Header

Thu, 12 Jun 2008

Carpet Bombing and eating Crow...
@

The recent Safari Carpet Bombing bug reported by Nitesh Dhanjani and ignored by Apple had all the makings of an egg-on-face incident. We were discussing it over foosball, and the obvious consensus was "if a line starts with: "thats not exploitable, its only.." then odds are you are wrong.."

But.. lots of people quicker and smarter than me [1, 2, 3] blogged (or twittered) about why this was a silly approach for apple to take..

Interestingly.. Microsoft bloggers were quick to pounce on this PR-Fiasco in the making. Microsoft released a security advisory commenting on the danger of a "blended threat" - Now.. by accident (or by design) that advisory looks a lot like - "This is an Apple screwup!", indeed one of the solutions is: "Restrict use of Safari as a web browser until an appropriate update is available from Microsoft and/or Apple."

The advisory (now) also credits "Aviv Raff" for his report. LiuDieYu0

filled in the details, pointing to Avivs 2006 Finding, which is a pure DLL search order bug (which incidentally was published as an IE7 bug). So now the Microsoft folks who were sneering at Safari all end up shuffling their feet a little while looking at the floor. All credit to RHensing from Microsoft, who quickly awarded Microsoft the FAIL open goat award too.. *ouch*

Like sands through the hourglass...

 

 

Blog
Video
Research
QotW
Categories
README (1)
Uncategorized (3)
about:us (15)
blog (7)
community (1)
conferences (21)
fail (1)
foos (1)
fun (39)
howto (5)
infosec-soapies (13)
infrastructure (1)
mac (9)
materials (1)
mindless-politics (2)
mindmaps (1)
post-it (1)
privacy (5)
programming (3)
public (141)
qo[w|m|?] (4)
real-world (7)
research (19)
reversing (1)
security-fyi (5)
security-news (3)
silly-yammerings (13)
tech-toys (2)
time-waster (4)
tin-foil-hat (6)
tools (25)
training (3)
vendors (5)
videos (1)
web_x.0 (2)
webapps (5)
writing-advice (1)
zen-hacking (6)
Archives
August 2008 (6)
July 2008 (6)
June 2008 (6)
May 2008 (2)
April 2008 (3)
March 2008 (7)
Feburary 2008 (12)
January 2008 (10)
December 2007 (8)
November 2007 (4)
October 2007 (9)
September 2007 (14)
August 2007 (18)
July 2007 (13)
June 2007 (17)
May 2007 (2)
July 2006 (1)
April 2006 (1)
August 2005 (1)
June 2005 (1)
May 2005 (2)
Archives
Conditions of use Privacy statement
Top of Page Legal stuff