|
-
June 27th, 2008, 08:03 PM
#1
IE Driveby Malware Attack: Beware those GIFs!
Sad part is that the vuln was reported ages ago...
Internet Explorer ‘feature’ causing drive-by malware attacks - ZDNet Zero Day Blog
The attack, discovered at a compromised legitimate site, is using a modified GIF file to exploit the cross-site scripting feature/vulnerability.
Schouwenberg said he reported the vulnerability to Microsoft a long time ago, warning the company that JavaScript embedded into GIF files can be executed under certain circumstances. Microsoft disagreed and the issue was never patched.
Similar Threads
-
By Tedob1 in forum Cosmos
Replies: 9
Last Post: May 7th, 2006, 05:06 AM
-
By VLaD tHEiMpALeR in forum Programming Security
Replies: 0
Last Post: July 18th, 2002, 03:51 PM
Posting Permissions
- You may not post new threads
- You may not post replies
- You may not post attachments
- You may not edit your posts
-
Forum Rules
|
|