Firefox Javascript Hack Was a Hoax
By: Jayesh Mansukhani
| Oct 04, 2006
In a rather unamusing turn of events the two hackers who claimed to have exposed and demonstrated JavaScript vulnerability have now retracted their clams on the bug. It turns out now the whole exercise was nothing but a big fat joke by fools with too much time on their hands.
It all started last week when Mischa Spiegelmock and Andrew Wbeelsoi demonstrated code designed to exploit Firefox JavaScript vulnerability at the ToorCon hacker conference. They had also claimed at the time that they had nearly three dozen vulnerabilities they weren't going to talk about. An alarmed Mozilla who is steadily working towards releasing Firefox 2 had immediately began investigating and reviewing its code to find these vulnerabilities.
The joke last only a few days however. This past Monday the jokers came clean and admitted to their prank. In a message sent to Mozilla which they have put up at their development Spiegelmock went on to say,
The main purpose of our talk was to be humorous. As part of our talk we mentioned that there was a previously known Firefox vulnerability that could result in a stack overflow ending up in remote code execution. However, the code we presented did not in fact do this, and I personally have not gotten it to result in code execution, nor do I know of anyone who has.
I have not succeeded in making this code do anything more than cause a crash and eat up system resources, and I certainly haven't used it to take over anyone else's computer and execute arbitrary code.
I do not have 30 undisclosed Firefox vulnerabilities, nor did I ever make this claim. I have no undisclosed Firefox vulnerabilities. The person who was speaking with me made this claim, and I honestly have no idea if he has them or not.
The only saving grace in this entire supposed laugh-a-riot is the fact Mozilla is taking no chances and putting their code under a stricter review to weed out potential problems.
| Ads by Google | ||
RELATED STORIES
rajkumar chennai @ Oct 04, 2006
LATEST NEWS
- Mass Effect 2 Contest Goes Live
- Google Warns Chinese Knock-off to Stop Using Logo
- Delhi High Court Asks Noida to Deseal Mobile Towers
- Blame Headaches in Teens on Music, Not Gadgets
- Barnes & Noble's Nook e-reader to Hit Stores
- Internet Prompts The Publishing Itch in Elderly
- ATI Radeon 5570 for Small Form Factor PCs Launched
- Iran's Resistance Keeps up Cat-and-mouse Web Game
- Bangladesh to Make Cell Phones, Laptops
- Samsung Launches Android-based Galaxy Spica
| Ads by Google | ||
Hot Searches & Keywords :
2 Megapixel
3 megapixel
5 megapixel
8 megapixel
AMD
ATI
Acer
Adobe
Airtel
Android
Apple
Asus
Blackberry
Blizzard
Blu-Ray
Bluetooth
CES 2007
CES 2010
Canon
China
Creative
DVD
Dell
Download
EA
Facebook
Firefox
Game
Google
HP
ITunes
Intel
Internet
Ipod
LCD
LG
Linux
Logitech
Microsoft
Mobile
Mobile Phones
Motorola
Mp3
Myspace
Nintendo
Nokia
Nvidia
PC
PMP
PS2
PS3
PSP
QWERTY
Samsung
Series 60
Skype
Sony
Sony Ericsson
Touchscreen
Twitter
Ubisoft
Video
Vista
Voip
Website
Wii
Windows
Windows Mobile
Windows Vista
WoW
Xbox 360
Xbox Live
Xbox360
Yahoo!
Youtube
digicam
digital camera
free
freeware
iPhone
music
social networking site
test
yahoo
| Ads by Google | ||
|
|
Careers | About Us | Tech2 Staff | Ad Inventory | Site Profile | Copyright © 2007, Tech2.com India - A Network 18 India Venture
