|
Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com |
Subject: Re: Microsoft Word documents that "phone" home
From: Brad (gryphonn
AUSTARNET.COM.AU)Date: Fri Sep 01 2000 - 21:41:22 CDT
- Next message: Jaldhar H. Vyas: "Re: More about UW c-client library"
- Previous message: debian-security-announce
LISTS.DEBIAN.ORG: "[SECURITY] New version of glibc released"
- In reply to: Microsoft Security Response Center: "Re: Microsoft Word documents that "phone" home"
- Next in thread: Terje Bless: "Re: Microsoft Word documents that "phone" home"
- Next in thread: Rob Slade, doting grandpa of Ryan and Trevor: "Re: Microsoft Word documents that "phone" home"
- Reply: Brad: "Re: Microsoft Word documents that "phone" home"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]
In reply to:
Sender: Microsoft Security Response Center <secure
MICROSOFT.COM>
Subject: Re: Microsoft Word documents that "phone" home
Dated: 1 Sep 2000,
Time: 7:27
> -----BEGIN PGP SIGNED MESSAGE-----
>
> Hi Kris -
>
> Thanks for your note. I think we may be in violent *agreement*
> here.<g>
>
> We think it's a great idea to talk about this issue, and we do want to
> make sure that our customers understand the pros and cons of
> web-enabled applications. Specifically, we are glad to participate in
> a dialogue about cookies, the risk they pose, and how to control them.
*snip*
> - It pays scant attention to the fact that customers already have the
> tool to control cookies in their hands, namely, IE. Customers who
> have used the Security Zones setting in IE to restrict how cookies are
> handled are automatically protected against all cookies, regardless of
> whether the web session was initiated by web surfing or by a
> web-enabled application.
Hi all.
May I draw your attention to the following link describing how MSN
has set up a number of hidden re-directs in order to place a GUID in
a cookie for tracking purposes.
http://www.pc-help.org/privacy/ms_guid.htm
This leads to possibilities of expanding on the phone home feature of
applications and/or documents being further exploited.
Cheers,
Brad
***********************************
Bradley.N.Griffin
Gryphonn Design
Web Design
Computer Systems Consultant
Security Solutions
gryphonn
austarnet.com.au
ABN: 12 095 821 961
**********************************
Help save a starving child.
One click is all it takes:
http://www.thehungersite.com/
- Next message: Jaldhar H. Vyas: "Re: More about UW c-client library"
- Previous message: debian-security-announce
LISTS.DEBIAN.ORG: "[SECURITY] New version of glibc released"
- In reply to: Microsoft Security Response Center: "Re: Microsoft Word documents that "phone" home"
- Next in thread: Terje Bless: "Re: Microsoft Word documents that "phone" home"
- Next in thread: Rob Slade, doting grandpa of Ryan and Trevor: "Re: Microsoft Word documents that "phone" home"
- Reply: Brad: "Re: Microsoft Word documents that "phone" home"
- Messages sorted by: [ date ] [ thread ] [ subject ] [ author ]