Forum Home
Press F1
 
Thread ID: 54282 2005-02-08 11:25:00 Most browsers except IE vulnerable to this exploit zqwerty (97) Press F1
Post ID Timestamp Content User
322735 2005-02-08 11:25:00 Read about it here:

users.tns.net


I have not tried this fix myself.
zqwerty (97)
322736 2005-02-08 17:46:00 Interesting how they do it. If you look at the source code of the page with the test (www.shmoo.com) links on it, you can see how they are doing it with the &#1072 for the letter 'a' in the link.

If you look carefully in your address bar after following one of the links, you can see the first letter 'a' in www.paypal is a non-standard character.
Jen (38)
322737 2005-02-08 19:45:00 Wow,

Firefox's "spoofstick" (www.corestreet.com) extension also gives me the spoofed url. This renders the extension useless.
mister harbies (5607)
322738 2005-02-08 20:47:00 At last, a reason I can give for preferring to stay with IE. :thumbs:

However, all previous comments have been taken on-board and should I ever decide to stray to the dark side, or to reduce my security, I'll adopt an alternative.

Cheers

Billy 8-{) :D

Everybody wants to go to Heaven,
but nobody wants to die!
Billy T (70)
322739 2005-02-08 21:01:00 It's not that IE can't be spoofed, it can, it's just that FF, Opera, et al, implement their spoofs in a different way to IE's .

So please don't feel left out, the internet and it's less savoury denizens couldn't care less about our personal ideals, it's purelythe numbers that count in this game . So, be careful out there ;)
Murray P (44)
1