Greenguy's Board


Go Back   Greenguy's Board > General Business Knowledge
Register FAQ Calendar Today's Posts

Reply
 
Thread Tools Search this Thread Rate Thread Display Modes
Old 2005-02-08, 03:15 AM   #1
swedguy
Vagabond
 
swedguy's Avatar
 
Join Date: Aug 2003
Posts: 2,374
Send a message via ICQ to swedguy
All you FireFox users, beware!

The first exploit for it has come out... update your browsers.

http://www.shmoo.com/idn/
swedguy is offline   Reply With Quote
Old 2005-02-08, 08:22 AM   #2
Cleo
Subversive filth of the hedonistic decadent West
 
Cleo's Avatar
 
Join Date: Mar 2003
Location: Southeast Florida
Posts: 27,936
I saw that yesterday on a Mac site.

It is more a means of a way to do something malicious then anything else. Ironically it affects all browsers except IE. The people that make their living off of Phishing scams will love it. I'm guessing that we will see this hole quickly fixed.

You can read about it here
http://www.boingboing.net/2005/02/06..._exploit_.html
__________________
Free Rides on Uber and Lyft
Uber Car: uberTzTerri
Lyft Car: TZ896289
Cleo is offline   Reply With Quote
Old 2005-02-08, 11:04 AM   #3
Phoenix
Trying is the first step towards failure
 
Join Date: Jan 2004
Posts: 126
Send a message via ICQ to Phoenix
i checked for updates and it said none were available..maybe i should go back to IE until it is fixed.

Anyone have an update page?
__________________
ICQ#163879276
www.liondollars.com
Phoenix is offline   Reply With Quote
Old 2005-02-08, 11:10 AM   #4
Verbal
Verbal prefers 56K
 
Verbal's Avatar
 
Join Date: Sep 2003
Location: Chicago, IL
Posts: 563
Send a message via ICQ to Verbal
Phoenix, Mozilla is working to find a long-term solution so don't expect any patches soon. Why go back to IE though? Mozilla currently has one exploit... IE has like millions... Here's a workaround from that first link posted:

Quote:
You can disable IDN support in mozilla products by setting 'network.enableIDN'
to false. There is no workaround known for Opera or Safari.
__________________
Verbal
Verbal is offline   Reply With Quote
Old 2005-02-08, 11:11 AM   #5
swedguy
Vagabond
 
swedguy's Avatar
 
Join Date: Aug 2003
Posts: 2,374
Send a message via ICQ to swedguy
There's a workaround

http://www.shmoo.com/idn/homograph.txt

Quote:
You can disable IDN support in mozilla products by setting 'network.enableIDN'
to false. There is no workaround known for Opera or Safari.
Type in "about:config"
Search for "network.enableIDN"
Double click it and it will change from "true" to "false".


EDIT: Yeah what Verbal said
swedguy is offline   Reply With Quote
Old 2005-02-08, 11:15 AM   #6
Verbal
Verbal prefers 56K
 
Verbal's Avatar
 
Join Date: Sep 2003
Location: Chicago, IL
Posts: 563
Send a message via ICQ to Verbal
lol.
__________________
Verbal
Verbal is offline   Reply With Quote
Old 2005-02-08, 11:16 AM   #7
Cleo
Subversive filth of the hedonistic decadent West
 
Cleo's Avatar
 
Join Date: Mar 2003
Location: Southeast Florida
Posts: 27,936
Yeah what Verbal said too.

For the Safari uses out there here is an unofficial patch.
http://haoli.dnsalias.com/
__________________
Free Rides on Uber and Lyft
Uber Car: uberTzTerri
Lyft Car: TZ896289
Cleo is offline   Reply With Quote
Old 2005-02-08, 11:50 AM   #8
cd34
a.k.a. Sparky
 
cd34's Avatar
 
Join Date: Sep 2004
Location: West Palm Beach, FL, USA
Posts: 2,396
The other thing you can do is stop clicking on links that look like your bank/credit card/paypal has suspended your account for unauthorized activity.
__________________
SnapReplay.com a different way to share photos - iPhone & Android
cd34 is offline   Reply With Quote
Old 2005-02-08, 12:19 PM   #9
Useless
Certified Nice Person
 
Useless's Avatar
 
Join Date: Oct 2003
Location: Dirty Undies, NY
Posts: 11,268
Send a message via ICQ to Useless
Quote:
Originally Posted by cd34
The other thing you can do is stop clicking on links that look like your bank/credit card/paypal has suspended your account for unauthorized activity.
Exactly! Why would you follow those links in an email or on some strange site anyway?

Besides, if you look at the address bar while the page is being found, it displays the actual url that it's connecting to.

cd34- love that sig.
__________________
Click here to purchase a bridge I'm selling.
Useless is offline   Reply With Quote
Old 2005-02-08, 12:23 PM   #10
PR_Tom
Nobody gets into heaven without a glowstick
 
Join Date: Feb 2005
Posts: 423
I love getting emails saying something is wrong with my Paypal account. Cuz I dont have one
Nor does my bank *ever* send an email. Ever.

deleted deleted deleted
__________________
PimpRoll
PR_Tom is offline   Reply With Quote
Old 2005-02-08, 12:24 PM   #11
cd34
a.k.a. Sparky
 
cd34's Avatar
 
Join Date: Sep 2004
Location: West Palm Beach, FL, USA
Posts: 2,396
The issue in the alternative browsers is that the below url MIGHT render differently depending on which character sets the user has support for. In some versions of firefox with limited fontsets, the à will be displayed as an a because it doesn't have the actual character. Thus, it looks like the right place, but, you're in the wrong place

http://www.pàypal.com
http://www.ebày.com
__________________
SnapReplay.com a different way to share photos - iPhone & Android
cd34 is offline   Reply With Quote
Old 2005-02-08, 12:32 PM   #12
Kath
No offence Apu, but when they were handing out religions you must have been out taking a whizz
 
Kath's Avatar
 
Join Date: Apr 2003
Location: California, USA
Posts: 284
Send a message via ICQ to Kath Send a message via Yahoo to Kath
Wow *ONE* possible hole? I'm still sticking with my Firefox THANK YOU. Good point, compared to MSIE - ONE possible hole is nothing. lol

But thanks for the news/update - I hadn't heard about this yet.

Kath is offline   Reply With Quote
Old 2005-02-08, 02:37 PM   #13
cakewalker
Rock stars ... is there anything they don't know?
 
Join Date: Nov 2004
Posts: 12
I'd stick to Firefox if I were you. Avoid IE at all costs.

IE has severe security vulnerabilities and nothing will fix the app apart from a total rewrite.

There are A LOT of public and non-public security flaws for IE that have no fix yet because MS is still working on them (some are 5months+ late)

By non-public security flaws I mean ones that hackers find, keep to themselves and not reveal them to MS or the online community. So the average Joe thinks he is safe because he is totally patched up but he isn't.
cakewalker is offline   Reply With Quote
Old 2005-02-08, 02:57 PM   #14
Aquarius
Hey, can you take the wheel for a second, I have to scratch my self in two places at once
 
Aquarius's Avatar
 
Join Date: Jul 2004
Posts: 182
Thanks for the heads up, but as some people already said, I don't think that one exploit is enough to get back to IE which is full of them.
__________________
ICQ: 110-990-327
Aquarius is offline   Reply With Quote
Old 2005-02-08, 05:27 PM   #15
Alphawolf
Don't come to Florida for vacation. We're closed.
 
Alphawolf's Avatar
 
Join Date: Nov 2003
Location: Orlando, Florida
Posts: 1,874
Big updates from MS today...

http://story.news.yahoo.com/news?tmp...osoft_security
Alphawolf is offline   Reply With Quote
Old 2005-02-08, 05:55 PM   #16
Aquarius
Hey, can you take the wheel for a second, I have to scratch my self in two places at once
 
Aquarius's Avatar
 
Join Date: Jul 2004
Posts: 182
Quote:
Originally Posted by Alphawolf
Damn... those are a lot of patches.
__________________
ICQ: 110-990-327
Aquarius is offline   Reply With Quote
Old 2005-02-08, 08:22 PM   #17
kaktusan
Shut up brain, or I'll stab you with a Q-tip!
 
kaktusan's Avatar
 
Join Date: May 2004
Location: Bulgaria
Posts: 113
Send a message via ICQ to kaktusan Send a message via AIM to kaktusan
Today saw about this problem on other board, and fixed my FireFox already.
No way i turn back to IE, since i never used it
__________________
kaktusan is offline   Reply With Quote
Old 2005-02-09, 11:27 AM   #18
cd34
a.k.a. Sparky
 
cd34's Avatar
 
Join Date: Sep 2004
Location: West Palm Beach, FL, USA
Posts: 2,396
Here's the company that 'discovered' the exploit and has a test so you can see.

http://secunia.com/multiple_browsers_idn_spoofing_test/

http://www.payp********l.com/ (this is the link that they have constructed)

Not that I like Secunia much, I don't think they are an honest white-hat company, but, they are the only one that had a valid test that I could see.
__________________
SnapReplay.com a different way to share photos - iPhone & Android
cd34 is offline   Reply With Quote
Old 2005-02-09, 11:47 AM   #19
Tommy
NYC Boy That Moved To The Island
 
Join Date: Apr 2003
Posts: 2,940
Send a message via ICQ to Tommy
those bank emails are very convincing looking

There are a lot of stupid people out there

my neighbors called me the other day because they couldnt get to a web site
they thought they had a problem with their computer
__________________
Accepting New partners
Tommy is offline   Reply With Quote
Old 2005-02-09, 12:42 PM   #20
Alphawolf
Don't come to Florida for vacation. We're closed.
 
Alphawolf's Avatar
 
Join Date: Nov 2003
Location: Orlando, Florida
Posts: 1,874
It's not so much that they are stupid as some people (many?) get a computer just to use e-mail and do basic word processing and web browsing.

Especially older people...they tend to really think the spam e-mails sent to them are...specifically for them.

Couple days ago my friend called and told me you won't believe how stupid Patty's father is. Patty is his cousin's wife.

He tells me that he got one of those e-mail from Nigeria where you need to just send a ceratin amount and they will send you back a lot more. Like someone is in prison or some shit...

So...(and this isn't a joke) the guy sends them his life savings of $30k. He gets a cashiers check and goes to the bank to cash it. The FBI contacts him couple days later asking why he is doing this and tells him it's a scam- not to be involved in any way. They also told him he lost all his money and there was nothing they could do.

Like the next week he got another Cashier's check for $120,000k - this time the bank is Canadian.

He calls the Canadian bank to ask if it's a valid check. They tell him it is.

He goes to Canada to cash it. FBI was waiting there. Now they are thinking he is in on it. He was desperate. Now he is in a Canadian jail and his savings is still gone of course.

Fucked up, huh?

Older people who are just getting a computer are most vulnerable to those very official looking e-mails made to look like they are from banks, paypal, ebay, etc...

Ignorance is bad when you're hooked to the 'net.
Alphawolf is offline   Reply With Quote
Old 2005-02-09, 01:04 PM   #21
mpahlca
I'm going to the backseat of my car with the woman I love, and I won't be back for TEN MINUTES
 
mpahlca's Avatar
 
Join Date: Apr 2003
Location: Vancouver B.C. Canada
Posts: 89
Thanks guys nice to see how fast we all get these things fixed!
__________________
michael@twistys.com ICQ: 348682342
mpahlca is offline   Reply With Quote
Old 2005-02-09, 02:02 PM   #22
johnshinil
WHO IS FONZY!?! Don't they teach you anything at school?
 
johnshinil's Avatar
 
Join Date: Jan 2005
Posts: 40
Send a message via ICQ to johnshinil
Thanks Swedguy for the warning.

Regards,

JohnShinil.
johnshinil is offline   Reply With Quote
Old 2005-02-09, 03:28 PM   #23
BlueQuartz
The only guys who wear Hawaiian shirts are gay guys and big fat party animals
 
BlueQuartz's Avatar
 
Join Date: Jun 2004
Posts: 175
ie all the way baby
BlueQuartz is offline   Reply With Quote
Old 2005-02-11, 09:58 PM   #24
Bell
I saw weird stuff in that place last night. Weird, strange, sick, twisted, eerie, godless, evil stuff. And I want in
 
Bell's Avatar
 
Join Date: Apr 2003
Location: Dayton, Ohio (currently)
Posts: 455
Quote:
Originally Posted by swedguy
There's a workaround

http://www.shmoo.com/idn/homograph.txt



Type in "about:config"
Search for "network.enableIDN"
Double click it and it will change from "true" to "false".


EDIT: Yeah what Verbal said

that fix only work for about 1 in 10 that try it...

the big Moz - doesn't know why yet...

but FF is still much safer than IE in my opinion...

~Bell

p.s. the going back in FF version isn't a fix/fix either... nor is the uninstall and completely reinstall... doesn't work for everyone... very few in fact... guess those affected will have to wait for a patch...
__________________
1000's of Domain Names to Choose from at DomainBELL.com
Bell is offline   Reply With Quote
Old 2005-02-11, 10:46 PM   #25
plateman
What can I do - I was born this way LOL
 
plateman's Avatar
 
Join Date: Oct 2003
Location: ohio
Posts: 3,086
check this one out a person we know gets a job over the net and its a writing or some kind of review thing and the pay was 150.00 a week so 3 days later she gets a check for 1500.00 so she takes it to the bank and put it in her account, the next day she gets a email and it said we made a mistake wire us the difference so the bank messed up and didnt put a hold on it so off goes the money and the person is responsible for the money.. and its sad because it is allways someone honest or someone who needs to make a few extra bucks..
__________________
Submit to: Porn O Plenty XXX Links
Reality Here
plateman is offline   Reply With Quote
Reply


Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off

Forum Jump


All times are GMT -4. The time now is 03:58 PM.


Mark Read
Powered by vBulletin® Version 3.8.1
Copyright ©2000 - 2025, Jelsoft Enterprises Ltd.
© Greenguy Marketing Inc