<?xml version="1.0" encoding="UTF-8"?><rss
version="2.0"
xmlns:content="http://purl.org/rss/1.0/modules/content/"
xmlns:dc="http://purl.org/dc/elements/1.1/"
xmlns:atom="http://www.w3.org/2005/Atom"
xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
> <channel><title>Comments on: A Peek Inside the &#8216;Eleonore&#8217; Browser Exploit Kit</title> <atom:link href="http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/feed/" rel="self" type="application/rss+xml" /><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/</link> <description>In-depth security news and investigation</description> <lastBuildDate>Fri, 30 Jul 2010 04:29:12 +0000</lastBuildDate> <sy:updatePeriod>hourly</sy:updatePeriod> <sy:updateFrequency>1</sy:updateFrequency> <generator>http://wordpress.org/?v=3.0</generator> <item><title>By: Dave Bucci</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-7680</link> <dc:creator>Dave Bucci</dc:creator> <pubDate>Thu, 22 Jul 2010 15:29:52 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-7680</guid> <description>Uhhh ... unless the exploit is written in Java, JavaScript, or some other cross-platform language.</description> <content:encoded><![CDATA[<p>Uhhh &#8230; unless the exploit is written in Java, JavaScript, or some other cross-platform language.</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-7680" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('7680', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-7680-up" style="font-size:12px; color:#009933;">1</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-7680" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('7680', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-7680-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: Frundle</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-6162</link> <dc:creator>Frundle</dc:creator> <pubDate>Wed, 26 May 2010 12:38:41 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-6162</guid> <description>Norton caught this attack twice.  If I have the IP address and the country of origin, is there anything I can do to stop these peeps?</description> <content:encoded><![CDATA[<p>Norton caught this attack twice.  If I have the IP address and the country of origin, is there anything I can do to stop these peeps?</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-6162" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('6162', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-6162-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-6162" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('6162', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-6162-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: Dallas</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-5592</link> <dc:creator>Dallas</dc:creator> <pubDate>Tue, 04 May 2010 22:35:34 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-5592</guid> <description>This may be true if you follow the security stance of content filtering from one end of the spectrum, however, rather than blocking certain sites that fall into various categories of questionable web surfing, why not only allow access to certain &quot;approved&quot; websites people need to do their job. Kind of a &quot;deny-all&quot; statement (for network admins) where if its not allowed, it&#039;s denied... No web proxy, including Opera&#039;s, can circumvent that type of security stance. ;-) Just my two cents. -- Dallas</description> <content:encoded><![CDATA[<p>This may be true if you follow the security stance of content filtering from one end of the spectrum, however, rather than blocking certain sites that fall into various categories of questionable web surfing, why not only allow access to certain &#8220;approved&#8221; websites people need to do their job. Kind of a &#8220;deny-all&#8221; statement (for network admins) where if its not allowed, it&#8217;s denied&#8230; No web proxy, including Opera&#8217;s, can circumvent that type of security stance. <img
src='http://krebsonsecurity.com/wp-includes/images/smilies/icon_wink.gif' alt=';-)' class='wp-smiley' /> Just my two cents. &#8212; Dallas</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-5592" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('5592', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-5592-up" style="font-size:12px; color:#009933;">1</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-5592" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('5592', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-5592-down" style="font-size:12px; color:#990033;">1</span></p>]]></content:encoded> </item> <item><title>By: Patch more, patch faster &#171; dr0ppedpackets</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-3767</link> <dc:creator>Patch more, patch faster &#171; dr0ppedpackets</dc:creator> <pubDate>Sat, 13 Mar 2010 00:00:08 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-3767</guid> <description>[...] They don&#8217;t mention Java in the SANS article but it should be on your list as well.  This post shows how exploits are used in the real world to infect clients.  Java is near the top of the [...]</description> <content:encoded><![CDATA[<p>[...] They don&#8217;t mention Java in the SANS article but it should be on your list as well.  This post shows how exploits are used in the real world to infect clients.  Java is near the top of the [...]</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-3767" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('3767', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-3767-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-3767" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('3767', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-3767-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: Browser exploit kit probe highlights need for patching, vigilance &#171; itsec</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-3112</link> <dc:creator>Browser exploit kit probe highlights need for patching, vigilance &#171; itsec</dc:creator> <pubDate>Wed, 03 Mar 2010 20:35:26 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-3112</guid> <description>[...] Washington Post security blogger Brian Krebs took a dive into the browser exploit kit last week to reveal the holes being targeted by the kit. In addition to Adobe Reader holes, the [...]</description> <content:encoded><![CDATA[<p>[...] Washington Post security blogger Brian Krebs took a dive into the browser exploit kit last week to reveal the holes being targeted by the kit. In addition to Adobe Reader holes, the [...]</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-3112" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('3112', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-3112-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-3112" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('3112', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-3112-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: BLADE: Deshaciéndose de las descargas silenciosas &#124; Shadow Security</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-2980</link> <dc:creator>BLADE: Deshaciéndose de las descargas silenciosas &#124; Shadow Security</dc:creator> <pubDate>Sat, 27 Feb 2010 23:19:09 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-2980</guid> <description>[...] en el navegador del visitante. El mes pasado, compartí con los lectores una mirada dentro del panel de administración web del paquete de explotación Eleonore &#8211; uno de los más populares del [...]</description> <content:encoded><![CDATA[<p>[...] en el navegador del visitante. El mes pasado, compartí con los lectores una mirada dentro del panel de administración web del paquete de explotación Eleonore &#8211; uno de los más populares del [...]</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-2980" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('2980', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-2980-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-2980" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('2980', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-2980-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: BLADE: Hacking Away at Drive-By Downloads &#8212; Krebs on Security</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-2507</link> <dc:creator>BLADE: Hacking Away at Drive-By Downloads &#8212; Krebs on Security</dc:creator> <pubDate>Mon, 22 Feb 2010 17:56:40 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-2507</guid> <description>[...] browser for known security vulnerabilities. Last month, I shared with readers a peek inside the Web administration panel for the Eleonore exploit pack &#8212; one of the most popular at the [...]</description> <content:encoded><![CDATA[<p>[...] browser for known security vulnerabilities. Last month, I shared with readers a peek inside the Web administration panel for the Eleonore exploit pack &#8212; one of the most popular at the [...]</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-2507" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('2507', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-2507-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-2507" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('2507', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-2507-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: Browser exploit kit probe highlights need for patching, vigilance at ITSecurity</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-2408</link> <dc:creator>Browser exploit kit probe highlights need for patching, vigilance at ITSecurity</dc:creator> <pubDate>Fri, 19 Feb 2010 13:28:46 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-2408</guid> <description>[...] Washington Post security blogger Brian Krebs took a dive into the browser exploit kit last week to reveal the holes being targeted by the kit. In addition to Adobe Reader holes, the [...]</description> <content:encoded><![CDATA[<p>[...] Washington Post security blogger Brian Krebs took a dive into the browser exploit kit last week to reveal the holes being targeted by the kit. In addition to Adobe Reader holes, the [...]</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-2408" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('2408', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-2408-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-2408" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('2408', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-2408-down" style="font-size:12px; color:#990033;">0</span></p>]]></content:encoded> </item> <item><title>By: Paris Hilton</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-2259</link> <dc:creator>Paris Hilton</dc:creator> <pubDate>Thu, 18 Feb 2010 03:06:02 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-2259</guid> <description>OK I&#039;ve seen dumb but then I saw this. For an exploit to work, it has to have code specific to the OS and the processor. The same malicious code that wants to put a birthday greeting in C:\Windows\System32 is not going to be able to put the same code ready to run on a different OS with a different executable architecture in /usr/bin. Take that course you&#039;ve been thinking about.</description> <content:encoded><![CDATA[<p>OK I&#8217;ve seen dumb but then I saw this. For an exploit to work, it has to have code specific to the OS and the processor. The same malicious code that wants to put a birthday greeting in C:\Windows\System32 is not going to be able to put the same code ready to run on a different OS with a different executable architecture in /usr/bin. Take that course you&#8217;ve been thinking about.</p><p>Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-2259" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('2259', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-2259-up" style="font-size:12px; color:#009933;">0</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-2259" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('2259', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-2259-down" style="font-size:12px; color:#990033;">5</span></p>]]></content:encoded> </item> <item><title>By: Paris Hilton</title><link>http://krebsonsecurity.com/2010/01/a-peek-inside-the-eleonore-browser-exploit-kit/#comment-2258</link> <dc:creator>Paris Hilton</dc:creator> <pubDate>Thu, 18 Feb 2010 03:02:40 +0000</pubDate> <guid
isPermaLink="false">http://www.krebsonsecurity.com/?p=729#comment-2258</guid> <description>No. The OS is the ultimate issue. Your examples are only the attack surface. That&#039;s where the malicious code breaks through. But once the code has broken through, it has to be able to do something. On secure systems there is not much to do except twiddle your thumbs. On Windows it&#039;s the 4th of July, a veritable smorgasbord for the hackers. You&#039;d better take that course in security your boss offered you. And try out some other OS just for the weekend, just for the fun of it. You might learn something.</description> <content:encoded><![CDATA[<p>Hidden due to low <a
href="http://wealthynetizen.com/wordpress-plugin-comment-rating/" title="Rated by other readers">comment rating</a>. <a
href="javascript:crSwitchDisplay('ckhide-2258');" title="Click to see comment">Click here to see</a>.</p><div
id='ckhide-2258' style="display:none; opacity:0.6;filter:alpha(opacity=60) !important;"><p>No. The OS is the ultimate issue. Your examples are only the attack surface. That&#8217;s where the malicious code breaks through. But once the code has broken through, it has to be able to do something. On secure systems there is not much to do except twiddle your thumbs. On Windows it&#8217;s the 4th of July, a veritable smorgasbord for the hackers. You&#8217;d better take that course in security your boss offered you. And try out some other OS just for the weekend, just for the fun of it. You might learn something.</p></div><p>Poorly-rated. Like or Dislike: <img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="up-2258" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_up.png" alt="Thumb up" onclick="javascript:ckratingKarma('2258', 'add', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_');" title="Thumb up" /> <span
id="karma-2258-up" style="font-size:12px; color:#009933;">2</span>&nbsp;<img
style="padding: 0px; border: none; cursor: pointer;" onmouseover="this.width=this.width*1.3" onmouseout="this.width=this.width/1.2" id="down-2258" src="http://krebsonsecurity.com/wp-content/plugins/comment-rating/images/1_16_down.png" alt="Thumb down" onclick="javascript:ckratingKarma('2258', 'subtract', 'krebsonsecurity.com/wp-content/plugins/comment-rating/', '1_16_')" title="Thumb down" /> <span
id="karma-2258-down" style="font-size:12px; color:#990033;">8</span></p>]]></content:encoded> </item> </channel> </rss>
<!-- Performance optimized by W3 Total Cache. Learn more: http://www.w3-edge.com/wordpress-plugins/

Minified using memcached
Page Caching using memcached (user agent is rejected)
Database Caching 2/9 queries in 0.002 seconds using memcached

Served from: krebsonsecurity.com @ 2010-07-30 05:34:08 -->