Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista
BugTraq
Name:
Email:
*Note: Email address will appear as "user domain ext" to prevent harvesting.
Subject:
Message:
 
Re: [Full-disclosure] Apple Safari: idn urlbar spoofing Jun 25 2007 09:22PM
Michal Zalewski (lcamtuf dione ids pl)
On Mon, 25 Jun 2007, Larry Seltzer wrote:

> It looks different on my system: http://www.larryseltzer.com/safe2.png
> Safari 3.0.2 on XPSP2

Looks simply like a difference in system fonts used on your machines. The
attack relies on padding the hostname with Unicode characters that, for
the typeface ...

[ more ]  





 

Privacy Statement
Copyright 2008, SecurityFocus