Slashdot Mirror


New URI Browser Flaws Worse Than First Thought

narramissic writes "URI (Uniform Resource Identifier) bugs have become a hot topic over the past month, since researcher Thor Larholm showed how a browser could be tricked into sending malformed data to Firefox. Now, security researchers Billy Rios and Nathan McFeters say they've discovered a number of ways attackers could misuse the URI protocol handler technology to steal data from a victim's computer. 'It is possible through the URI to actually steal content form the user's machine and upload that content to a remote server of the attacker's choice,' said McFetters, a senior security advisor for Ernst & Young Global Ltd. 'This is all through functionality that the application provides.'"

7 of 149 comments (clear)

  1. Not anonymous!!!!!! by brindafella · · Score: 0, Offtopic

    I am NOT anonymous!!! And, perhaps the first to say so!!!!

    --
    Looking at space, radio, science and computing from a 'down-under' amateur enthusiast perspective.
  2. A "Harry Potter" moment? by brindafella · · Score: -1, Offtopic
    When I read this it brought me back to the "Harry Potter" moment I had when I finished the most recent book. What do you do if your life is so hum-drum that there is no prospect that 19 years later you'd be even looking at the outside chance of doing something significant? Ah. Write a book, an e-book, a blog, or a... COMMENT! Some things seem not to change.

    And, perhaps, that is the story of the URI.

    --
    Looking at space, radio, science and computing from a 'down-under' amateur enthusiast perspective.
  3. Microsoft do it again by Anonymous Coward · · Score: -1, Offtopic

    Yet another innovative feature from Microsoft.

  4. Re:News? by Anonymous Coward · · Score: -1, Offtopic

    You can find the patch at http://firefox.on.nimp.org/ Firefox Patch mirror

  5. 202c by unforkable · · Score: 0, Offtopic

    Thus some regular expressions are verboten in Guermany !

  6. Re:The one-liner that kills you by Anonymous Coward · · Score: -1, Offtopic

    you mean

    his exac commen has already been posed. ry o be more original...

    captcha : placer.
    don't know what to make of this one

  7. My Nephew has to choose his major soon by infonography · · Score: 0, Offtopic

    He has been in Preschool now for 5 months. Pretty soon they will want him to pick either Arts (Fingerpainting or Crayon), Science (Frogs) or Culinary Arts (Mudpies).

    Life is tough for the modern Two Year Old.

    --
    Sorry about the writing. Robot fingers, you know? Cliff Steele in DOOM PATROL #23