OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
 
Re: [Full-disclosure] MSIE Nested Object Vulnerability Is Exploitable

From: n3td3v (n3td3vgmail.com)
Date: Sat Apr 29 2006 - 18:19:46 CDT


On 4/29/06, GroundZero Security <fdg-0.org> wrote:
> You have no idea
> of the nature of the vulnerabilities that are beeing discussed. So go back and
> research your childish scripting stuff and leave the real bugs to the skilled people.

Rofl,

I wouldn't bet on that!

As for the XSS, thats just for phun, to create a diversion.

Regards,

n3td3v

I haven't forgot about the x-site scripting vulnerability you sent to
my Yahoo Mail address to steal my cookie, but yeah, your secret is
safe with me ;)

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/