Author Topic: Permanent fix for the Shmoo Group Exploit!  (Read 2452 times)

0 Members and 1 Guest are viewing this topic.

Offline polonus

  • Avast Überevangelist
  • Probably Bot
  • *****
  • Posts: 33900
  • malware fighter
Permanent fix for the Shmoo Group Exploit!
« on: August 31, 2007, 12:21:30 AM »
Hi malware fighters,

This won't work in IE for it has not implemented it, see here for the pure evil (demo only) & the solution:
http://users.tns.net/~skingery/weblog/2005/02/permanent-fix-for-shmoo-group-exploit.html
Old exploit still worked in FF 3.0 Gran Paradiso.

Some of my data there (interesting bits for hackers left out) :
@mozilla.org/intl/unicode/decoder;1?charset=x-imap4-modified-utf7,
@mozilla.org/profile/migrator;1?app=browser&type=ie,
@mozilla.org/image/decoder;2?type=image/x-xbm,
@mozilla.org/intl/texttransform;1?type=hankakutozenkaku,
@mozilla.org/alerts-service;1,
@mozilla.org/oji/jvm-mgr;1,
@mozilla.org/uriloader/content-handler;1?type=image/jpg,
@mozilla.org/xmlextras/soap/encoding;1?uri=http://schemas.xmlsoap.org/soap/encoding/,
@mozilla.org/intl/unicode/decoder;1?charset=x-windows-949,
@mozilla.org/intl/unicode/encoder;1?charset=T.61-8bit,
@mozilla.org/intl/unicode/encoder;1?charset=ISO-8859-6,
@mozilla.org/intl/unicode/decoder;1?charset=ISO-8859-7,
@mozilla.org/imgmanager;1,
@mozilla.org/security/x509certdb;1,

You are going to change the 1 to a 0 so the line reads: capito!

pol
Cybersecurity is more of an attitude than anything else. Avast Evangelists.

Use NoScript, a limited user account and a virtual machine and be safe(r)!