DANGEROUS new internet security hole

L

Laura Fredericks

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

<snip>

You're still here? Didn't you post yesterday that you
were leaving this ng?

I am about ready to just chuck, the whole internet
thing; because I find it less and less interesting,
and I have quite a lot of other diversions to keep me
busy.

As usual, you're a...

....liar.

-----BEGIN PGP SIGNATURE-----
Version: PGP 8.0.2
Comment: http://www.queenofcyberspace.com/laura_fredericks.asc

iQA/AwUBP93+WaRseRzHUwOaEQJXgQCfewABydEtDZIjFvRk27Fq6oRVX6IAoINb
4WihKgOsJjxYMFl+iVTZf38n
=XaWK
-----END PGP SIGNATURE-----

--
Laura Fredericks
PGP key ID - DH/DSS 2048/1024: 0xC753039A

http://www.queenofcyberspace.com/usenet/

Remove CLOTHES to reply.
 
Z

Zilker

Sugien said:
Yep, what's your point?

/Sugien

Just thought it was funny. Probably took longer to copy it all and
find/replace your page than it would have taken if you had linked to mine.

BTW: Example #4 links to different verbiage than example #1 or 2. You need
to fix it on your "mirror", otherwise the point of example #4 is lost.

/Zilker
 
S

Sugien

Zilker said:
Just thought it was funny. Probably took longer to copy it all and
find/replace your page than it would have taken if you had linked to mine.

BTW: Example #4 links to different verbiage than example #1 or 2. You need
to fix it on your "mirror", otherwise the point of example #4 is lost.

/Zilker
I most likely will just take it down; because those whom it was intended
to help will be thrown off into a sedgway by those here that can only see
what they want to see and that being that they enjoy trying to find fault
with anything I try and do to help people.
btw: did you see in the source that I left in your links and such in
case anyone wanted to know who wrote the orignal? One other question which
ONLY you can answer. Did you consider my mirror to be a plagarized or
stolen version of yours or what I truly intended it to be, a mirror? iow,
do you think I stole your page? or that my intentions were to try and claim
for myself any type of credit? If you don't I most likely will live it up;
but if so then I will of course take it down. One reason I posted it here
was because a lot of those here don't lurk at AHM where you origanly posted
your links.

/Sugien
 
J

James Egan

BTW: Example #4 links to different verbiage than example #1 or 2. You need
to fix it on your "mirror", otherwise the point of example #4 is lost.

Yes. That's a key point and it's missing completely from the original
mirror (or whatever it's called :)


Jim.
 
F

FromTheRafters

Same thing above, huh. OK, so do a right click-properties on this page, see anything that would warn you your not at microsoft?
/Zilker

My "properties" box does have a slight indication that something is amiss.
There is an additional character after the "m" in .com that looks like a thick
"pipe" ( | ) character. When a copy-paste it to a news message, it becomes
a little square [].

...it is pasted here below, but a lot probably depends on the font used and the
character used for unprintables.

http://www.microsoft.com

It *is* an interesting flaw, and I thank both you and Sugien for
posting it (I don't go to AHM much anymore s/n ratio is bad
enough without my input).
 
S

Sugien

Willie Nickels said:
"Zilker" <[email protected]> wrote in message

I'm sure he hears stuff like that all the time. Just another day at
the old trailer park ;).


Tell you what dip stick, if you can prove I live in a trailer park I am
willing to post a bond to a lawer for X amount of dollars if you will do the
same. If prove you I live in a traler park you get the money if not I get
it ok?

p.s.
not that there is anything wrong or degrading about living in a trailer park
for those that either by choice or otherwise do, it is just that I don't and
people saying I do is as truthfull as what all the other lies they say about
me.
 
L

Laura Fredericks

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

not that there is anything wrong or degrading about
living in a trailer park for those that either by
choice or otherwise do, it is just that I don't and
people saying I do is as truthfull as what all the
other lies they say about me.

<cough> Coderipper. Plagiarist.

-----BEGIN PGP SIGNATURE-----
Version: PGP 8.0.2
Comment: http://www.queenofcyberspace.com/laura_fredericks.asc

iQA/AwUBP95R8aRseRzHUwOaEQI+IwCg6JGK9/ejgknX6A3Ptvxy/VNnCaIAoP+w
KltZYr9C5vqJgBfWCvwCOBmb
=Jee2
-----END PGP SIGNATURE-----

--
Laura Fredericks
PGP key ID - DH/DSS 2048/1024: 0xC753039A

http://www.queenofcyberspace.com/usenet/

Remove CLOTHES to reply.
 
Z

Zilker

Sugien wrote:

I most likely will just take it down; because those whom it was intended
to help will be thrown off into a sedgway by those here that can only see
what they want to see and that being that they enjoy trying to find fault
with anything I try and do to help people.
btw: did you see in the source that I left in your links and such in
case anyone wanted to know who wrote the orignal? One other question which
ONLY you can answer. Did you consider my mirror to be a plagarized or
stolen version of yours or what I truly intended it to be, a mirror? iow,
do you think I stole your page? or that my intentions were to try and claim
for myself any type of credit? If you don't I most likely will live it up;
but if so then I will of course take it down. One reason I posted it here
was because a lot of those here don't lurk at AHM where you origanly posted
your links.

/Sugien

I don't really care either way. Like I said, I thought it was funny that
you were passing this off as yours, which is what the orginal post implied.

My page is really just a running list of the ways my friends and others have
found to expoit the hole, nothing really orignal. I just needed a decent
example to show to non-technical people.

Keep it up/Take it down...your call. It probably does more good if it is up.

/Zilker
 
Z

Zilker

FromTheRafters said:
Same thing above, huh. OK, so do a right click-properties on this page,
see anything that would warn you your not at microsoft?
/Zilker

My "properties" box does have a slight indication that something is amiss.
There is an additional character after the "m" in .com that looks like a thick
"pipe" ( | ) character. When a copy-paste it to a news message, it becomes
a little square [].

...it is pasted here below, but a lot probably depends on the font used and the
character used for unprintables.

http://www.microsoft.com

It *is* an interesting flaw, and I thank both you and Sugien for
posting it (I don't go to AHM much anymore s/n ratio is bad
enough without my input).


Exactly... you should see a little [] box after the www.microsoft.com in the
properties. The question is: would you have noticed that [] in a quick,
cursory check? Maybe. Would your mom|dad|brother|sister? Would they even
think to look there?

The reason I threw the examples up is because I, like many other "familial
help-desk technicians", have been training people to look at the address bar
or the status bar or the little lock in the corner. Now, all of that is
crap. If you clicked on a link and didn't type in the url, your at risk.

I'm thinking a burned copy of Mozilla Firebird makes the perfect stocking
stuffer this holiday season.

/Zilker
 
F

FromTheRafters

Zilker said:
FromTheRafters said:
Same thing above, huh. OK, so do a right click-properties on this page,
see anything that would warn you your not at microsoft?
/Zilker

My "properties" box does have a slight indication that something is amiss.
There is an additional character after the "m" in .com that looks like a thick
"pipe" ( | ) character. When a copy-paste it to a news message, it becomes
a little square [].

...it is pasted here below, but a lot probably depends on the font used and the
character used for unprintables.

http://www.microsoft.com

It *is* an interesting flaw, and I thank both you and Sugien for
posting it (I don't go to AHM much anymore s/n ratio is bad
enough without my input).


Exactly... you should see a little [] box after the www.microsoft.com in the
properties. The question is: would you have noticed that [] in a quick,
cursory check?

No, I probably wouldn't have even looked for it.
Maybe. Would your mom|dad|brother|sister? Would they even
think to look there?

Definitely not.
The reason I threw the examples up is because I, like many other "familial
help-desk technicians", have been training people to look at the address bar
or the status bar or the little lock in the corner. Now, all of that is
crap. If you clicked on a link and didn't type in the url, your at risk.

Yes, however, I also saw the character in the title bar of my browser
with some of the examples - but of course we already knew that the
title bar could say anything the writer wanted and as such is not to be
trusted.
I'm thinking a burned copy of Mozilla Firebird makes the perfect stocking
stuffer this holiday season.

Right you are - but I'm still having lotsa fun with IE. ;o)
 
S

Sugien

Zilker said:
Sugien wrote:



I don't really care either way. Like I said, I thought it was funny that
you were passing this off as yours, which is what the orginal post implied.

My page is really just a running list of the ways my friends and others have
found to expoit the hole, nothing really orignal. I just needed a decent
example to show to non-technical people.

Keep it up/Take it down...your call. It probably does more good if it is up.
You are listening to those that are my nemisis's; because I never said
anything about my having created it, I only posted and said "Here it is" .
Had I wanted to try and claim some sort of credit for creating it I would
not have beat around the bush I would have just said "Here is a new
dangerous security hole *I FOUND*"; but I did not. btw, have you ever seen
*my* newsbug code/hole? the one which M$ says is not a bug/hole but rather
"an abuse of a functionality"?
 
4

4Q

Dimbulb called me his greatest "detractor" he also called me his "arch
enemy" now the lying, cheating, stealing dumbass is calling me his
"nemesis"!!! *LOL*

....
I see that you have got caught out by the original author of another
piece of work that you *cough* MIRRORED *cough* That's one of you
problems, you keep getting caught for *cough* MIRRORING *cough* other
peoples work.

....
Yep, what's your point?

/Sugien
....

What??? You've *cough* MIRRORED *cough* his sig style now!

....
I thought you announced the end of your Internet days a little while
ago. (how many times have you said this in the past and returned,
lair?)

....
Your arch nemesis
4Q ;]]
 
G

Gabriele Neukam

On that special day, Sugien, ([email protected])
said...
You are listening to those that are my nemisis's

Pondering about the possibility of forming a plurale for the name of a
*unique* ancient graecian monster - could it be that it rather *would*
be Nemesai?


Gabriele Neukam

(e-mail address removed)
 
R

Ron 'Smitty' Roberts

Bart said:
Third person self reference implies a desire to maintain a protective
layer of insulation, however evanescent it may be, and I suspect it's
not so much reality falling short of their expectations of merit, but
rather fear that reality may exceed their ability to cope.

Fascinating, Bart. But how do you feel about people who quote their own
sockpuppets, pretending they are a separate identity?
 
S

Sugien

Ron 'Smitty' Roberts said:
Fascinating, Bart. But how do you feel about people who quote their own
sockpuppets, pretending they are a separate identity?


I love it when people think I am someone else and then that person refuses
to deny it thus making them think it all the more. I get quite a good laugh
when they accuse someone of being me, rofl espessaley when it isn't the
first time. All someone needs to do is to try and copy my unique posting
style and then they get acused of being me, te he he
 
F

Frederic Bonroy

Sugien said:
All someone needs to do is to try and copy my unique posting
style and then they get acused of being me, te he he

Once you have copied a unique style it's no longer unique because it has
been copied. And anyway - hoo would delebarately cpoy your psoting stile
not saying thos could not hapen but it seems unlielky because as you sed
in alt.comt.virus yuor stlye is uneek so still not saying this is
impossible but it seems not likely because who would want to be mistook
for you. But le'ts sea if this makes peeple thing that I am you whioch I
am not and will never be and have never claimed and never will claim to
be and will never claim to have been and I did give credit to the
original author who gave the source away for free and this is just an
epxre... expermi... a test to sea if peolpe think I am yuo.


Wait! Did you just post to alt.comp.virus? Horror! Scandalous!

(Greetings to your cousin Laura.)
 
L

Laura Fredericks

-----BEGIN PGP SIGNED MESSAGE-----
Hash: SHA1

Once you have copied a unique style it's no longer
unique because it has been copied. And anyway - hoo
would delebarately cpoy your psoting stile not saying
thos could not hapen but it seems unlielky because as
you sed in alt.comt.virus yuor stlye is uneek so
still not saying this is impossible but it seems not
likely because who would want to be mistook for you.
But le'ts sea if this makes peeple thing that I am
you whioch I am not and will never be and have never
claimed and never will claim to be and will never
claim to have been and I did give credit to the
original author who gave the source away for free and
this is just an epxre... expermi... a test to sea if
peolpe think I am yuo.

ROFLMAO! That was hysterical! :-D
(Greetings to your cousin Laura.)

<smack> Sooooooooooge is no relative of mine! ;-)

-----BEGIN PGP SIGNATURE-----
Version: PGP 8.0.2
Comment: http://www.queenofcyberspace.com/laura_fredericks.asc

iQA/AwUBP+DHgaRseRzHUwOaEQJ5bwCfUBCe5dMJagufxgN2aXa8j4DKWQ8AoIBf
CxiAHnvi4WYbOpvBGZoKINoF
=5Y5F
-----END PGP SIGNATURE-----

--
Laura Fredericks
PGP key ID - DH/DSS 2048/1024: 0xC753039A

http://www.queenofcyberspace.com/usenet/

Remove CLOTHES to reply.
 
H

Heather

Frederic Bonroy said:
Once you have copied a unique style it's no longer unique because it has
been copied. And anyway - hoo would delebarately cpoy your psoting stile
not saying thos could not hapen but it seems unlielky because as you sed
in alt.comt.virus yuor stlye is uneek so still not saying this is
impossible but it seems not likely because who would want to be mistook
for you. But le'ts sea if this makes peeple thing that I am you whioch I
am not and will never be and have never claimed and never will claim to
be and will never claim to have been and I did give credit to the
original author who gave the source away for free and this is just an
epxre... expermi... a test to sea if peolpe think I am yuo.

Hilarious, young lad!! You have now added another language to your
repertoire......Chillicothe Hillbilly!! (VBG)

Best....Heather
 

Ask a Question

Want to reply to this thread or ask your own question?

You'll need to choose a username for the site, which only take a couple of moments. After that, you can post your question and our members will help you out.

Ask a Question

Top