Pantek Library
Hosting Provided By
CybrHost
High Speed Hosting

[Fwd: Re: URL Scan for IIS]

From: Mark Curphey <mark(at)curphey.com>
Date: Sun Feb 23 2003 - 23:47:36 EST


Some posts seem to be getting dropped (or getting queued weirdly) ....I logged it with securityfocus....if your post doesn't get though within 24 hours please resubmit it and CC me. Thanks.

attached mail follows:


It's highly effective against URL and Header overflows - of which the most recent is probably the ColdFusion/JRun overflow.

It's not effective at all at many overflows that Microsoft says it is effective at preventing - the ones that occur in the body arguments. Some examples include the MSADC overflow, and the Microsoft Content Server authentication overflow.

I'll be doing a more specific demo of one of those next week at BlackHat in Seattle. Stop on by. :>

Dave Aitel
Immunity, Inc.
http://www.immunitysec.com/CANVAS/

On Sat, 22 Feb 2003 20:55:19 -0800
securityarchitect@hush.com wrote:

Do you need help?X

>
> I just took a lok at URL Scan and wondered if anyone has any comments
> as to its effectiveness ?
>
> Also does anyone have a decent urlscan ini file of additional strings
> they are filtering that would share for education ?
>
>
>
> Concerned about your privacy? Follow this link to get
Received on Sun Feb 23 23:48:00 2003

This archive was generated by hypermail 2.1.8 : Wed Aug 23 2006 - 14:07:49 EDT


Contact Us  Legal Notices  Order Services Online 
Pantek Home  Privacy Policy  IT news  Site Map  Pantek Library