![]() |
![]() |
![]() |
||||
Welcome to the GoFuckYourself.com - Adult Webmaster Forum forums. You are currently viewing our boards as a guest which gives you limited access to view most discussions and access our other features. By joining our free community you will have access to post topics, communicate privately with other members (PM), respond to polls, upload content and access many other special features. Registration is fast, simple and absolutely free so please, join our community today! If you have any problems with the registration process or your account login, please contact us. |
![]() ![]() |
|
Discuss what's fucking going on, and which programs are best and worst. One-time "program" announcements from "established" webmasters are allowed. |
|
Thread Tools |
![]() |
#1 |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
![]() Read about this one.. it's actually pretty nasty!
It allows people to fake what displays up in the location bar, while the browser points somewhere else... TEST here Read the advisories here I wonder how long it'll take for people to start using https://secure-russian-billing.com :/ |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#2 |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
Check the test link above. It links offsite, but the browser even thinks it's going to the spoofed site - and only shows that i the status bar.
This is more than slghtly nasty! |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#3 |
Too lazy to set a custom title
Industry Role:
Join Date: Jul 2001
Posts: 59,204
|
Im safe...
Using Opera. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#4 |
So Fucking Banned
Join Date: Dec 2003
Location: South Of Heaven™
Posts: 3,880
|
What part of " I.E. " in the thread title didnt you get battuss ?
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#5 |
Chafed.
Join Date: May 2002
Location: Face Down in Pussy
Posts: 18,041
|
Shit!
Now how can I make money from this? |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#6 | |
Too lazy to set a custom title
Industry Role:
Join Date: Jul 2001
Posts: 59,204
|
Quote:
Stop fucking stalking me...youre like shit under my shoe that just wont go. Fucking freak. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#7 |
Confirmed abUser
Industry Role:
Join Date: Jun 2003
Location: Internet Explorer cannot display the webpage
Posts: 1,154
|
holy fuck...
![]()
__________________
(b] cheap hmtl programer for hire (/b) |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#8 | |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
Quote:
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#9 | |
Will code for food...
Join Date: Apr 2001
Location: Buckeye, AZ
Posts: 8,496
|
Quote:
spam those fake paypal emails, and the address will look real ![]()
__________________
![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#10 |
GFY Chaperone
Join Date: Jan 2001
Location: Adult.com
Posts: 9,846
|
Good one.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#11 |
Confirmed User
Join Date: Feb 2002
Location: Free Speech Land
Posts: 9,484
|
How long will it take someone to blame Smokey The Bear for this?
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#12 | |
So Fucking Banned
Industry Role:
Join Date: Oct 2002
Location: Mesosphere
Posts: 2,926
|
Quote:
![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#13 |
So Fucking Banned
Industry Role:
Join Date: Oct 2002
Location: Mesosphere
Posts: 2,926
|
Netscape 7.1 is also vulnerable to this.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#14 |
Confirmed abUser
Industry Role:
Join Date: Jun 2003
Location: Internet Explorer cannot display the webpage
Posts: 1,154
|
shit, there don't seem to be any work-arounds yet either, although right-click/properties on the link shows the offending character.
i'm guessing the phishers are doing overtime on their fake sites at the moment.
__________________
(b] cheap hmtl programer for hire (/b) |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#15 |
So Fucking Banned
Join Date: Aug 2003
Location: San Diego, CA
Posts: 5,464
|
It doesn't work with sites that redirect / break out of frames.. like cnn.com
Nice find though |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#16 | |
So Fucking Banned
Join Date: Aug 2003
Location: San Diego, CA
Posts: 5,464
|
Quote:
Test: <a href="http://www.adult.com%[email protected]/">Adult.com</a> ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#17 | |
ICQ- five seven 0 2 5 5 0
Join Date: Jan 2001
Posts: 10,747
|
Quote:
I just hit their test link and my NS 7.1 didn't get exploited... in-ter-esting... only sounds worthwhile to <><'ers & carders...
__________________
Investor with 5m - 15m USD to invest. Do you have a site or network of sites earning 50k - 200k a month income? Email your contact and preliminary data to: domain.cashventures (at) gmail.com....Please...no tire kickers...serious offers and inquiries only. ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#18 | |
I help you SUCCEED
Industry Role:
Join Date: Nov 2003
Location: The Pearl of the Orient Seas
Posts: 32,195
|
Quote:
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#19 |
Confirmed User
Join Date: Nov 2002
Location: NY
Posts: 311
|
haha thats cool
![]() now u've made me extra paranoid |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#20 |
Confirmed User
Join Date: Oct 2003
Location: Czech Republic
Posts: 333
|
__________________
![]() The place for (No)Angels - Always New Models and Faces Custom and Exclusive Photo-Video Content ICQ:335332443 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#21 |
making it rain
Industry Role:
Join Date: Oct 2003
Location: seattle
Posts: 22,114
|
So how does it look under IE? I still see the site, but the full URL is shown in the address bar (fakeurl + garbage characters + @real url etc)...
In the status bar I see the fake url + a garbage character. Does this all look clean and unassuming under IE? Everything after (and including) the garbage character hidden? If so, nice. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#22 | |
So Fucking Banned
Join Date: Sep 2001
Location: shell beach
Posts: 7,938
|
Quote:
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#23 |
cuck
Industry Role:
Join Date: Mar 2003
Posts: 11,571
|
looks alot of people are going to get scammed this christmas
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#24 | |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
Quote:
![]() looks coche all the way, even when you move your mouse over the link :/ |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#25 |
Confirmed User
Join Date: Jul 2002
Location: Montreal
Posts: 7,519
|
haha my first thought was also sending someone at goatse.cx
__________________
Spam link here |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#26 | |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
Quote:
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#27 |
Confirmed User
Join Date: Dec 2002
Location: FL
Posts: 1,062
|
It looks like all it does is use a line break to seperate the URL.
microsoft.com%[email protected]/internet_explorer_address_bar_spoofing_test/ The URL is basically on 2 lines. This does not just effect IE. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#28 |
Confirmed User
Join Date: Oct 2003
Location: Czech Republic
Posts: 333
|
Just check your personal 'ignore list', after a redirect with my IE got some new entries there
![]()
__________________
![]() The place for (No)Angels - Always New Models and Faces Custom and Exclusive Photo-Video Content ICQ:335332443 |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#29 |
Confirmed User
Join Date: Nov 2003
Location: Canada
Posts: 240
|
Sure enough my IE failed the test, with netscape it added a bunch of extra characters to the url.
Its shit like this that makes me glad netscape is my default browser. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#30 | |
Confirmed User
Join Date: Oct 2003
Location: Czech Republic
Posts: 333
|
Quote:
![]()
__________________
![]() The place for (No)Angels - Always New Models and Faces Custom and Exclusive Photo-Video Content ICQ:335332443 |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#31 | |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
Quote:
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#32 |
Confirmed User
Join Date: Jan 2003
Location: Hollywood, CA
Posts: 3,569
|
wow. thats the scariest thing i've seen in awhile. even i might have fallen for it in an email scam or something had they caught me at a bad time.
well once again ie has proven once again to be the new pioneer into gaping security holes. im suprised this one wasn't found sooner. smokey must have been wasting too much time lurking on gfy ;)
__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR. Unless your sig is for a GFY top banner sponsor, you may use a 624x80 instead of a 120x60. Let me repeat... A 120 x 60 button and no more that 3 lines of DEFAULT SIZE AND COLOR text. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#33 | ||
Marketing Consultant
Industry Role:
Join Date: May 2003
Location: swankville, innernetz
Posts: 811
|
Quote:
![]() ![]()
__________________
Quote:
|
||
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#34 |
Confirmed User
Join Date: Jan 2003
Location: Hollywood, CA
Posts: 3,569
|
wow this is fun to freak out your friends and family. you can tell them you are a l33t haxx0r and you took over yahoo.com
<a href="http://www.yahoo.com%[email protected]/">Yahoo</a>
__________________
SIG TOO BIG! Maximum 120x60 button and no more than 3 text lines of DEFAULT SIZE and COLOR. Unless your sig is for a GFY top banner sponsor, you may use a 624x80 instead of a 120x60. Let me repeat... A 120 x 60 button and no more that 3 lines of DEFAULT SIZE AND COLOR text. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#35 |
Too lazy to set a custom title
Join Date: Mar 2002
Location: Australia
Posts: 17,393
|
I notice that google's toolbar shows the PR for the fake URL, rather than the actual site it's loading. I guess this will happen with most plugins coded in C, since it will see the %00 as a string terminator.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#36 |
Confirmed User
Join Date: Feb 2003
Location: Deep inside my mind
Posts: 1,118
|
I typically do a view source to veryfiy any link that wants me to enter personal info. Guess my paranoia is finally paying off
![]() |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#37 | |
HAL 9000
Industry Role:
Join Date: May 2001
Posts: 34,515
|
Quote:
Alex bought adult.com ![]() isn't it crazy that after all these years nobody had noticed this bug? |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#38 |
MFBA
Industry Role:
Join Date: Mar 2003
Location: PNW
Posts: 7,230
|
this exploit has been around for many many years and is not going anywhere, its for hahahahahading usernames and passwords into URLS.
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#39 | |
Confirmed User
Join Date: Aug 2003
Posts: 3,042
|
Quote:
But why the hell did some one post this |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#40 |
Confirmed User
Join Date: Jan 2003
Location: Phoenix Arizona
Posts: 2,363
|
Very interesting
<a href="http://www.flowersandsunshine.com%[email protected]/">flowersandsunshine.com</a> |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#41 | |
MFBA
Industry Role:
Join Date: Mar 2003
Location: PNW
Posts: 7,230
|
Quote:
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#42 |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
Cos I thougth It was interesting and pertinent to us.
re: beign around for years.. i think you're confusing it with: www.microsoft.com/legitimate/url.html@obfuscated which of course sends the first part as the username and is ignored. This one is similar, except the real url is totally hidden, in the link, the status bar and the url bar. same idea, a little bit trickier. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#43 | |
So Fucking Banned
Join Date: Dec 2003
Location: South Of Heaven™
Posts: 3,880
|
Quote:
9/11 smokeys fault. teen pregnancy smokeys fault. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#44 | |
MFBA
Industry Role:
Join Date: Mar 2003
Location: PNW
Posts: 7,230
|
Quote:
|
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#45 | |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
Quote:
http://www.epassport.com Go there and login. |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#46 |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
Fuck!
I just noticed this fools google PR too. damn, this goes deeper than i thought... it REALLY looks legit now. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#47 | |
So Fucking Banned
Join Date: Dec 2003
Location: South Of Heaven™
Posts: 3,880
|
Quote:
![]() ![]() |
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#48 |
Confirmed User
Join Date: Feb 2002
Location: ICQ: 251425 Fr/Au/Ca
Posts: 6,863
|
wee i jsut won a tshirt for this :D
|
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#49 |
So Fucking Banned
Industry Role:
Join Date: Apr 2002
Location: ¤ª"˜¨๑۩۞۩๑¨˜"ª¤
Posts: 18,481
|
I got hit with it 6 to 8 months ago.
My address bar would say msn.com, but the search page included links to porn and casino's. That seemed kind of odd. |
![]() |
![]() ![]() ![]() ![]() ![]() |
![]() |
#50 |
Confirmed User
Join Date: Nov 2003
Location: Omnipresent
Posts: 124
|
The possiblities with blind clicks are endless...
__________________
<-- I do not recommend anything that might be under my name. It's a sellout by GFY. |
![]() |
![]() ![]() ![]() ![]() ![]() |