<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>Darknet - The Darkside &#187; michael-zalewski</title>
	<atom:link href="http://www.darknet.org.uk/tag/michael-zalewski/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.darknet.org.uk</link>
	<description>Ethical Hacking, Penetration Testing &#38; Computer Security</description>
	<lastBuildDate>Tue, 07 Feb 2012 18:34:17 +0000</lastBuildDate>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.3.1</generator>
		<item>
		<title>MS and the new IE vulnerability &#8211; Object Tag</title>
		<link>http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/</link>
		<comments>http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/#comments</comments>
		<pubDate>Wed, 26 Apr 2006 10:19:48 +0000</pubDate>
		<dc:creator>backbone</dc:creator>
				<category><![CDATA[Exploits/Vulnerabilities]]></category>
		<category><![CDATA[antitrust]]></category>
		<category><![CDATA[exploit]]></category>
		<category><![CDATA[IE]]></category>
		<category><![CDATA[internet-explorer]]></category>
		<category><![CDATA[michael-zalewski]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[object]]></category>
		<category><![CDATA[vulnerability]]></category>

		<guid isPermaLink="false">http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/</guid>
		<description><![CDATA[Can you see the irony? Just after 2 weeks that M$ released the Internet Explorer security makeover, Michal Zalewski came up with a highly critical exploit, as called by Secunia&#8230; based on a mishandling of the OBJECT tag&#8230;. Security alerts aggregator Secunia flagged the issue as &#8220;highly critical&#8221; and stressed that it can be exploited [...]]]></description>
			<content:encoded><![CDATA[<p></p>
<p>Can you see the irony?<br />
Just after 2 weeks that M$ released the <b>Internet Explorer security makeover</b>, Michal Zalewski came up with a highly critical exploit, as called by <a href="http://secunia.com/advisories/19762/">Secunia</a>&#8230; based on a mishandling of the OBJECT tag&#8230;.</p>
<blockquote><p>
Security alerts aggregator Secunia flagged the issue as &#8220;highly critical&#8221; and stressed that it can be exploited to corrupt memory by tricking a user into visiting a malicious Web site. &#8220;Successful exploitation allows execution of arbitrary code,&#8221; Secunia warned.
</p></blockquote>
<p>Of course M$ didn&#8217;t just sit around&#8230; they blamed Michal Zalewski for publishing the vulnerability prior of noticing M$ so they could launch a patch [again?] for it&#8230;</p>
<blockquote><p>
Microsoft chided Zalewski for jumping the gun and posting his findings before a comprehensive patch could be created, but the researcher is unapologetic.
</p></blockquote>
<p>And how expected Zalewski striked back:</p>
<blockquote><p>
[They] often attempt to downplay threats; they don&#8217;t participate in the vulnerability research community in a meaningful way; and they routinely use false pretenses when communicating their expectations to the media (for example, expressing concern for the customer and blaming the researcher where the chief risk for the customer arises from the fact that an extremely wealthy and profitable software giant severely underfunds the task of fixing critical defects in their software)
</p></blockquote>
<p>Researchers at Websense Security Labs said there are no published proof-of-concepts demonstrating a remote code execution attack vector but made it clear that browser crash vulnerabilities often lead to remote code execution exploits.<br />
But a quick search on <b>SecurityFocus</b> proved something else:<br />
<a href="http://www.securityfocus.com/archive/1/431796/30/30/threaded">http://www.securityfocus.com/archive/1/431796/30/30/threaded</a></p>
<p></p>
<p>Source: <a href="http://www.eweek.com/article2/0,1895,1953833,00.asp">Microsoft Rocked by New IE Zero-Day Flaw Warning</a></p>
<div class="tweetthis" style="text-align:left;"><p> <a class="tt" href="http://twitter.com/intent/tweet?text=MS+and+the+new+IE+vulnerability+%E2%80%93+Object+Tag+http%3A%2F%2Fdarknet.org.uk%2F%3Fp%3D161+from+%40THEdarknet" title="Post to Twitter"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/twitter/tt-twitter-micro3.png" alt="Post to Twitter" /></a> <a class="tt" href="http://www.facebook.com/share.php?u=http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/&amp;t=MS+and+the+new+IE+vulnerability+%E2%80%93+Object+Tag" title="Post to Facebook"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/facebook/tt-facebook-micro3.png" alt="Post to Facebook" /></a> <a class="tt" href="http://www.google.com/buzz/post?url=http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/&amp;imageurl=" title="Post to Google Buzz"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/gbuzz/tt-gbuzz-micro3.png" alt="Post to Google Buzz" /></a> <a class="tt" href="http://delicious.com/post?url=http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/&amp;title=MS+and+the+new+IE+vulnerability+%E2%80%93+Object+Tag" title="Post to Delicious"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/delicious/tt-delicious-micro3.png" alt="Post to Delicious" /></a> <a class="tt" href="http://digg.com/submit?url=http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/&amp;title=MS+and+the+new+IE+vulnerability+%E2%80%93+Object+Tag" title="Post to Digg"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/digg/tt-digg-micro3.png" alt="Post to Digg" /></a> <a class="tt" href="http://reddit.com/submit?url=http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/&amp;title=MS+and+the+new+IE+vulnerability+%E2%80%93+Object+Tag" title="Post to Reddit"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/reddit/tt-reddit-micro3.png" alt="Post to Reddit" /></a> <a class="tt" href="http://stumbleupon.com/submit?url=http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/&amp;title=MS+and+the+new+IE+vulnerability+%E2%80%93+Object+Tag" title="Post to StumbleUpon"><img class="nothumb" src="http://www.darknet.org.uk/wp-content/plugins/tweet-this/icons/en/su/tt-su-micro3.png" alt="Post to StumbleUpon" /></a></p></div><div class="AWD_like_button "><iframe src="http://www.facebook.com/plugins/like.php?href=http%3A%2F%2Fwww.darknet.org.uk%2F2006%2F04%2Fms-and-the-new-ie-vulnerability%2F&amp;send=false&amp;layout=standard&amp;width=&amp;show_faces=false&amp;action=like&amp;colorscheme=light&amp;font=arial&amp;height=40" scrolling="no" frameborder="0" style="border:none; overflow:hidden; width:px; height:40px;" allowTransparency="true"></iframe></div>]]></content:encoded>
			<wfw:commentRss>http://www.darknet.org.uk/2006/04/ms-and-the-new-ie-vulnerability/feed/</wfw:commentRss>
		<slash:comments>3</slash:comments>
		</item>
	</channel>
</rss>

