AOA AOA AOA Folding For Team 45 AOA Files Home Front Page Become an AOA Subscriber! UserCP Calendar Memberlist FAQ Search Forum Home


Go Back   AOA > General > Random Nonsense!
Register FAQ Members List Calendar Arcade Search Today's Posts Mark Forums Read

Random Nonsense! A general discussion on all earthly and heavenly things.


Reply
 
LinkBack Thread Tools Rate Thread
  #1 (permalink)  
Old 9th February, 2002, 06:32 PM
Daniel ~'s Avatar
Chief BBS Administrator
 
Join Date: September 2001
Location: Seattle Wa.
Posts: 37,099

Bill Knows how to share! He want's eveyone to share YOUR FILES!!!

Just a snipent of the joys that await you! A must read!!!

From THE REGISTER!!
http://www.theregister.co.uk/content/4/24004.html

IE bug allows full MSN Messenger hijack
By Thomas C Greene in Washington
Posted: 09/02/2002 at 22:11 GMT


The recent privacy stuff-up in Messenger "pales in comparison to what can be done if you use MSN Messenger through unpatched IE vulnerabilities," security researchers Tom Gilder and Thor Larholm have discovered.

Among the fun and games one can have with a vulnerable Messenger user are such sports as impersonating the victim and sending spoof messages and spoof e-mail memos to his contacts, and scouring his local drive for interesting files to share around.

In other words, you can do anything with the victim's Messenger client that the owner can do.

A demonstration has been set up here.

http://www.theregister.co.uk/content/4/24004.html
__________________
"Though all men live in ignorance before mystery,
they need not live in darkness...
Justice is foundation and ETERNAL
."
DKE

"All that we do is touched by Ocean
Yet we remain on the shore of what we know."
Richard Wilbur


Subscribers! Ask Pitch about a Custom Sig Graphic

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #2 (permalink)  
Old 9th February, 2002, 07:03 PM
Holst's Avatar
Member
 
Join Date: September 2001
Location: Leics UK
Posts: 4,527

God damnit.

That website pulled all my online contacts up and let me send a message to them.

It makes you sick..

Whats the point in running a firewall if M$ leave the door wide open with buggy software.

I cant decide if I should uninstall it or not ?
Is this thing a potential threat, or just a potential annoyance.
__________________
No longer Epox Tech.

Best of luck in the future all my friends.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #3 (permalink)  
Old 9th February, 2002, 07:10 PM
Superman's Avatar
Systems Administrator
 
Join Date: September 2001
Location: WI
Posts: 4,406
Send a message via ICQ to Superman

Hmmm. I never use MSN, so I uninstalled it long ago.

EDIT: Some of that other stuff on the site the Reg linked to is scary though.
__________________
"And, most of all, remember this descendant of David who beat the hell out of death."
-from the book "Six Hours One Friday" by Max Lucado

"You have to go outside the sequence of engines, into the world of men, to find the real originator of the rocket. Is it not equally reasonable to look outside nature for the real Originator of the natural order?
-C.S. Lewis


Director of JavaScript section of the Allied Sites Support Team, web designer and programmer for DaOCPlace, and co-web designer and programmer for AOA Files

Avatar by Epox Tech



<>< I Believe-Do You?
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #4 (permalink)  
Old 9th February, 2002, 07:29 PM
sfa ok's Avatar
Member
 
Join Date: September 2001
Location: Chicago, IL
Posts: 93
Send a message via ICQ to sfa ok Send a message via AIM to sfa ok

It's bad and all, but just a reason to go and patch your IE. Or go with Mozilla. Personally, I don't use MSN messenger because I don't know anyone else who does.
__________________
I like pie.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #5 (permalink)  
Old 9th February, 2002, 08:59 PM
robbie's Avatar
AOA Staff, Suffer Well.
 
Join Date: November 2001
Location: Out in the desert of Ca.
Posts: 11,295
Send a message via AIM to robbie Send a message via MSN to robbie Send a message via Yahoo to robbie Send a message via Skype™ to robbie

at least it asked for a password for me.

Rob
__________________
Taking each day as it comes
Grow, learn and OVERCLOCK. Need help?? Ask me.
Your Mommy!! (Aug/02) Welcome to the fold.
Buy it, Sell it, or Trade it in the AoA classifieds!!
AOA Team fah
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #6 (permalink)  
Old 9th February, 2002, 09:45 PM
Ploaf's Avatar
Member
 
Join Date: September 2001
Posts: 130
Send a message via ICQ to Ploaf Send a message via AIM to Ploaf Send a message via Yahoo to Ploaf

It didn't load my contact list, but it did load "Windows" messenger and tried to load my contact list. I had used Zone Alarm in the past to disable all access for Messenger. I allowed it this time to see what would happend but I still denied server rights. I don't know if that helped or not, but it never did show my contact list. I have my settings on anal once again and messenger has no more rights to my connection.
__________________
Folding on a pencil and paper
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #7 (permalink)  
Old 10th February, 2002, 11:19 PM
Wa11y's Avatar
Member
 
Join Date: September 2001
Location: Right behind you.
Posts: 1,358

Whee! I'm surfing the web with Konqueror right now! No more of Bubba's bull**** for me! Well, okay, I just go Linux installed and running an hour or two ago, but it's a step in the right direction.

I try to keep updated on all the IE security patches, but God knows it's a losing battle. MS just need to give up on making software suites, and just go back to the core OS. And focus on securing our assets, not just their own.
__________________
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #8 (permalink)  
Old 11th February, 2002, 12:11 AM
Daniel ~'s Avatar
Chief BBS Administrator
 
Join Date: September 2001
Location: Seattle Wa.
Posts: 37,099

Way to go Wally! My next machine's going to be Linux from the get go!
__________________
"Though all men live in ignorance before mystery,
they need not live in darkness...
Justice is foundation and ETERNAL
."
DKE

"All that we do is touched by Ocean
Yet we remain on the shore of what we know."
Richard Wilbur


Subscribers! Ask Pitch about a Custom Sig Graphic

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #9 (permalink)  
Old 11th February, 2002, 10:40 AM
Member
 
Join Date: November 2001
Location: Rotherham, UK
Posts: 146

for some reason it didnt work for me... i think im patched up already (win2k, sp2 methinks)
__________________
Dave - Spode's Abode

Dogs can never have too much fun! See Marge, Weee, weee, woo! wayhey! weeeeeeeee!!! -Homer
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #10 (permalink)  
Old 12th February, 2002, 07:46 AM
Ploaf's Avatar
Member
 
Join Date: September 2001
Posts: 130
Send a message via ICQ to Ploaf Send a message via AIM to Ploaf Send a message via Yahoo to Ploaf

I just downloaded an updated messenger and it doesn't suffer from this flaw anymore. It's just a matter of time before some other problem is found.
__________________
Folding on a pencil and paper
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #11 (permalink)  
Old 12th February, 2002, 03:52 PM
Daniel ~'s Avatar
Chief BBS Administrator
 
Join Date: September 2001
Location: Seattle Wa.
Posts: 37,099

Quote:
Originally posted by Ploaf
I just downloaded an updated messenger and it doesn't suffer from this flaw anymore. It's just a matter of time before some other problem is found.
Mind you a hell of a lot of people NEVER update their OS. They wait and buy a new machine.
__________________
"Though all men live in ignorance before mystery,
they need not live in darkness...
Justice is foundation and ETERNAL
."
DKE

"All that we do is touched by Ocean
Yet we remain on the shore of what we know."
Richard Wilbur


Subscribers! Ask Pitch about a Custom Sig Graphic

Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #12 (permalink)  
Old 12th February, 2002, 07:31 PM
Holst's Avatar
Member
 
Join Date: September 2001
Location: Leics UK
Posts: 4,527

Quote:
Originally posted by Ploaf
I just downloaded an updated messenger and it doesn't suffer from this flaw anymore. It's just a matter of time before some other problem is found.
I have all the updates and mine still gives out my contacts.
Im running win2k.

Ill try making zonalarm a bit harsher on MSN and see if that fixes it.
__________________
No longer Epox Tech.

Best of luck in the future all my friends.
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
  #13 (permalink)  
Old 12th February, 2002, 08:12 PM
nullCRC's Avatar
Member
 
Join Date: January 2002
Location: Richmond, VA
Posts: 270

Do you have this update?
__________________
Press ALT+F4 to learn more

"If you can't make it good, make it look good." - Bill Gates, 1995

Defeat Autism Now!
Athalon XP 1600
Epox EP-8KHA+
Thermaltake Volcano 6cu
512MB Crucial DDR PC2100
Enlight EN-7237 AZ MT Case
Gainward GF3 Ti200 64MB Power Pack Golden Sample
Adaptec 2940UW
Seagate Cheetah 9.1GB SCSI
HP 9200i SCSI CDRW
Sony 50X IDE CDROM
Iomega 100 Internal Zip SCSI
Sony CPD-E500 21" Trinitron
NetGear RP114
RatPadz mousing surface
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools
Rate This Thread
Rate This Thread:

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is Off
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
I'd like to share............. Gizmo AOA's Community Support 4 15th October, 2004 09:06 AM
Cannot Share Files in WinXP RussianMissile1 Mobile Devices and Networking 18 26th September, 2003 08:12 PM
Unable to share files...WinXP... el_dub Mobile Devices and Networking 4 13th August, 2003 09:39 AM
I really have to share this with all of you... Pinky Random Nonsense! 0 6th November, 2001 08:57 PM
Your NOT doing your share!! Daniel ~ Random Nonsense! 11 19th October, 2001 09:36 PM


All times are GMT -6. The time now is 12:09 PM.


Copyright ©2001 - 2007, AOA Forums

Search Engine Friendly URLs by vBSEO 3.2.0