l i n u x - u s e r s - g r o u p - o f - d a v i s
Next Meeting:
July 7: Social gathering
Next Installfest:
Latest News:
Jun. 14: June LUGOD meeting cancelled
Page last updated:
2004 Jun 25 15:52

The following is an archive of a post made to our 'vox mailing list' by one of its subscribers.

Report this post as spam:

(Enter your email address)
Re: [vox] More IE exploits
[Date Prev][Date Next][Thread Prev][Thread Next][Date Index][Thread Index]

Re: [vox] More IE exploits

On Fri, Jun 25, 2004 at 03:36:21PM -0700, Rod Roark wrote:
> Actually... looking at both stories and taking them at face
> value, it appears these are two entirely different security
> holes.

Yeah, upon further inspection, I was a little confused, too.
Of course, the BBC said people are inserting Javascript
'into GIF and JPG files', which makes no sense whatsoever...

Unless IE is being particularly dumb with something like:

  <img src="http://badguy.com/malware.js";>


Keeping my eye on it...

> The BBC refers to web sites that have been hacked and
> contain malicious JavaScript.  The eWeek article talks about
> malware that is hidden inside images - which seems more
> serious, since many popular web sites allow outsiders to
> upload images for viewing by anyone.

TOTALLY.  That's insane, and the only conceivable way to browse safely,
in that case, is to turn images off (not JavaScript).  I'm sure THAT'll be
popular with the web surfers out there! >:^P

vox mailing list

LUGOD Group on LinkedIn
Sign up for LUGOD event announcements
Your email address:
LUGOD Group on Facebook
'Like' LUGOD on Facebook:

Hosting provided by:
Sunset Systems
Sunset Systems offers preconfigured Linux systems, remote system administration and custom software development.

LUGOD: Linux Users' Group of Davis
PO Box 2082, Davis, CA 95617
Contact Us

LUGOD is a 501(c)7 non-profit organization
based in Davis, California
and serving the Sacramento area.
"Linux" is a trademark of Linus Torvalds.

Sponsored in part by:
EDGE Tech Corp.
For donating some give-aways for our meetings.