Slashdot Mirror


MS Security: On A Path As Clear As It Is Reliable

bobthemonkey13 writes: "It appears that Microsoft's 'secure' E-Book system has been cracked. MIT Technology Review is reporting that an anonymous programmer has figured out how to bypass the 'advanced antipiracy features' in Microsoft Reader. This sounds a lot like what Dmitry did except for two things: The MS E-Book hacker has (wisely) decided to remain anonymous, and he's not publishing his program. God bless the U.S., where moving a book from your home to your office is a federal offence." Along similar lines, an Anonymous Coward indicates this story at USA Today titled "Expert Hacks Hotmail in 1 Line of Code." "I'm in awe! Unless someone can figure out how to execute pseudocode or half a line this isn't beatable. I hope this get's fixed or the whole future of pay-per-view web services could be impacted. :-q" Good thing Microsoft isn't quite sure what to do with all this universal-password stuff. (Thanks to Sacha Prins.)

Jamie adds:

In other news about poor security where you least expect it, Kitetoa informed Veridian a little while ago that: "Any script kiddy can root your web site. And... By the way... Someone already did it (as you should have seen at www.veridian.com/upload/ if you knew anything about internet security)."

I don't know what that URL gives you now, but as of this writing, and for the last several hours, it's read:

fuck USA Government
fuck PoizonBOx
contact:sysadmcn@yahoo.com.cn

This is the same Veridian that the Defense Department picked to track computer network attacks on DoD systems, specifically attacks coming from China.

15 of 360 comments (clear)

  1. Test by Anonymous Coward · · Score: -1, Offtopic

    This is a test of the emergency fp system

  2. fsck it by Anonymous Coward · · Score: -1, Offtopic

    oh well, 2nd post. or maybe 3rd or 4th

  3. I believe you mean "offense" by Anonymous Coward · · Score: 0, Offtopic

    This is the US, after all. Get it right.

  4. BFD by Anonymous Coward · · Score: -1, Offtopic

    BFD

    cmdrtaco blows goats

  5. hello by rockclimbingtech · · Score: -1, Offtopic

    hello

  6. ON Topic by Anonymous Coward · · Score: -1, Offtopic

    From the Group that brought you
    Windows 2000 Corporate Select Editions
    Devilsown Proudly Presents:

    Microsoft Windows XP Professionaal - ISO
    No Activation Required
    ©Microsoft

    Supplied By....: [ DevilsOwn ] Release Type....: [ .iso ]
    Cracked By.....: [ ] Protection......: [ MS's Cock in Our Ass]
    Packaged By....: [ ] Release Size....: [ 32x15mb ]
    Release Date...: [ 08/29/2001 ] Operating System: [ It Is ]

    Requirements:
    To run Windows XP, it is recommended that computers have at least 128
    megabytes of RAM, 1.5 gigabytes of hard disk space, a 233 megahertz
    processor and a CD-ROM or DVD drive.

    Install Notes & Rip Information

    Windows XP is the next version of Microsoft Windows beyond Windows 2000 and
    Windows Millennium. Windows XP brings the convergence of Windows operating
    systems by integrating the strengths of Windows 2000--standards-based
    security, manageability and reliability with the best features of Windows
    98 and Windows Me--Plug and Play, easy-to-use user interface, and innovative
    support services to create the best Windows yet.

    This article provides a broad technical overview of what's new in WindowsXP.
    It shows how new technologies and features make it easier to get work done,
    share information, manage your desktop, stay productive while traveling with
    a mobile computer, obtain help and support, and perform many other computing
    tasks.

    Windows XP is built on an enhanced Windows 2000 code base, with different
    versions aimed at home users and business users: Windows XP Home Edition
    and Windows XP Professional. Unless otherwise noted, this article addresses
    technologies and features common to both versions of the operating system.

    Please Note:
    It is final code - all bits are final. There is no activation required and
    no timebomb to worry about. Enjoy!!!

    Auto run CD or run setup and use this key to install:
    FCKGW-RHQQ2-YXRKT-8TG6W-2B7Q8

    Do you want to be a part of Devilsown?
    We are looking for people to help in our ongoing experience, if you are a
    courier or a siteop with a reliable fast connection, get in touch with us.
    Group greetz : FLT/DVN/KAL/ECH/RZR/TCF/QUEEN/pHASE

    Personal Greetz :
    stump, DaGon & the ol skool discovery cru hawk,dragon,rcf, thepope, nerd, cal

    (join #0-day-dump on irc.devilsown.net:6667)
    Remember, SUPPORT THE COMPANIES THAT PRODUCE QUALITY SOFTWARE, if you
    enjoyed this product, BUY IT! SOFTWARE AUTHORS DESERVE SUPPORT!!

  7. old veridian hack? by 4n0nym0u53+C0w4rd · · Score: 1, Offtopic

    Among the headers from the veridian server when I retrieved the hacked page was

    Last-Modified: Wed, 09 May 2001 12:53:30 GMT

    I'm sure they'll get to it in due time...

  8. Is that what you blame your retardation on? by Anonymous Coward · · Score: -1, Offtopic

    Maybe it was your mom's smoking. Or that big fall down the stairs. Sheesh....

    Mod parent up to +5, mindlesslyantimicrosoft.

  9. This is what slashdot is for! by Anonymous Coward · · Score: -1, Offtopic

    Post the source code HERE beacuse a judge said you don't have to reveal the identity of posters!

  10. What is anyone who gets a credit card thinking? by Anonymous Coward · · Score: -1, Offtopic

    Credit cards are a bad proposition altogether, encouraging people to spend money they don't have and end up paying off huge amounts of interest on their debts while destroying your credit rating. If you want the convenience of a money card, get a debit card. If you need to spend more money than you have, get a loan. If the bank won't give you a loan for the purpose, chances are it's not worth spending the money on. Credit cards aren't worth it.

  11. Re:Internal MS security problems by Anonymous Coward · · Score: -1, Offtopic

    MMMMMMMMMMMMMMM, LARGE PENIS!

    i love eating large penis it is so tasty

  12. Not the only thing thats clear... by WetKittyKat · · Score: -1, Offtopic

    My cotton panties are see-through clear because I press my hello kitty vibrator against my 16 year old japanese clit while they are still on.

  13. idea for data distribution via srch engine spiders by Dr.+Awktagon · · Score: 1, Offtopic

    I was just reading a fascinating article in the latest phrack about using web spiders (like search engines, etc) to deploy exploits, by putting URLs on a page which are actually exploits (like the code red explot) and waiting for the spider to follow them. Many spiders pick up the URL, port, query string, and all.

    This could be used to distribute data..here's how:

    This guy could take his program, compress it, and encode into ascii and divide into N chunks.

    Pick P web sites that might like to see the code (peacefire, slashdot, 2600, CNN, whatever). Then code up N*P links all over your web site, that look like this:

    http://<SITE>/<DATA>
    where <DATA> is one of the N chunks (plus some data saying which chunk it is, etc) and <SITE> is one of the P sites. Then wait for search engine spiders to index your site (most sites have them coming regularly).

    After a few months, the target sites will all have the data in their logs as the spiders follow your links!

    This could be improved many ways, for instance the URL links could be spread over many hosts so that it is harder to track down the original source, the chunks could be encrypted, the receiving sites could automatically re-create the links so the data is kept circulating, different spiders could be fed different chunks, etc.

    Sort of like a Freenet using search engine spiders as the transport. Has this been done? Time to get coding!!

  14. POKEY THE PENGUIN IS THE BEST!! by Anonymous Coward · · Score: -1, Offtopic
    mmmmmmmmmmm
    mmmmmmmmmmmmmm
    mmmmmmmmmmmmmmmmm
    mmmmmmmmmmmmmmmmmm
    mmmmmmmmmmmmmmmmmmm
    mmmmmmmmmmmmmmmmmmmm
    mmmmmmmmmmmmmmmmmmmmmm
    mmmmmmmmmmmmmm mmmmmmmm
    mmmmmmmmmmmmmmm mmmmmmmmm
    mmmmmmmmmmmmmmmmm mm mmmm mm
    mmmmmmmmmmmmmmmmmm mmm m
    mmmmmmmmmmmmmmmmmmmmmmm m mmmm
    mmmmmmmmmmmmmmmmmmmmmm m mm
    mmmmmmmmmmmmmmmmmmmmmm m m
    mmmmmmmmmmmmmmmmmmmmm mmmmmmmmmmm
    mmmmmmmmmmmmmmmmmmmmmm m m
    mmmmmmmmmmmmmmmmmmmmmm m mmmmm
    mmmmmmmmmmmmmmmmmmmmm mmmmm
    mmmmmmmmmmmmmmmmmmmm m
    mmmmmmmmmmmmmmmmmmm m
    mmmmmmmmmmmmmmmmmmm m
    mmmmmmmmmmmmmmmmmmm m
    mmmmmmmmmmmmmmmmmmm m
    mmmmmmmmmmmmmmmmmm m
    mmmmmmmmmmmmmmmmmm m
    mmmmmmmmmmmm mmmmm m
    mmmmmmmmmmmm mmmmm m
    mmmmmmmmmmmm mmmm m
    mmmmmmmmmmmmmmmmm m
    mmmmmmmmmmmmm mmm m
    mmmmmmmmmmmm mmm m
    mmmmmmmmmmmm mmm m
    mmmmmmmmmmmm mm m
    mmmmmmmmmmmm m
    mmmmmmmmmmmm m
    mmmmmmmmmmm m
    mmmmmmmmmmm m
    mmmmmmmmmmmm m
    mmmmmmmmmmmm m
    mmmmmmmmmmmm m
    mmmmmmmmmmmm m
    mmmmmmmmmmmmmm mm
    mmmmmmmmmmmmmmmm m m
    mmmmmmmmmmmmmm m mm
    mmmmmmmmmmmmm m mmmm
    mmmmmmmmmmmmmmmmmmmm
    mmmmmmmmmmmmmmmmmmmmm
    mmm mmmmmmmmmmmmmm
    mmm m
    mm

    pokey the penguin likes arctic circle-candy, but certain does not like the lameness filter. now is the winter of our discontent

    (Use the Preview Button! Check those URLs! Don't forget the http://!) Post Anonymously Allowed HTML:


      • * Important Stuff: Please try to keep posts on topic. * Try to reply to other people comments instead of starting new threads. * Read other people's messages before posting your own to avoid simply duplicating what has already been said. * Use a clear subject that describes what your message is about. * Offtopic, Inflammatory, Inappropriate, Illegal, or Offensive comments might be moderated. (You can read everything, even moderated posts, by adjusting your threshold on the User Preferences Page) Problems regarding accounts or comment posting should be sent to CowboyNeal.
  15. Re:Security: Antonyms: See Microsoft by Anonymous Coward · · Score: -1, Offtopic
    I mean, I've had to do research with them using F77...

    What?!? My keyboard only goes up to F12!