but yer in the wrong hole,
there's plenty of room in the right one!
Joel R. Helgeson
Director of Networking Security Services
SymetriQ Corporation
Give a man fire, and he'll be warm for a day;
15 matches
Mail list logo