Re: Help Needed with Perl cgi script and spam problem



Knute Johnson <nospam@xxxxxxxxxxxxxxxxx> wrote:

Well Axel, if you had really read my post, I wasn't asking for somebody
to fix it but asking how they are attacked so I could fix it.

The method of attack depends on the weakness in the script, we would need to
see it to comment on this.

Read up on "CGI Security" to get an idea of the different methods that could
have been used.

Regards,

Mark.

--
Mark Hobley
393 Quinton Road West
QUINTON
Birmingham
B32 1QE

Telephone: (0121) 247 1596
International: 0044 121 247 1596

Email: markhobley at hotpop dot donottypethisbit com

http://markhobley.yi.org/

.



Relevant Pages

  • Re: CSS, CSS & let me give you some more CSS
    ... > Maybe I have completely missed the boat on this one, and if so, ... > please explain how I could attack someone ELSE with these... ... a fix benefits ALL users immediately. ... Disclosure prior to this only opens the site and its users up for ...
    (Vuln-Dev)
  • Re: c and c generals horrible AI
    ... For generals, the best fix is to slow down gameplay by removing your ... when I'm trying to attack. ...
    (comp.sys.ibm.pc.games.strategic)
  • Re: *sigh* something is wrong with bkcvs again
    ... just because the subject contains the magic letters "bk" does not mean ... it's neccesarily an attack on your product. ... > apology along with the fix. ... send the line "unsubscribe linux-kernel" in ...
    (Linux-Kernel)
  • Re: DoS against ISP: what is "normal?"
    ... > level of disruption for a small-to-medium ISP, ... upgraded to fix security issues, even more so in a large network. ... > Is a major DoS attack every few months par for the course these days? ...
    (Security-Basics)
  • Re: Is Apple abandoning Boot Camp?
    ... there is no basis for talking about imagined weakness in any implementation. ... I did mention that I recalled that Wine ... relatively good shape compared to actually running Windows. ... One needs specifics as to each possible vector of attack and every possible exploit of that vector, the kind of information that usually comes to light one actual or attempted attack at at time. ...
    (comp.sys.mac.system)