[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [Full-Disclosure] Re: Internet Explorer URL parsing vulnerability



On Thu, Dec 11, 2003 at 11:49:07AM -0600, Schmehl, Paul L wrote:
> Hey, I like that one.  That's the first time I've even been to slashdot
> and see www.microsoft.com in the address bar.  :-)
>  
It gets better... it works with SSL sites as well. The little lock, and
no warning message:
http://petard.freeshell.org/hotmail-pr.html

petard

--
If your message really might be confidential, download my PGP key here:
http://petard.freeshell.org/petard.asc
and encrypt it. Otherwise, save bandwidth and lose the disclaimer.

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html