lists.openwall.net | lists / announce owl-users owl-dev john-users john-dev passwdqc-users yescrypt popa3d-users / oss-security kernel-hardening musl sabotage tlsify passwords / crypt-dev xvendor / Bugtraq Full-Disclosure linux-kernel linux-netdev linux-ext4 linux-hardening linux-cve-announce PHC | |
Open Source and information security mailing list archives
| ||
|
Message-ID: <546841.37360.qm@web54408.mail.yahoo.com> Date: Tue, 7 Apr 2009 14:30:26 -0700 (PDT) From: Cesar <cesarc56@...oo.com> To: full-disclosure@...ts.grok.org.uk Subject: Opening Intranets to attack by using Internet Explorer [paper] Hi I just released a new paper: Opening Intranets to attack by using Internet Explorer Abstract This document covers the topic of hacking Intranet websites through various unconventional means. Technical details shed light on the impact of default security configuration settings within Internet Explorer can be leveraged to attack internal Intranet websites remotely (from the Internet as well as remote users on the same LAN segment). http://nomoreroot.blogspot.com/2009/04/opening-intranets-to-attacks-by-using.html Enjoy. Cesar. _______________________________________________ Full-Disclosure - We believe in it. Charter: http://lists.grok.org.uk/full-disclosure-charter.html Hosted and sponsored by Secunia - http://secunia.com/