<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
		>
<channel>
	<title>Comments on: IE pwns SecondLife</title>
	<atom:link href="http://www.gnucitizen.org/blog/ie-pwns-secondlife/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/</link>
	<description>Information Security Think Tank</description>
	<lastBuildDate>Mon, 12 Dec 2011 19:56:03 +0000</lastBuildDate>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
	<generator>http://wordpress.org/?v=3.1.2</generator>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-126458</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Tue, 07 Apr 2009 20:24:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-126458</guid>
		<description>np! :)</description>
		<content:encoded><![CDATA[<p>np! :)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: bobalot</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-126457</link>
		<dc:creator>bobalot</dc:creator>
		<pubDate>Mon, 06 Apr 2009 16:30:35 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-126457</guid>
		<description>o ok well thank you. Honestly wasnt expecting a response wince this eas made so long ago lol. Thanks a ton :D</description>
		<content:encoded><![CDATA[<p>o ok well thank you. Honestly wasnt expecting a response wince this eas made so long ago lol. Thanks a ton :D</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-126423</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Sun, 29 Mar 2009 15:15:24 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-126423</guid>
		<description>it is not working because this is an old bug and you are probably using not vulnerable version of second life.</description>
		<content:encoded><![CDATA[<p>it is not working because this is an old bug and you are probably using not vulnerable version of second life.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: bobalot</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-126398</link>
		<dc:creator>bobalot</dc:creator>
		<pubDate>Sun, 29 Mar 2009 12:52:16 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-126398</guid>
		<description>does this even work anymore? i tryied it and nothing appears in my error folder afterward.</description>
		<content:encoded><![CDATA[<p>does this even work anymore? i tryied it and nothing appears in my error folder afterward.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Cose Lefevre</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-123397</link>
		<dc:creator>Cose Lefevre</dc:creator>
		<pubDate>Wed, 27 Aug 2008 16:55:36 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-123397</guid>
		<description>Wooo I&#039;m confused, how to build this myself to test it - I have uploaded index &amp; login.php, that works, where do I go from here?!?</description>
		<content:encoded><![CDATA[<p>Wooo I&#8217;m confused, how to build this myself to test it &#8211; I have uploaded index &amp; login.php, that works, where do I go from here?!?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: pdp</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-123396</link>
		<dc:creator>pdp</dc:creator>
		<pubDate>Wed, 27 Aug 2008 16:26:10 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-123396</guid>
		<description>which version are you testing this on?</description>
		<content:encoded><![CDATA[<p>which version are you testing this on?</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: JEB</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-123395</link>
		<dc:creator>JEB</dc:creator>
		<pubDate>Wed, 27 Aug 2008 16:11:21 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-123395</guid>
		<description>I cannot locate my php error file, or at least it doesn&#039;t appear to contain any fresh information, after testing this!</description>
		<content:encoded><![CDATA[<p>I cannot locate my php error file, or at least it doesn&#8217;t appear to contain any fresh information, after testing this!</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Internet Explorer exploit can be used to hack Second Life accounts &#171; Samurai Pickle</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-115554</link>
		<dc:creator>Internet Explorer exploit can be used to hack Second Life accounts &#171; Samurai Pickle</dc:creator>
		<pubDate>Mon, 25 Feb 2008 00:34:33 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-115554</guid>
		<description>[...] but is important enough even for a &quot;me too&quot; post: There is an exploit reported by GNUCitizen that describes - in detail - how a properly formatted web page can be used to trick Internet [...]</description>
		<content:encoded><![CDATA[<p>[...] but is important enough even for a &quot;me too&quot; post: There is an exploit reported by GNUCitizen that describes &#8211; in detail &#8211; how a properly formatted web page can be used to trick Internet [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: MustLive</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50844</link>
		<dc:creator>MustLive</dc:creator>
		<pubDate>Thu, 20 Sep 2007 16:16:04 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50844</guid>
		<description>pdp, nice one!

It&#039;s nice URI exploitation, CSRF and Information leakage vulnerabilities joint into one attack.

Yes, IE help to pwns SecondLife ;-). And MS will not take any responsibility for their IE &quot;URI feature&quot; :-), so SL need to fix it in their software. Like all others vendors which products are vulnerable to URI exploitation holes.

Nathan and Rios work a lot in case of URI exploitation and command argument injection, and pdp make his contribution. It is new attack surface guys. So every user of SecondLife (and any other software with its own url-handlers) need to attend to security (especially if they use IE). Waiting for new URI-exploit holes.</description>
		<content:encoded><![CDATA[<p>pdp, nice one!</p>
<p>It&#8217;s nice URI exploitation, CSRF and Information leakage vulnerabilities joint into one attack.</p>
<p>Yes, IE help to pwns SecondLife ;-). And MS will not take any responsibility for their IE &#8220;URI feature&#8221; :-), so SL need to fix it in their software. Like all others vendors which products are vulnerable to URI exploitation holes.</p>
<p>Nathan and Rios work a lot in case of URI exploitation and command argument injection, and pdp make his contribution. It is new attack surface guys. So every user of SecondLife (and any other software with its own url-handlers) need to attend to security (especially if they use IE). Waiting for new URI-exploit holes.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Second Life 1.18.2.1 Tecnolives</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50829</link>
		<dc:creator>Second Life 1.18.2.1 Tecnolives</dc:creator>
		<pubDate>Thu, 20 Sep 2007 15:32:41 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50829</guid>
		<description>[...] 1.18.2.1 se tiene corregidos, principalmente, algunos fallos en el sistema de voz, ademÃ¡s de una vulnerabilidad crÃ­tica reportada hace poco con respecto a las [...]</description>
		<content:encoded><![CDATA[<p>[...] 1.18.2.1 se tiene corregidos, principalmente, algunos fallos en el sistema de voz, ademÃ¡s de una vulnerabilidad crÃ­tica reportada hace poco con respecto a las [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Secondlife Talk &#187; SicherheitslÃ¼cke in Second-Life-Client</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50487</link>
		<dc:creator>Secondlife Talk &#187; SicherheitslÃ¼cke in Second-Life-Client</dc:creator>
		<pubDate>Wed, 19 Sep 2007 06:41:55 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50487</guid>
		<description>[...] die es ermÃ¶glicht, die Login-Daten eines Residents zu erspÃ¤hen. Dies wurde durch den Blogger Petko Petkov [...]</description>
		<content:encoded><![CDATA[<p>[...] die es ermÃ¶glicht, die Login-Daten eines Residents zu erspÃ¤hen. Dies wurde durch den Blogger Petko Petkov [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: New risk in the save password feature exposed at My Second Life</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50372</link>
		<dc:creator>New risk in the save password feature exposed at My Second Life</dc:creator>
		<pubDate>Tue, 18 Sep 2007 23:08:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50372</guid>
		<description>[...] your browser? I bet you did, probably we all did when following an SLURL, for example. Not this blogpost explains how a malicious website could use this feature to obtain the MD5 hash of your Second Life [...]</description>
		<content:encoded><![CDATA[<p>[...] your browser? I bet you did, probably we all did when following an SLURL, for example. Not this blogpost explains how a malicious website could use this feature to obtain the MD5 hash of your Second Life [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Jonash Vanalten</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50307</link>
		<dc:creator>Jonash Vanalten</dc:creator>
		<pubDate>Tue, 18 Sep 2007 19:25:34 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50307</guid>
		<description>I&#039;ve produced a binary patch for the current windows viewer which disables the -loginuri feature and so should prevent the exploit working.

I&#039;ve attached this patch to the JIRA entry for this bug. If you don&#039;t want to wait for the update from Linden, this should corect the issue:

http://jira.secondlife.com/browse/VWR-2508</description>
		<content:encoded><![CDATA[<p>I&#8217;ve produced a binary patch for the current windows viewer which disables the -loginuri feature and so should prevent the exploit working.</p>
<p>I&#8217;ve attached this patch to the JIRA entry for this bug. If you don&#8217;t want to wait for the update from Linden, this should corect the issue:</p>
<p><a href="http://jira.secondlife.com/browse/VWR-2508" rel="nofollow">http://jira.secondlife.com/browse/VWR-2508</a></p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Similes</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50269</link>
		<dc:creator>Similes</dc:creator>
		<pubDate>Tue, 18 Sep 2007 17:12:07 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50269</guid>
		<description>Hi, I did some testing :
- On windows, I&#039;ve retrieved the exact same  credentials by accessing the page in both IE and FF, making both exploitable.
- On Mac OS however, the URL is taken as a map location, the hack doesn&#039;t occur, it might if you change the URL syntax for the Mac client.</description>
		<content:encoded><![CDATA[<p>Hi, I did some testing :<br />
- On windows, I&#8217;ve retrieved the exact same  credentials by accessing the page in both IE and FF, making both exploitable.<br />
- On Mac OS however, the URL is taken as a map location, the hack doesn&#8217;t occur, it might if you change the URL syntax for the Mac client.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Aidan Thornton</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50212</link>
		<dc:creator>Aidan Thornton</dc:creator>
		<pubDate>Tue, 18 Sep 2007 14:10:39 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50212</guid>
		<description>Oh, and normally the login information is sent over https - it&#039;s just that the command-line option to select where to login accepts non-https URLs. (There are times when it&#039;s useful to be able to login to somewhere else - for example, the OpenSim project.)</description>
		<content:encoded><![CDATA[<p>Oh, and normally the login information is sent over https &#8211; it&#8217;s just that the command-line option to select where to login accepts non-https URLs. (There are times when it&#8217;s useful to be able to login to somewhere else &#8211; for example, the OpenSim project.)</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Aidan Thornton</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50203</link>
		<dc:creator>Aidan Thornton</dc:creator>
		<pubDate>Tue, 18 Sep 2007 14:08:17 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50203</guid>
		<description>Actually, IIRC the hash of the password isn&#039;t quite as good as the password itself. The hash is sufficient to log into the Second Life grid and steal the victim&#039;s L$, but it isn&#039;t sufficient to log in to secondlife.com. In particular, I think changing a user&#039;s password or e-mail address can&#039;t be done using just the hash. 

Fortunately, there&#039;s a workaround for this vulnerability - disable saved passwords and enter your password by hand each time you login. (Oh, and be wary of secondlife&#058;// links.)

Also, in this case there&#039;s a good reason for the URL handler - it&#039;s used for linking from websites to locations inworld. Not essential, but definitely nice to have.</description>
		<content:encoded><![CDATA[<p>Actually, IIRC the hash of the password isn&#8217;t quite as good as the password itself. The hash is sufficient to log into the Second Life grid and steal the victim&#8217;s L$, but it isn&#8217;t sufficient to log in to secondlife.com. In particular, I think changing a user&#8217;s password or e-mail address can&#8217;t be done using just the hash. </p>
<p>Fortunately, there&#8217;s a workaround for this vulnerability &#8211; disable saved passwords and enter your password by hand each time you login. (Oh, and be wary of secondlife&#58;// links.)</p>
<p>Also, in this case there&#8217;s a good reason for the URL handler &#8211; it&#8217;s used for linking from websites to locations inworld. Not essential, but definitely nice to have.</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: VulnÃ©rabilitÃ© de Second Life ? Attention Ã  vos comptes ! &#171; SecondLife Observer France- SLObserver.com</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50192</link>
		<dc:creator>VulnÃ©rabilitÃ© de Second Life ? Attention Ã  vos comptes ! &#171; SecondLife Observer France- SLObserver.com</dc:creator>
		<pubDate>Tue, 18 Sep 2007 13:03:51 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50192</guid>
		<description>[...] Toujours selon GNUCITIZEN, il suffit aux utilisateurs de ne pas employer l&#8217;option de mÃ©morisation du mot de passe sur la page d&#8217;accueil de Second Life ou encore de ne pas utiliser Internet Explorer pour accÃ©der au net. L&#8217;utilisation d&#8217;un autre moteur de recherche, style Firefox, constituerait une autre protection contre ce piratage. Pour les fervents de technique, des informations dÃ©taillÃ©es peuvent Ãªtre obtenues sur le site de GNUCITIZEN. [...]</description>
		<content:encoded><![CDATA[<p>[...] Toujours selon GNUCITIZEN, il suffit aux utilisateurs de ne pas employer l&#8217;option de mÃ©morisation du mot de passe sur la page d&#8217;accueil de Second Life ou encore de ne pas utiliser Internet Explorer pour accÃ©der au net. L&#8217;utilisation d&#8217;un autre moteur de recherche, style Firefox, constituerait une autre protection contre ce piratage. Pour les fervents de technique, des informations dÃ©taillÃ©es peuvent Ãªtre obtenues sur le site de GNUCITIZEN. [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Internet Explorer facilita robo de identidad en SecondLife &#171;</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50163</link>
		<dc:creator>Internet Explorer facilita robo de identidad en SecondLife &#171;</dc:creator>
		<pubDate>Tue, 18 Sep 2007 11:47:32 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50163</guid>
		<description>[...] info  By Lestat   Categories: ArticulosyVulnerabilidades                      GNU Citizen acaba de hacer pÃºblico un nuevo uso para el ya conocido â€œbug compartidoâ€, del que Microsoft se lava las manos y [...]</description>
		<content:encoded><![CDATA[<p>[...] info  By Lestat   Categories: ArticulosyVulnerabilidades                      GNU Citizen acaba de hacer pÃºblico un nuevo uso para el ya conocido â€œbug compartidoâ€, del que Microsoft se lava las manos y [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: The Second Life Grid Grind &#187; Blog Archive &#187; The knock out blow? Hack allows user access to passwords.</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50149</link>
		<dc:creator>The Second Life Grid Grind &#187; Blog Archive &#187; The knock out blow? Hack allows user access to passwords.</dc:creator>
		<pubDate>Tue, 18 Sep 2007 10:41:20 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50149</guid>
		<description>[...] a thing about it. Now this current deal is a much bigger problem. A nice hacker type has published the how-to on sucking SecondLife passwords and user info right from the game. It requires a user to go to a webpage and have Internet Explorer [...]</description>
		<content:encoded><![CDATA[<p>[...] a thing about it. Now this current deal is a much bigger problem. A nice hacker type has published the how-to on sucking SecondLife passwords and user info right from the game. It requires a user to go to a webpage and have Internet Explorer [...]</p>
]]></content:encoded>
	</item>
	<item>
		<title>By: Second Life News for September 18, 2007 &#171; The Grid Live</title>
		<link>http://www.gnucitizen.org/blog/ie-pwns-secondlife/comment-page-1/#comment-50090</link>
		<dc:creator>Second Life News for September 18, 2007 &#171; The Grid Live</dc:creator>
		<pubDate>Tue, 18 Sep 2007 06:03:27 +0000</pubDate>
		<guid isPermaLink="false">http://www.gnucitizen.org/blog/ie-pwns-secondlife#comment-50090</guid>
		<description>[...] IE pwns SecondLife First of all, I must say that I am not a bug hunter. I am more on the side of tactical exploitation - you know figuring out your way through the system. I really hate using exploits and in fact, I find this approach very dull. There is no fun and value in it whatsoever. Anyway, the big news is that IE (Internet Explorer) pwns SecondLife. [...]</description>
		<content:encoded><![CDATA[<p>[...] IE pwns SecondLife First of all, I must say that I am not a bug hunter. I am more on the side of tactical exploitation &#8211; you know figuring out your way through the system. I really hate using exploits and in fact, I find this approach very dull. There is no fun and value in it whatsoever. Anyway, the big news is that IE (Internet Explorer) pwns SecondLife. [...]</p>
]]></content:encoded>
	</item>
</channel>
</rss>

