Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs
No relief from Microsoft phishing bug
Kevin Poulsen, SecurityFocus 2004-01-13

Tuesday's edition of Microsoft's monthly bundle of security advisories features an omission that should keep online fraud artists and identity thieves happy: over one month after its discovery, there is no official patch available for a bug in Internet Explorer that lets swindlers pass off counterfeit websites as the real thing.

Comments Mode:
No relief from Microsoft phishing bug - does this still work ? 2004-01-16
Anonymous
Tried it out between 2 of my websites, it's not working for me (the address shown in the bar is the correct one, not the one before the %01).

Same result with the test link provided in the article.

Besides, if you look at the status bar when the mouse is over the "fake" link, it shows the real target, I think that Microsoft(r)(tm)(whatever) spokesperson must have mentioned it ?!

So, did any of you get it working ?

[ reply ]

Link to this comment: http://www.securityfocus.com/comments/articles/7807/24408#24408







 

Privacy Statement
Copyright 2009, SecurityFocus