Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
Beware 'Brown Orifice'
Kevin Poulsen, SecurityFocus 2000-08-07

The latest in backdoor programs comes in through your web browser.

Comments Mode:
What ports does Brown orifice use, how can it be detected? 2000-08-08
Sean Boran (2 replies)
What ports does Brown orifice use, how can it be detected? 2000-08-08
morphon (at) yahoo (dot) com [email concealed]
What ports does Brown orifice use, how can it be detected? 2000-08-08
Henri Torgemane <henri_torgemane (at) yahoo (dot) com [email concealed]>
Re: Beware 'Brown Orifice' 2000-08-09
Lori Carrig (2 replies)
All:

I just tryed to access a host behind my firewall utilizing Network Address Translations and guess what! The flaw was trying to access my Firewall router's IP address, NOT my translated IP address. (10.0.0.24 for example) This is not a fix for internal attackers but would make it a bit harder for the script kiddies to get to your companies files. The key here is to use Address Translation. =)

I myself am a Java programmer and will be looking at the source code to see what fix can be applied as time permitts.

Enjoy this jewel of fact;

Lori

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/70/2962#2962
Re: Beware 'Brown Orifice' 2000-08-09
Bruce
Re: Beware 'Brown Orifice' 2000-08-11
netapi (2 replies)
IP not snatchable from IE? well sorta. 2000-08-11
henri torgemane
Re: Beware 'Brown Orifice' 2000-08-17
Orca_sniff







 

Privacy Statement
Copyright 2009, SecurityFocus