Wilders Security Forums  

Go Back   Wilders Security Forums > Privacy Related Topics > privacy general
User Name
Password
Register FAQ Members List Calendar Search Today's Posts Mark Forums Read

 
 
Thread Tools Search this Thread
  #1  
Old May 26th, 2002, 12:50 PM
Ice_Czar's Avatar
Ice_Czar Ice_Czar is offline
Frequent Poster
 
Join Date: May 2002
Location: Boulder Colorado
Posts: 696
Default How Do I Fix This? IE leak?

http://www.xxx.de/
>go to Sicherheits-Check (Blue Menu to the left under Security)

URL deleted by Forum Admin because of various warez links

C:\ - Test

The contents of my C: directory are visable *

The Babelfish Translation:
Please, look just(exactly)! It is the content of THEIR(HER) non removable disk C:!
Herewith dubious web contents advertise at the moment around your favour / purse and throw many surfers. (Nevertheless, you Use the picture run borders, and open someone (e.g., *.txt) to file or file) counter measure: Not inevitably! It is, in this connection, only about a small trick, a so-called Framelink (here " file: \\\ C | \ ") on own non removable disk C: places. I.e. only you yourselves see your non removable disk and, otherwise, nobody


So this is just a trick? Can you block this Framelink? (without installing everything to D:\)?
__________________
ceterum censeo (in my opinion) Vista delenda est. (Vista must be destroyed)
It's time to switch
  #2  
Old May 27th, 2002, 07:56 AM
Checkout's Avatar
Checkout Checkout is offline
Security Rhinoceros
 
Join Date: Feb 2002
Posts: 1,226
Default Re: How Do I Fix This? IE leak?

It's just a cheap trick. *You have nothing to worry about.
__________________
My Novel
  #3  
Old May 27th, 2002, 08:14 AM
zappa zappa is offline
Regular Poster
 
Join Date: Feb 2002
Location: Los Angeles, Ca.
Posts: 176
Default Re: How Do I Fix This? IE leak?

That link won't last half the day. *I give it an hour, max.
  #4  
Old May 27th, 2002, 08:37 AM
Jooske's Avatar
Jooske Jooske is offline
Incredibly Massive Poster
 
Join Date: Feb 2002
Location: Netherlands, EU near the sea
Posts: 9,713
Default Re: How Do I Fix This? IE leak?

Paste this code in an email source or notepad, and save as html file.
this example shows your d:\ in the line with "location"
so you can change that for c:\

It was made with all good intensions by a webmaster who wanted his visitors to be able to see or grab files for download from his CD-ROM drive, to spare all the uploading, but something makes the visitors see their own d:\ , hence the unintended panic.
We can use this trick in an emulator to show the intruder his drive content is visible.
There is nothing wrong with this example, nothing illegal or whatever, just a little scipt as it is now to show your OWN drive content.
Mind the wrapped lines, stretch them back or you get error messages.


Code:
*<CENTER> *<SCRIPT language=JavaScript><!-- if (navigator.appName == 'Microsoft Internet Explorer'){ * * * * * *document.write('<left>') * * *document.write('<object id="browserIcons" classid="clsid:8856F961-340A-11D0-A96B-00C04FD705A2" align="baseline" border="0" width="100%" height="100%">') * * *document.write('<param name="Location" value="d:/">') * * *document.write('<param name="AlignLeft" value="1">') * * *document.write('<param name="AutoSize" value="1">') * * *document.write('<param name="AutoSizePercentage" value="100%">') * * *document.write('<param name="AutoArrange" value="1">') * * *document.write('<param name="NoClientEdge" value="false">') * * *document.write('<param name="ViewMode" value="3">') * * *document.write('</object>') * * *document.write('</left>') } // --></SCRIPT> *</CENTER>
__________________
Jooske
"o_o"
  #5  
Old May 30th, 2002, 01:44 AM
Ice_Czar's Avatar
Ice_Czar Ice_Czar is offline
Frequent Poster
 
Join Date: May 2002
Location: Boulder Colorado
Posts: 696
Default Re: How Do I Fix This? IE leak?

Thanx for the code Jooske *
You make it look so simple (but Im sure its not), Im goin to have to learn to script. Copied it to Notepad and saved as an HTML. *

To our Moderator

My profound apologies about the link, *(I assume in this case its the crack program and password viewer?) The "softwarez" links all lead to legitimate vendors.
Though the "hardwarez" links are semi legal tutorials?

Followed a link there initially to get a program to create custom BIOS logos. Found the program to crypt html pages so you cant save pictures, and tumbled to the above "trick"

Thought I had a leak, till I translated it twice and then posted here to make sure. And I was using the other security tests.

By that time Id completely forgotten about that crack program. (about a week had gone by)

Sorry
__________________
ceterum censeo (in my opinion) Vista delenda est. (Vista must be destroyed)
It's time to switch
  #6  
Old May 30th, 2002, 05:52 AM
Paul Wilders's Avatar
Paul Wilders Paul Wilders is offline
Administrator
 
Join Date: Jul 2001
Location: The Netherlands
Posts: 12,461
Default Re: How Do I Fix This? IE leak?

Hi Ice_Czar,

Forget about it; things like these happen unintentionally. No big deal *

regards.

paul
__________________
01110010 01100101 01100111 01100001 01110010 01100100 01110011 00100000 01110000 01100001 01110101 01101100
  #7  
Old May 30th, 2002, 08:10 AM
Checkout's Avatar
Checkout Checkout is offline
Security Rhinoceros
 
Join Date: Feb 2002
Posts: 1,226
Default Re: How Do I Fix This? IE leak?

I'd like to know what the term "Warez" actually means and where it originated.

MTIA
__________________
My Novel
  #8  
Old May 30th, 2002, 11:02 AM
Ice_Czar's Avatar
Ice_Czar Ice_Czar is offline
Frequent Poster
 
Join Date: May 2002
Location: Boulder Colorado
Posts: 696
Default Re: How Do I Fix This? IE leak?

warez

"Warez (pronounced as though spelled "wares" or possibly by some pronounced like the city of "Juarez") is a term used by software "pirates" to describe software that has been stripped of its copy-protection and made available on the Internet for downloading. People who create warez sites sometimes call them "warez sitez" and use "z" in other pluralizations.
According to the International Planning & Research Corporation, warez Web sites cost software vendors $11.8 billion in 2001. The most popular downloads at warez sites include applications from major vendors such as Microsoft, Symantec, Macromedia, and Adobe Systems. The vendors have joined forces with the Business Software Alliance (BSA) to successfully close a loophole in Internet law that allowed warez distributors to avoid legal prosecution as long as they didn't profit monetarily from their distributions. (Use of warez software is also illegal and may result in a jail sentence.)

Warez should not be confused with shareware or freeware software applications, which are legal and may be freely copied and distributed. "

From: http://whatis.techtarget.com/definition/0,,sid9_gci213338,00.html

__________________
ceterum censeo (in my opinion) Vista delenda est. (Vista must be destroyed)
It's time to switch
 

Wilders Security Forums > Privacy Related Topics > privacy general « Previous Thread | Next Thread »

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Settings
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Forum Jump


All times are GMT -4. The time now is 09:20 PM.


Powered by vBulletin® Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
Copyright ©2002 - 2013, Wilders Security Forums