Full Disclosure mailing list archives

RE: COELACANTH: Phreak Phishing Expedition


From: "Scott Phelps" <scottp () dreamwright com>
Date: Thu, 10 Jun 2004 23:20:56 -0400

 

Yeah, it seems to be the host header as "Thor Larholm [thor () pivx com]"
pointed out.

I set up a site hard to an IP with no host header defined, and can redirect
this way to it.

If you keep trying random sites you will probably find another that works,
but who can really afford to set up every web site on it's own IP these
days.

Scott P

-----Original Message-----
From: full-disclosure-admin () lists netsys com
[mailto:full-disclosure-admin () lists netsys com] On Behalf Of Larry Seltzer
Sent: Thursday, June 10, 2004 10:23 PM
To: full-disclosure () lists netsys com
Subject: RE: [Full-disclosure] COELACANTH: Phreak Phishing Expedition

http://www.malware.com/golly.html 

I see no pattern at all, but this works on some systems for me and not on
others. On
some I get to Microsoft, some to e-gold.com.

And WTF is it with www.e-gold.com? Nothing else seems to work at all.

Larry Seltzer
eWEEK.com Security Center Editor
http://security.eweek.com/
http://blog.ziffdavis.com/seltzer
larryseltzer () ziffdavis com 

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.netsys.com/full-disclosure-charter.html


Current thread: