[31548] in bugtraq

home help back first fref pref prev next nref lref last post

Re: MSIE->HijackClick: 1+1=2

daemon@ATHENA.MIT.EDU (bugtraq)
Wed Sep 10 18:47:03 2003

Message-ID: <012d01c377e2$f275b360$dd6ffea9@v>
From: "bugtraq" <bugtraq@mykakee.com>
To: <bugtraq@securityfocus.com>, "Liu Die Yu" <liudieyuinchina@yahoo.com.cn>
Date: Wed, 10 Sep 2003 23:31:46 +0200
MIME-Version: 1.0
Content-Type: text/plain;
	charset="iso-8859-2"
Content-Transfer-Encoding: 7bit

> then "ATTACK VER" in the "[demo]" section drags my
> homepage to your favorite list.

Hi, I have created a similar effect with the same funcionality
by using 131A6951-7F78-11D0-A979-00C04FD705A2 object
and Jelmer's trick to raise drag&drop back in April [worx for WinXP only].
I wonder if your code is similar, however your page is not accesible, cannot
check.

*Cannot provide the working demo [maybe except private], as I agreed with my
current employer not to publish any exploit or content similar in
functionality by any means.

Best regards
Adam Blaszczyk
http://www.mykakee.com
kakee neverending lover, coder, reverser, writer, av researcher
---
If you have any job for quite a good reverse engineer who is very interested
in computer viruses, currently working on contract [but not doing what he
loves
the most] for one of the best AV companies in the world, feel free to
contact
him and he will send you his resume.




home help back first fref pref prev next nref lref last post