Nmap Security Scanner
*Intro
*Ref Guide
*Install Guide
*Download
*Changelog
*Book
*Docs
Security Lists
*Nmap Hackers
*Nmap Dev
*Bugtraq
*Full Disclosure
*Pen Test
*Basics
*More
Security Tools
*Pass crackers
*Sniffers
*Vuln Scanners
*Web scanners
*Wireless
*Exploitation
*Packet crafters
*More
Site News
Site Search:
Exploit World
Advertising
About/Contact
Credits
Sponsors:
edgeos



Full Disclosure: Re: Firefox 2.0.0.12 SSL Spoofing and Domain Guessing vulnerabilities

Re: Firefox 2.0.0.12 SSL Spoofing and Domain Guessing vulnerabilities

From: Rob Thompson <my.security.lists_at_gmail.com>
Date: Mon, 4 Feb 2008 13:10:55 -0800

I only see that FF is current to version 2.0.0.11. Are you sure that
you are finding this in 2.0.0.12? If so, where are you getting this
version from?

On Feb 4, 2008 12:10 PM, carl hardwick <hardwick.carl_at_gmail.com> wrote:
> Firefox seems to have trouble with defining the proper hostname when
> requesting a ssl connection. I was able to trick Firefox in thinking
> the hostname behind the at-sign is legit and the same as the URI that
> requested an ssl connection, and this without a warning.
>
> PoC: https://www.gmail.com%C0%AF%C0%AF%C0%C0%80@roguehost.com
>
> You can add as much garbage between .com and the @ sign.
>
> So what else can we do?
>
> PoC:
> www.cnn.com%C0%AF%C0%AF%C0%C0%80_at_google
> www.gmail.com%C0%AF%C0%AF%C0%C0%80_at_hotmail
>
> ah heck we don't need that at all:
> www.gmail.comxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxxx_at_hotmail
>
> works fine also :)
>
> _______________________________________________
> Full-Disclosure - We believe in it.
> Charter: http://lists.grok.org.uk/full-disclosure-charter.html
> Hosted and sponsored by Secunia - http://secunia.com/
>

-- 
Rob
_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/
Received on Feb 04 2008
[ Nmap | Sec Tools | Mailing Lists | Site News | About/Contact | Advertising | Privacy ]