OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Full-disclosure] Apple Safari ... DoS Vulnerability

Valdis.Kletnieksvt.edu
Date: Tue Mar 03 2009 - 10:30:41 CST


On Mon, 02 Mar 2009 22:49:41 PST, Chris Evans said:
> So, you have injected HTML into stupid.com, and you choose to inflict
> the fury of a closing tab upon hapless visitors?

If your intent is to cause stupid.com to lose traffic while flying under
the wire, that's a good place to start. Trashing the hapless visitor's
machine may draw attention to your ruse, but if you can just make it close
up, people will it it 2-3 times, say to themselves "Ah fsck, another lame
broken website" and move on.

-----BEGIN PGP SIGNATURE-----
Version: GnuPG v1.4.9 (GNU/Linux)
Comment: Exmh version 2.5 07/13/2001

iD8DBQFJrVsxcC3lWbTT17ARAuvBAJ916syffwMy88M01TFiqgtbe5flzwCfTTkP
DE+3OfWjx7vRSvprbrge0tE=
=5vwq
-----END PGP SIGNATURE-----

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/