What happened to the Messenger Plus! forums on msghelp.net?
Shoutbox » MsgHelp Archive » Skype & Technology » Tech Talk » (DO NOT CLICK OK!) I found a major security flaw in many boards

Pages: (3): « First « 1 2 [ 3 ] Last »
(DO NOT CLICK OK!) I found a major security flaw in many boards
Author: Message:
John Anderton
Elite Member
*****

Avatar

Posts: 3908
Reputation: 80
37 / Male / Flag
Joined: Nov 2004
Status: Away
RE: (DO NOT CLICK OK!) I found a major security flaw in many boards
quote:
Originally posted by KeyStorm
Ok, instead of "Oh noes!!" put
Sorry i miss the point .... why ?? what difference does that make KS ??
[

KarunAB.com
]

[img]http://gamercards.exophase.com/459422.png[
/img]
04-27-2005 11:46 AM
Profile E-Mail PM Web Find Quote Report
Guido
Elite Member
*****

Avatar
Design is Safety

Posts: 4566
Reputation: 50
37 / Male / Flag
Joined: Dec 2002
RE: (DO NOT CLICK OK!) I found a major security flaw in many boards
quote:
Originally posted by John Anderton
quote:
Originally posted by KeyStorm
Ok, instead of "Oh noes!!" put
Sorry i miss the point .... why ?? what difference does that make KS ??
That it might hide the real URL in the alert popup.
04-27-2005 03:12 PM
Profile E-Mail PM Web Find Quote Report
WDZ
Former Admin
*****

Avatar

Posts: 7106
Reputation: 107
– / Male / Flag
Joined: Mar 2002
RE: (DO NOT CLICK OK!) I found a major security flaw in many boards
I'd hope that browser developers would think of that and limit the length and/or trim whitespace... :-/
04-27-2005 03:13 PM
Profile PM Web Find Quote Report
Guido
Elite Member
*****

Avatar
Design is Safety

Posts: 4566
Reputation: 50
37 / Male / Flag
Joined: Dec 2002
RE: (DO NOT CLICK OK!) I found a major security flaw in many boards
quote:
Originally posted by WDZ
I'd hope that browser developers would think of that and limit the length and/or trim whitespace... :-/
Sometimes yes, sometimes no.

Probably not with whitespace, but I've seen lots of times other stuff being used to lengthen the name artificially... such as "OH NOES! CLICK OK TO CONTINUE THIS IS A SAFE PAGE. YOU CAN WIN MONEY IF YOU CLICK NEXT!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! WDZ IS DA LAZYN355!" ETC. :P
04-27-2005 03:17 PM
Profile E-Mail PM Web Find Quote Report
Concord Dawn
Veteran Member
*****

Avatar
This is a loopy fruit.

Posts: 1203
Reputation: 16
34 / Male / –
Joined: Feb 2004
RE: (DO NOT CLICK OK!) I found a major security flaw in many boards
quote:
Originally posted by Guido
quote:
Originally posted by WDZ
I'd hope that browser developers would think of that and limit the length and/or trim whitespace... :-/
Sometimes yes, sometimes no.

Probably not with whitespace, but I've seen lots of times other stuff being used to lengthen the name artificially... such as "OH NOES! CLICK OK TO CONTINUE THIS IS A SAFE PAGE. YOU CAN WIN MONEY IF YOU CLICK NEXT!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!!! WDZ IS DA LAZYN355!" ETC. :P

:refuck:

How about kjust doing as KeyStorm said? Permanently banning all users that try that? :P
[Image: 7.png]
04-27-2005 04:20 PM
Profile E-Mail PM Find Quote Report
Guido
Elite Member
*****

Avatar
Design is Safety

Posts: 4566
Reputation: 50
37 / Male / Flag
Joined: Dec 2002
RE: (DO NOT CLICK OK!) I found a major security flaw in many boards
quote:
Originally posted by Chaotic_Shield
How about kjust doing as KeyStorm said? Permanently banning all users that try that?
Which is exactly what is being done currently. Not banning, since it was never made as a form of span, more like a mistake, but if it is used as an intent of spamming, be sure it will be taken care of.
04-27-2005 06:50 PM
Profile E-Mail PM Web Find Quote Report
Pages: (3): « First « 1 2 [ 3 ] Last »
« Next Oldest Return to Top Next Newest »


Threaded Mode | Linear Mode
View a Printable Version
Send this Thread to a Friend
Subscribe | Add to Favorites
Rate This Thread:

Forum Jump:

Forum Rules:
You cannot post new threads
You cannot post replies
You cannot post attachments
You can edit your posts
HTML is Off
myCode is On
Smilies are On
[img] Code is On