TIP: Click on subject to list as thread! ANSI
echo: nthelp
to: Geo
from: John Beckett
date: 2006-01-13 14:00:54
subject: Re: new patches today

From: John Beckett 

"Geo"  wrote in message
news::
> Ok, I can see you are missing the point. Of the malware that installs when
> you visit a website, have you ever heard of someone not getting hit because
> they weren't running as admin?

I have not analysed malware and can't comment on your suggestion that all
malware has equally malicious effects on admins and users. This suggestion
sounds unlikely, but I don't know.

In the story you quoted that started this thread, eEye are saying that: 1. 
They could make a website.
2.  If a user visited the website, eEye could run a program as that user.
3.  If an admin visited the website, eEye could own the computer.

Note that (2) does NOT mean owning the computer because there are no known
privilege escalation techniques on a patched and recent Windows system.

John

--- BBBS/NT v4.01 Flag-5
* Origin: Barktopia BBS Site http://HarborWebs.com:8081 (1:379/45)
SEEN-BY: 633/267 270 5030/786
@PATH: 379/45 1 106/2000 633/267

SOURCE: echomail via fidonet.ozzmosis.com

Email questions or comments to sysop@ipingthereforeiam.com
All parts of this website painstakingly hand-crafted in the U.S.A.!
IPTIA BBS/MUD/Terminal/Game Server List, © 2025 IPTIA Consulting™.