<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	>
<channel>
	<title>Comments on: Backdooring Windows Media Files</title>
	<atom:link href="http://www.gnucitizen.org/blog/backdooring-windows-media-files/feed/" rel="self" type="application/rss+xml" />
	<link>/blog/backdooring-windows-media-files/</link>
	<description>Information Security Think Tank</description>
	<pubDate>Thu, 21 Aug 2008 19:15:56 +0000</pubDate>
	<generator>http://wordpress.org/?v=2.6.1</generator>
		<item>
		<title>By: Firefox won&#8217;t save you. Well, sorta. &#124; Matt Frye dot Net</title>
		<link>/blog/backdooring-windows-media-files/#comment-98119</link>
		<dc:creator>Firefox won&#8217;t save you. Well, sorta. &#124; Matt Frye dot Net</dc:creator>
		<pubDate>Thu, 10 Jan 2008 16:26:31 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-98119</guid>
		<description>[...] article about a someone else&#8217;s blog post points out that Firefox won&#8217;t save you from attacks launched into IE from other crappy [...]</description>
		<content:encoded><![CDATA[<p>[...] article about a someone else&#8217;s blog post points out that Firefox won&#8217;t save you from attacks launched into IE from other crappy [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: ASX plus ClickOnce: Dangerous Combination &#124; GNUCITIZEN</title>
		<link>/blog/backdooring-windows-media-files/#comment-65353</link>
		<dc:creator>ASX plus ClickOnce: Dangerous Combination &#124; GNUCITIZEN</dc:creator>
		<pubDate>Mon, 05 Nov 2007 12:52:06 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-65353</guid>
		<description>[...] about video format attacks before (QTL, MOV, MPGs, etc, etc, etc) and in particular covered the ASX file format and the dangerous applications it can be used for. Having my previous posts in mind, I would like [...]</description>
		<content:encoded><![CDATA[<p>[...] about video format attacks before (QTL, MOV, MPGs, etc, etc, etc) and in particular covered the ASX file format and the dangerous applications it can be used for. Having my previous posts in mind, I would like [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: crypt1c_cyph3r</title>
		<link>/blog/backdooring-windows-media-files/#comment-61903</link>
		<dc:creator>crypt1c_cyph3r</dc:creator>
		<pubDate>Fri, 26 Oct 2007 22:11:19 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-61903</guid>
		<description>Hello, everyone just want to say thanx for this info really appreciate the insight! I'm honestly fed up with MS(I call em MicroSh1t)! i'm just about ready to switch over to linux! u know ubuntu, just as soon as i can figure out how to get my internet connection up and running with it! just need a little help with the drivers i need and how to install them on ubuntu's linux os! i am using a Motorola SURFboard SB5120 USB Cable Modem and my isp is cox high speed internet! any help any1 could give me is much appreciated.

as i'm kinda new to the linux os!</description>
		<content:encoded><![CDATA[<p>Hello, everyone just want to say thanx for this info really appreciate the insight! I&#8217;m honestly fed up with MS(I call em MicroSh1t)! i&#8217;m just about ready to switch over to linux! u know ubuntu, just as soon as i can figure out how to get my internet connection up and running with it! just need a little help with the drivers i need and how to install them on ubuntu&#8217;s linux os! i am using a Motorola SURFboard SB5120 USB Cable Modem and my isp is cox high speed internet! any help any1 could give me is much appreciated.</p>
<p>as i&#8217;m kinda new to the linux os!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: IT Security &#187; Blog Archive &#187; Free Music That&#8217;s Legal &#8212; But Is It Safe?</title>
		<link>/blog/backdooring-windows-media-files/#comment-61547</link>
		<dc:creator>IT Security &#187; Blog Archive &#187; Free Music That&#8217;s Legal &#8212; But Is It Safe?</dc:creator>
		<pubDate>Thu, 25 Oct 2007 18:16:12 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-61547</guid>
		<description>[...] are also backdoor vulnerabilities associated with Windows Media Files. GnuCitizen.org has the details &#8212; essentially, the meta files used to create playlists are in XML format, the [...]</description>
		<content:encoded><![CDATA[<p>[...] are also backdoor vulnerabilities associated with Windows Media Files. GnuCitizen.org has the details &#8212; essentially, the meta files used to create playlists are in XML format, the [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: 0xDeadFace</title>
		<link>/blog/backdooring-windows-media-files/#comment-52655</link>
		<dc:creator>0xDeadFace</dc:creator>
		<pubDate>Tue, 25 Sep 2007 21:57:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-52655</guid>
		<description>I read and code your exploit but I'm missing something: the jscript you launch in wmp works well in an html file opened directly with ie. I mean: no need to use this wmp trick.

The advantage of your exploit is that you use the less restrictive security rules of wmp than ie for executing jscript. Correct?

May you put an example with such a jscript?

thx</description>
		<content:encoded><![CDATA[<p>I read and code your exploit but I&#8217;m missing something: the jscript you launch in wmp works well in an html file opened directly with ie. I mean: no need to use this wmp trick.</p>
<p>The advantage of your exploit is that you use the less restrictive security rules of wmp than ie for executing jscript. Correct?</p>
<p>May you put an example with such a jscript?</p>
<p>thx</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: CX</title>
		<link>/blog/backdooring-windows-media-files/#comment-52509</link>
		<dc:creator>CX</dc:creator>
		<pubDate>Tue, 25 Sep 2007 15:07:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-52509</guid>
		<description>No problem: try lite version WinXP SP2 Vista edition (175 Mb.) _WITHOUT WINDOWS MEDIA PLAYER_

:))</description>
		<content:encoded><![CDATA[<p>No problem: try lite version WinXP SP2 Vista edition (175 Mb.) _WITHOUT WINDOWS MEDIA PLAYER_</p>
<p>:))</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: QuixoBlog &#187; Nuovo Bug in WMP</title>
		<link>/blog/backdooring-windows-media-files/#comment-52404</link>
		<dc:creator>QuixoBlog &#187; Nuovo Bug in WMP</dc:creator>
		<pubDate>Tue, 25 Sep 2007 08:02:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-52404</guid>
		<description>[...] forse in transagosistica, e dopo aver scoperto la falla relativa al binomio QuickTime + Firefox, ne segnala oggi una nuova, riguardante Windows Media Player. Un file multimediale creato a puntino potrebbe [...]</description>
		<content:encoded><![CDATA[<p>[...] forse in transagosistica, e dopo aver scoperto la falla relativa al binomio QuickTime + Firefox, ne segnala oggi una nuova, riguardante Windows Media Player. Un file multimediale creato a puntino potrebbe [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Vulnerabilidad en Adobe Reader compromete a Windows &#124; LKernelPanic</title>
		<link>/blog/backdooring-windows-media-files/#comment-51370</link>
		<dc:creator>Vulnerabilidad en Adobe Reader compromete a Windows &#124; LKernelPanic</dc:creator>
		<pubDate>Sat, 22 Sep 2007 01:10:05 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-51370</guid>
		<description>[...] llama la atenciÃ³n el estar cazando bugs, sin embargo ya van 3 de forma seguida, el del Quicktime, uno del WMP (Windows Media Player) y ahora, uno de Adobe Reader, en menos de una [...]</description>
		<content:encoded><![CDATA[<p>[...] llama la atenciÃ³n el estar cazando bugs, sin embargo ya van 3 de forma seguida, el del Quicktime, uno del WMP (Windows Media Player) y ahora, uno de Adobe Reader, en menos de una [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Sergey Gordeychik</title>
		<link>/blog/backdooring-windows-media-files/#comment-51114</link>
		<dc:creator>Sergey Gordeychik</dc:creator>
		<pubDate>Fri, 21 Sep 2007 09:45:23 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-51114</guid>
		<description>There are lot of other applications which use IE as  default rendering engine and can used to exploit IE's bugs. But via different vectors. 

Examples:

http://seclists.org/bugtraq/2005/Jul/0427.html

http://www.securitylab.ru/contest/212127.php (Russian)
http://www.securityfocus.com/bid/17913/references</description>
		<content:encoded><![CDATA[<p>There are lot of other applications which use IE as  default rendering engine and can used to exploit IE&#8217;s bugs. But via different vectors. </p>
<p>Examples:</p>
<p><a href="http://seclists.org/bugtraq/2005/Jul/0427.html" rel="nofollow">http://seclists.org/bugtraq/2005/Jul/0427.html</a></p>
<p><a href="http://www.securitylab.ru/contest/212127.php" rel="nofollow">http://www.securitylab.ru/contest/212127.php</a> (Russian)<br />
<a href="http://www.securityfocus.com/bid/17913/references" rel="nofollow">http://www.securityfocus.com/bid/17913/references</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Lff</title>
		<link>/blog/backdooring-windows-media-files/#comment-51048</link>
		<dc:creator>Lff</dc:creator>
		<pubDate>Fri, 21 Sep 2007 07:17:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-51048</guid>
		<description>Guys, no one ever thought that windows itself and microsoft as a company are free from bugs and security holes... In general, microsoft is sucks by itself, no less no more. Everybosy, let us say: "Bill, we do not want your sloppy company anymore!"</description>
		<content:encoded><![CDATA[<p>Guys, no one ever thought that windows itself and microsoft as a company are free from bugs and security holes&#8230; In general, microsoft is sucks by itself, no less no more. Everybosy, let us say: &#8220;Bill, we do not want your sloppy company anymore!&#8221;</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: hackademix.net Â» Don't Open That Doc!</title>
		<link>/blog/backdooring-windows-media-files/#comment-51009</link>
		<dc:creator>hackademix.net Â» Don't Open That Doc!</dc:creator>
		<pubDate>Thu, 20 Sep 2007 23:58:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-51009</guid>
		<description>[...] seen MP3 tunes pwning Firefox (and NoScript promptly counter-pwning), Windows playlists pwning browser security, and finally PDF documents pwning Windows PCs. This latest &#8220;disclosure&#8221; sounds like a [...]</description>
		<content:encoded><![CDATA[<p>[...] seen MP3 tunes pwning Firefox (and NoScript promptly counter-pwning), Windows playlists pwning browser security, and finally PDF documents pwning Windows PCs. This latest &#8220;disclosure&#8221; sounds like a [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: World News Soft Year &#187; Blog Archive &#187; Ð”Ñ‹Ñ€Ñ‹ Ð² IE Ð¼Ð¾Ð¶Ð½Ð¾ Ð·Ð°Ð´ÐµÐ¹ÑÑ‚Ð²Ð¾Ð²Ð°Ñ‚ÑŒ Ñ‡ÐµÑ€ÐµÐ· Firefox Ð¸ Opera</title>
		<link>/blog/backdooring-windows-media-files/#comment-50866</link>
		<dc:creator>World News Soft Year &#187; Blog Archive &#187; Ð”Ñ‹Ñ€Ñ‹ Ð² IE Ð¼Ð¾Ð¶Ð½Ð¾ Ð·Ð°Ð´ÐµÐ¹ÑÑ‚Ð²Ð¾Ð²Ð°Ñ‚ÑŒ Ñ‡ÐµÑ€ÐµÐ· Firefox Ð¸ Opera</dc:creator>
		<pubDate>Thu, 20 Sep 2007 17:16:47 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50866</guid>
		<description>[...] Ð¿Ð¾ Ð²Ð¾Ð¿Ñ€Ð¾ÑÐ°Ð¼ ÐºÐ¾Ð¼Ð¿ÑŒÑŽÑ‚ÐµÑ€Ð½Ð¾Ð¹ Ð±ÐµÐ·Ð¾Ð¿Ð°ÑÐ½Ð¾ÑÑ‚Ð¸ ÐŸÐµÑ‚ÐºÐ¾ ÐŸÐµÑ‚ÐºÐ¾Ð² Ð½Ð°ÑˆÐµÐ» ÑÐ¿Ð¾ÑÐ¾Ð±, Ð¿Ñ€Ð¸ Ð¿Ð¾Ð¼Ð¾Ñ‰Ð¸ ÐºÐ¾Ñ‚Ð¾Ñ€Ð¾Ð³Ð¾ ÑƒÑÐ·Ð²Ð¸Ð¼Ð¾ÑÑ‚Ð¸ Ð² Internet Explorer Ð¼Ð¾Ð³ÑƒÑ‚ Ð±Ñ‹Ñ‚ÑŒ [...]</description>
		<content:encoded><![CDATA[<p>[...] Ð¿Ð¾ Ð²Ð¾Ð¿Ñ€Ð¾ÑÐ°Ð¼ ÐºÐ¾Ð¼Ð¿ÑŒÑŽÑ‚ÐµÑ€Ð½Ð¾Ð¹ Ð±ÐµÐ·Ð¾Ð¿Ð°ÑÐ½Ð¾ÑÑ‚Ð¸ ÐŸÐµÑ‚ÐºÐ¾ ÐŸÐµÑ‚ÐºÐ¾Ð² Ð½Ð°ÑˆÐµÐ» ÑÐ¿Ð¾ÑÐ¾Ð±, Ð¿Ñ€Ð¸ Ð¿Ð¾Ð¼Ð¾Ñ‰Ð¸ ÐºÐ¾Ñ‚Ð¾Ñ€Ð¾Ð³Ð¾ ÑƒÑÐ·Ð²Ð¸Ð¼Ð¾ÑÑ‚Ð¸ Ð² Internet Explorer Ð¼Ð¾Ð³ÑƒÑ‚ Ð±Ñ‹Ñ‚ÑŒ [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Security and Development blog &#187; Puertas traseras en archivos de Windows Media</title>
		<link>/blog/backdooring-windows-media-files/#comment-50798</link>
		<dc:creator>Security and Development blog &#187; Puertas traseras en archivos de Windows Media</dc:creator>
		<pubDate>Thu, 20 Sep 2007 14:24:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50798</guid>
		<description>[...] Backdooring Windows Media Files http://www.gnucitizen.org/blog/backdooring-windows-media-files [...]</description>
		<content:encoded><![CDATA[<p>[...] Backdooring Windows Media Files <a href="http://www.gnucitizen.org/blog/backdooring-windows-media-files" rel="nofollow">http://www.gnucitizen.org/blog/backdooring-windows-media-files</a> [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: DigitMemo.com &#187; Firefox Won&#8217;t Save You from IE Flaws</title>
		<link>/blog/backdooring-windows-media-files/#comment-50716</link>
		<dc:creator>DigitMemo.com &#187; Firefox Won&#8217;t Save You from IE Flaws</dc:creator>
		<pubDate>Thu, 20 Sep 2007 09:16:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50716</guid>
		<description>[...] Petko D. Petkov said in a Sept. 18 blog posting that he&#8217;s found that a fully patched Windows XP Service Pack 2 system running Internet [...]</description>
		<content:encoded><![CDATA[<p>[...] Petko D. Petkov said in a Sept. 18 blog posting that he&#8217;s found that a fully patched Windows XP Service Pack 2 system running Internet [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: CrashOne</title>
		<link>/blog/backdooring-windows-media-files/#comment-50686</link>
		<dc:creator>CrashOne</dc:creator>
		<pubDate>Thu, 20 Sep 2007 07:13:40 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50686</guid>
		<description>This example illustrates the lack of good security within MS products.

Althoug i think this wil be patched soon, simply change the default behaviour of WMP.

If your default player for WMP files isn't WMP (like VLC) your not vulnerable.</description>
		<content:encoded><![CDATA[<p>This example illustrates the lack of good security within MS products.</p>
<p>Althoug i think this wil be patched soon, simply change the default behaviour of WMP.</p>
<p>If your default player for WMP files isn&#8217;t WMP (like VLC) your not vulnerable.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: chucky</title>
		<link>/blog/backdooring-windows-media-files/#comment-50654</link>
		<dc:creator>chucky</dc:creator>
		<pubDate>Thu, 20 Sep 2007 03:55:43 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50654</guid>
		<description>good job man, this is pretty crazy</description>
		<content:encoded><![CDATA[<p>good job man, this is pretty crazy</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Joe Phantom</title>
		<link>/blog/backdooring-windows-media-files/#comment-50569</link>
		<dc:creator>Joe Phantom</dc:creator>
		<pubDate>Wed, 19 Sep 2007 21:29:00 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50569</guid>
		<description>Another excellent post about meta files danger.</description>
		<content:encoded><![CDATA[<p>Another excellent post about meta files danger.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Doomwatchers sound Windows and IE vuln alarm &#124; xMoDx</title>
		<link>/blog/backdooring-windows-media-files/#comment-50564</link>
		<dc:creator>Doomwatchers sound Windows and IE vuln alarm &#124; xMoDx</dc:creator>
		<pubDate>Wed, 19 Sep 2007 20:47:44 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50564</guid>
		<description>[...] Petko Petkov, the same researcher who published details about last week&#8217;s QuickTime flaw, on Tuesday disclosed a new vulnerability in Windows Media Player that allows attackers to lure visitors to malicious sites using Internet Explorer. It could be aimed at people who have avoided the Microsoft browser for security concerns, Petkov said here. [...]</description>
		<content:encoded><![CDATA[<p>[...] Petko Petkov, the same researcher who published details about last week&#8217;s QuickTime flaw, on Tuesday disclosed a new vulnerability in Windows Media Player that allows attackers to lure visitors to malicious sites using Internet Explorer. It could be aimed at people who have avoided the Microsoft browser for security concerns, Petkov said here. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: FiSh</title>
		<link>/blog/backdooring-windows-media-files/#comment-50445</link>
		<dc:creator>FiSh</dc:creator>
		<pubDate>Wed, 19 Sep 2007 04:03:54 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50445</guid>
		<description>I've been reading your RSS feed for the past week or two, and let me tell you, you've scared me shitless! Keep up the good work ;)</description>
		<content:encoded><![CDATA[<p>I&#8217;ve been reading your RSS feed for the past week or two, and let me tell you, you&#8217;ve scared me shitless! Keep up the good work ;)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Rosario Valotta</title>
		<link>/blog/backdooring-windows-media-files/#comment-50360</link>
		<dc:creator>Rosario Valotta</dc:creator>
		<pubDate>Tue, 18 Sep 2007 22:47:26 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/backdooring-windows-media-files#comment-50360</guid>
		<description>embedding window. The only limit to this is that you must define in the  tag the HTML node (a DIV for example) where the TEXT script shoud be showed.
I've tried to embed a wmp in sites that allow video uploading (spaces.live.com, myspace.com) but the embed code always is sanitized so I had no succes in exploiting this functionality.</description>
		<content:encoded><![CDATA[<p>embedding window. The only limit to this is that you must define in the  tag the HTML node (a DIV for example) where the TEXT script shoud be showed.<br />
I&#8217;ve tried to embed a wmp in sites that allow video uploading (spaces.live.com, myspace.com) but the embed code always is sanitized so I had no succes in exploiting this functionality.</p>
]]></content:encoded>
	</item>
</channel>
</rss>
