OSEC

Neohapsis is currently accepting applications for employment. For more information, please visit our website www.neohapsis.com or email hr@neohapsis.com
Re: [Full-disclosure] DLL hijacking with Autorun on a USB drive

From: Larry Seltzer (larrylarryseltzer.com)
Date: Thu Aug 26 2010 - 21:53:41 CDT


> Instead of it executing "wab.exe (Windows Address Book) and open the
> file test.vcf", one can directly get any .exe file open.

Users have shown themselves very willing to open up test.vcf.exe.

LJS

_______________________________________________
Full-Disclosure - We believe in it.
Charter: http://lists.grok.org.uk/full-disclosure-charter.html
Hosted and sponsored by Secunia - http://secunia.com/