PDA

View Full Version : Internet Explorer Address Bar Spoofing Vulnerability


gerardwil
August 16th, 2004, 11:51 AM
Description:
Liu Die Yu has discovered a vulnerability in Internet Explorer, which potentially can be exploited by malicious people to conduct phishing attacks against a user.

NOTE: Currently known attack vectors do not work on Windows XP systems with SP2 applied.

http://secunia.com/advisories/12304/

You can test your browser via the link on this page.

Rita
August 16th, 2004, 12:41 PM
-{ Quote: "Description:
Liu Die Yu has discovered a vulnerability in Internet Explorer, which potentially can be exploited by malicious people to conduct phishing attacks against a user.

NOTE: Currently known attack vectors do not work on Windows XP systems with SP2 applied.

http://secunia.com/advisories/12304/

You can test your browser via the link on this page." }-
hello Gerardwil
thanks for the link i tested my browser and it wasnt vulnerable.
have a good day
rita

zcv
August 16th, 2004, 02:27 PM
Proxomitron will stop it as well.

Regards - Charles

xmp
August 25th, 2004, 03:43 PM
argh. i have win 98 se, ie 6 sp1 with full patches. with the demo, yahoo.com popped up in bar, then it triggered a flood of windows. it appears to partially work, but i had to close IE.

i'll download the JS and look at it.