Hard Light Productions Forums

Off-Topic Discussion => General Discussion => Topic started by: Sandwich on August 18, 2003, 12:13:46 pm

Title: Interesting HTML Exploit
Post by: Sandwich on August 18, 2003, 12:13:46 pm
http://www.computerbytesman.com/security/notepadpopups.htm
Title: Interesting HTML Exploit
Post by: Hippo on August 18, 2003, 12:52:58 pm
:nervous: new ideas are amok :nervous:
Title: Interesting HTML Exploit
Post by: Galemp on August 19, 2003, 01:02:40 pm
:shaking: I hope Microsoft gets on this before the Evil Spammers do...
Title: Interesting HTML Exploit
Post by: Taristin on August 19, 2003, 01:33:06 pm
What a pain in the ass...
Title: Interesting HTML Exploit
Post by: J.F.K. on August 20, 2003, 08:03:17 am
Ack, that's malicious! My sacrosanct Notepad, what will I ever do? :hopping:
Title: Interesting HTML Exploit
Post by: Turnsky on August 20, 2003, 08:38:28 am
is nothing sacred?:hopping:
Title: Interesting HTML Exploit
Post by: Stealth on August 20, 2003, 03:16:30 pm
this has been known about for some time, it's just that no one actually thought about using it maliciously.
Title: Interesting HTML Exploit
Post by: Sandwich on August 21, 2003, 03:39:58 am
OOh, I got it working on the forum! :p

[q]<IMG SRC="view-source:http://www.computerbytesman.com/security/npexample.txt">[/q]

You can see what it does using the preview reply button, but please don't actually post a reply with this - it would just be annoying.
Title: Interesting HTML Exploit
Post by: Admiral LSD on August 21, 2003, 10:12:31 am
*resists urge to quote Sandwichs post to give all the IE users on the board the ****s*

heh, no matter what I try I simply can not get Opera to use that protocol, lucky me :D
Title: Interesting HTML Exploit
Post by: Sandwich on August 21, 2003, 05:41:27 pm
Quote
Originally posted by Admiral LSD

heh, no matter what I try I simply can not get Opera to use that protocol, lucky me :D


Yeah, same here with Mozilla. :D
Title: Interesting HTML Exploit
Post by: Taristin on August 21, 2003, 07:35:27 pm



;7
Title: Interesting HTML Exploit
Post by: Flipside on August 21, 2003, 07:59:41 pm
Grrrrrrrrrrrrrrr... that's bloody annoying! LOL

I really hope Microsoft come up with a fix to this one soon!

Flipside :D
Title: Interesting HTML Exploit
Post by: Admiral LSD on August 22, 2003, 12:53:19 am
They won't, it's not like it's a serious security vulnerability it's just something designed for one purpose that's being used for something completely different. You know, like e-mail (spam), telephones (telemarketing) etc
Title: Interesting HTML Exploit
Post by: diamondgeezer on August 22, 2003, 01:21:01 am
I dunno, they appear to enjoy making patches with descriptions like 'this vulnerability could be exploited by hackers who you actually invite round to your house and let lose on your computer while you make them a cup of tea'. They've made patches for (seemingly) more trivial things. Observe (http://www.download.windowsupdate.com/msdownload/update/v3/static/RTF/en/5360.htm)