![]() |
|
#1
|
||||
|
||||
|
Quote:
Secunia Netscape Opera |
|
#2
|
|||
|
|||
Re: Mozilla / Firefox / Camino IDN Spoofing Security Issue
|
|
#3
|
|||
|
|||
Re: Mozilla / Firefox / Camino IDN Spoofing Security Issue
Hi All,
Here's a Work around for FireFox: Use about:config and set 'network.enableIDN' : False And run the Test again. ![]() EDIT: This Work Around will reset after you close FF, and leave you unprotected when FF is next launched. Read lynchknot Post Below, for a better solution. Thanks lynchknot HTH, Steve Last edited by dog : February 8th, 2005 at 12:05 AM. Reason: added Edit Note |
|
#4
|
||||
|
||||
|
|
|
#5
|
||||
|
||||
|
does not work - this does: http://forums.mozillazine.org/viewto...light=#1216193
http://www.dslreports.com/forum/rema...rt=20#12607819 Quote:
Quote:
Quote:
__________________
Firefox Themes20050620 Firefox/1.0.5 |
|
#6
|
|||
|
|||
Re: Mozilla / Firefox / Camino IDN Spoofing Security Issue
It works for me (Use about:config and set 'network.enableIDN' : False) ... See ScreenShot (diect connection / not using Proxomitron)
Steve |
|
#7
|
||||
|
||||
|
It only works once. Shut down Firefox all the way and try again (it's been reported as only works per session)
Quote:
Unless: Quote:
__________________
Firefox Themes20050620 Firefox/1.0.5 |
|
#8
|
||||
|
||||
|
'network.enableIDN' : False It doesn't work for me in firefox or mozilla 1.7.5
__________________
The Only Safe Computer Is Unplugged ![]() MEMBER ASAP since 2004 Alliance of Security Analysis Professionals |
|
#9
|
|||
|
|||
Re: Mozilla / Firefox / Camino IDN Spoofing Security Issue
Quote:
Thanks lynchknot ... You are correct. I'll use the method you posted. Thanks Steve Ps. I edited my original Post regard the work around to reflect this. |
|
#10
|
||||
|
||||
|
Quote:
![]()
__________________
Firefox Themes20050620 Firefox/1.0.5 |
|
#11
|
|||
|
|||
Re: Mozilla / Firefox / Camino IDN Spoofing Security Issue
Just added info ... Kye-U's Filters V4.30 for Proxomitron also prevent this exploit.
![]() Kye-U's Forum (link to post) - http://www.kye-u.com/proxo/forums/in...225&#entry3846 Direct Download of Kye-U's V4.30 .cfg ~Zipped~ - http://www.kye-u.com/proxo/dp/download.php?file=18 (I hope, you don't mind me posting a direct link Kye-U) Steve Edit - The Forum is up It was a bad link I posted. Sorry Kye-U. ![]() Last edited by dog : February 8th, 2005 at 12:50 AM. Reason: Edit comment |
|
#12
|
|||
|
|||
|
Quote:
Up for me ^_^ Sorry, my server is up and down like a yo-yo. I don't mind ![]() Thanks for including my pack into this topic ![]() For those who just want the Proxomitron filter to remove this exploit, here it is: Code:
|
|
#13
|
||||
|
||||
|
More info (for those not using proxy)
Quote:
Quote:
__________________
Firefox Themes20050620 Firefox/1.0.5 |
|
#14
|
||||
|
||||
|
Maybe this needs it's own thread? I don't know but anyway, i'm using this and it works wonderfully so i'm posting:
Quote:
Thanks Serlio, looks interesting. **edit - wonderful. you can still visit site but are warned (Japanese sites - or sites that use IDN characters work - instead of disabling IDN altogether) http://img239.exs.cx/img239/4042/warn1io.jpg
__________________
Firefox Themes20050620 Firefox/1.0.5 |
|
#15
|
|||
|
|||
|
Looks good! I've fixed up the english a bit:
Code:
You can update it in: C:\Documents and Settings\NAME\Application Data\Mozilla\Firefox\Profiles\ ![]() .default\extensions\{e4a8a97b-f2ed-450b-b12d-ee082ba24781}\chrome\greasemonkey\content\scripts\1107926373489Also I wrote another Proxomitron filter to kill a connection to a spoofed site: Code:
|
|
#16
|
|||
|
|||
Re: Mozilla / Firefox / Camino IDN Spoofing Security Issue
Agreed
Nice find lynchknot ThanksThanks too Kye-U ... I'll up date it in a moment ![]() Steve Edit: Updated Screen Shot ... after editing the script ... Screen Shot now showing Kye-U's language update. ![]() Last edited by dog : February 9th, 2005 at 12:41 AM. |
|
#17
|
|||
|
|||
|
I find it great when web users come together and fight against browser vulnerabilities and exploits ^_^
Dog, it's just some minor changes BTW, here's something else I stumbled on at DSLReports: A fix posted on MozillaZine.org for Firefox: Quote:
Last edited by Kye-U : February 9th, 2005 at 12:44 AM. |
|
#18
|
|||
|
|||
Re: Mozilla / Firefox / Camino IDN Spoofing Security Issue
Quote:
^_^ |
|
#20
|
||||
|
||||
|
Hi,
I've already read your first post, Spanner. But if someone missed it, he could be informed here. On the next link, some pdf papers are available about web applications attacks like: *Security Best Practice:Host Naming and URL Conventions (quite technical but very interesting), *The Phishing Guide. http://www.ngssoftware.com/papers.htm Thanks for the fight against those dangerous attacks. Regards
__________________
Independent vision of Security (Security? Yeah But Well: http://www.ouaismaisbon.ch/ ) Fight child crime: http://www.circamp.eu/ http://www.virtualglobaltaskforce.com/ |
|
#21
|
||||
|
||||
|
Although I do not like to have another toolbar added to my browser some may want the updated spoofstick: http://www.jarnot.com/mt/archives/20...ox_spoof_s.php
http://img204.exs.cx/img204/4094/homo4ad.png
__________________
Firefox Themes20050620 Firefox/1.0.5 |
|
#23
|
|||
|
|||
|
Quote:
Nice links. Not that technical really, I think it should be accessible to most people on this forum. |
|
#24
|
||||
|
||||
|
Hi,
***I know there's many advanced users on this forum. But i always have a thought for newbies and classicals users. ***It's difficult to prevent those kind of attacks. Spoofstick is not a radical solution.It's also possible to "spoof" it! It's also the same for DNS, TCP, IP, UDP, ARP, URL... What a great world Web where everything is spoofed! The only positive thing is that :the more advanced is the attack, the less frequent she is (particularly against home users). Regards
__________________
Independent vision of Security (Security? Yeah But Well: http://www.ouaismaisbon.ch/ ) Fight child crime: http://www.circamp.eu/ http://www.virtualglobaltaskforce.com/ |
|
#25
|
|||
|
|||
|
Quote:
OMG. On the behalf of everyone on Wilders, I sincerely thank you for this. Without you the rest of us would never have read about this in oh about a billion other places. ![]() |
| « Previous Thread | Next Thread » |
| Thread Tools | Search this Thread |
|
|