this would mean if you get disconected from the irc server and reconed you
would not have any reverse at all, so the 'real' hack isn't there your just
'abuseing' the fact that ircd's dont lookup the hosts while your are
connected
like almoste every deamon does (like sshd/apache enz)
-- Thomas
----- Original Message -----
From: "Intel Nop" <0x90 (at) invisiblenet (dot) net [email concealed]>
To: <bugtraq (at) securityfocus (dot) com [email concealed]>
Sent: Thursday, May 01, 2003 11:47 PM
Subject: Dynamic DNS "Spoofing" & IRC
> Step 3) Run your dyndns script for zoneedit to assign your ip address as
> whatever ip you want (in this case I'll use 127.0.0.1), then wait about a
> minute before joining a channel.
>
would not have any reverse at all, so the 'real' hack isn't there your just
'abuseing' the fact that ircd's dont lookup the hosts while your are
connected
like almoste every deamon does (like sshd/apache enz)
-- Thomas
----- Original Message -----
From: "Intel Nop" <0x90 (at) invisiblenet (dot) net [email concealed]>
To: <bugtraq (at) securityfocus (dot) com [email concealed]>
Sent: Thursday, May 01, 2003 11:47 PM
Subject: Dynamic DNS "Spoofing" & IRC
> Step 3) Run your dyndns script for zoneedit to assign your ip address as
> whatever ip you want (in this case I'll use 127.0.0.1), then wait about a
> minute before joining a channel.
>
--------
Thomas Wouters - xhoy
e-mail: Thomas (at) xhoy (dot) nl [email concealed]
IRC: IRCnet - #IceBox & #ne2000 | EFnet - #IceBox
* ne2000 - Press Any Key To Continue | http://www.ne2000.nl *
* IceBox - SLUT partner | http://slut.icebox.nl *
--------
[ reply ]