lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
From: var at denyall.com (Vincent Archer) Subject: New REmote Windows Exploit (MS04-029) On Thu, Nov 04, 2004 at 02:32:33PM +0100, Ferdinand Klinzer wrote: > It?s a simple perl script... > > and i don?t think you can call it an remote exploit? It's more subtle than you think. The "exploit" is supposed to try to open a cmd tool on 31337 (eleet) on a target Windows. It fails; the window system is secure... but meanwhile, there's a perl IRC bot running in the background of *your* system. It's not a remote exploit, it's a trojan targeting the readers of this list. -- Vincent ARCHER varcher@...yall.com Tel : +33 (0)1 40 07 47 14 Fax : +33 (0)1 40 07 47 27 Deny All - 5, rue Scribe - 75009 Paris - France www.denyall.com
Powered by blists - more mailing lists