search PRIV & ALL sites linked here

Tuesday, January 19, 2010

IE Aurora src c0de + China Google Attacks & damn rucas!

first things first, here is the exploit c0de PoC.

# Author : Ahmed Obied (ahmed.obied@gmail.com)

#

# This program acts as a web server that generates an exploit to

# target a vulnerability (CVE-2010-0249) in Internet Explorer.

# The exploit was tested using Internet Explorer 6 on Windows XP SP2.

# The exploit’s payload spawns the calculator.

#

# Usage : python ie_aurora.py [port number]


-->http://www.pastebin.ca/1758112<-- Aurora Exploit python source!

thanks http://vul.kr

here is the McAfee page about "Operation Aurora", the IE Vulnerability that was used to attack some of google's servers + other companies

http://www.mcafee.com/us/threat_center/operation_aurora.html
___
Microsofts advisory.

http://www.microsoft.com/technet/security/advisory/979352.mspx
___
oh lawd its CyBeRwAr!!!

http://www.computerweekly.com/Articles/2010/01/13/239935/google-declares-cyber-war-on-china-after-security-attack.htm
___
code or PoC released to pub. trying to find it now.. will update soon.

http://www.computerweekly.com/Articles/2010/01/18/239991/google-china-hack-code-published.htm
___
Android, yahoo takes hits over "slugfest"

http://www.technewsworld.com/story/Android-Yahoo-Take-Hits-in-Google-China-Slugfest-69141.html
___
Ditch IE? Germany thinks so.

http://blogs.computerworld.com/15416/ditch_ie_over_google_china_hack_bug?source=rss_blogs

or uhm upgrade?

http://news.softpedia.com/news/Upgrade-to-IE8-to-Fend-Off-Attacks-Targeting-IE-0-Day-132527.shtml
___
Google postpones cell phone releases in China over these disputes.

http://news.yahoo.com/s/ap/20100119/ap_on_hi_te/as_china_google

+++
Sprint giving GPS locations to law enforcement. more to come on these issues.
+++

and damn Rucas, pissing off freenode opers and shit. lawl.
http://pastebin.ca/1756688
http://blog.freenode.net/2010/01/javascript-spam/

1 comment:

  1. I was down in the dumps after my Encounter with this company. I should have known better but their attractive offers made me ignore the red flags.
    They took a lot from me and i kept falling for their tricks. Some tech expert from

    paytondyian699@gmail.com

    pulled a successful chargeback and i recovered my losses back

    ReplyDelete