URL, URL, Little Do We Know Thee

URLs have associated security implications. "Interesting" ways of using them have been known by spammers for a while, but now the Microsoft Knowledge Base spoof and the February of Crypto-Gram have made the Internet community more aware of what URLs can do.

provided by: 
Originally published at Internet.com


By Razvan Peteanu for SecurityPortal -----------------------------------

About Schemes and Men



Recently, many smiled and Microsoft got angry at a spoof of its Knowledge Base articles posted on a URL starting with "http://www.microsoft.com." Emails went around and people clicked on the link, possibly before looking closer at it. Surprised by the content, they may have checked the URL again, noticing the other "www"-like string in it and figured out it must have something to do with the real host; forwarded the email to friends and then returned to their work.

Today we will look closer at URLs and the associated security implications. "Interesting" ways of using them have been known by spammers for a while, but now the KB spoof and the February issue of Crypto-Gram have made the Internet community more aware of what URLs can do.

Although most Internet users will associate URLs with WWW addresses, or perhaps FTP, Uniform Resource Locators are more general in scope. URLs are standardized in RFC1738, and in their most generic form, they are defined as :

The best-known scheme is the Common Internet, in which the is the name of a protocol and the is defined as: //:...

Read article at Internet.com site
Regional Articles
- URL, URL, Little Do We Know Thee Alabama
- URL, URL, Little Do We Know Thee Alaska
- URL, URL, Little Do We Know Thee Arizona
- URL, URL, Little Do We Know Thee Arkansas
- URL, URL, Little Do We Know Thee California
- URL, URL, Little Do We Know Thee Colorado
- URL, URL, Little Do We Know Thee Connecticut
- URL, URL, Little Do We Know Thee DC
- URL, URL, Little Do We Know Thee Delaware
- URL, URL, Little Do We Know Thee Florida
- URL, URL, Little Do We Know Thee Georgia
- URL, URL, Little Do We Know Thee Hawaii
- URL, URL, Little Do We Know Thee Idaho
- URL, URL, Little Do We Know Thee Illinois
- URL, URL, Little Do We Know Thee Indiana
- URL, URL, Little Do We Know Thee Iowa
- URL, URL, Little Do We Know Thee Kansas
- URL, URL, Little Do We Know Thee Kentucky
- URL, URL, Little Do We Know Thee Louisiana
- URL, URL, Little Do We Know Thee Maine
- URL, URL, Little Do We Know Thee Maryland
- URL, URL, Little Do We Know Thee Massachusetts
- URL, URL, Little Do We Know Thee Michigan
- URL, URL, Little Do We Know Thee Minnesota
- URL, URL, Little Do We Know Thee Mississippi
- URL, URL, Little Do We Know Thee Missouri
- URL, URL, Little Do We Know Thee Montana
- URL, URL, Little Do We Know Thee Nebraska
- URL, URL, Little Do We Know Thee Nevada
- URL, URL, Little Do We Know Thee New Hampshire
- URL, URL, Little Do We Know Thee New Jersey
- URL, URL, Little Do We Know Thee New Mexico
- URL, URL, Little Do We Know Thee New York
- URL, URL, Little Do We Know Thee North Carolina
- URL, URL, Little Do We Know Thee North Dakota
- URL, URL, Little Do We Know Thee Ohio
- URL, URL, Little Do We Know Thee Oklahoma
- URL, URL, Little Do We Know Thee Oregon
- URL, URL, Little Do We Know Thee Pennsylvania
- URL, URL, Little Do We Know Thee Rhode Island
- URL, URL, Little Do We Know Thee South Carolina
- URL, URL, Little Do We Know Thee South Dakota
- URL, URL, Little Do We Know Thee Tennessee
- URL, URL, Little Do We Know Thee Texas
- URL, URL, Little Do We Know Thee Utah
- URL, URL, Little Do We Know Thee Vermont
- URL, URL, Little Do We Know Thee Virginia
- URL, URL, Little Do We Know Thee Washington
- URL, URL, Little Do We Know Thee West Virginia
- URL, URL, Little Do We Know Thee Wisconsin
- URL, URL, Little Do We Know Thee Wyoming

Rss   Delicious   Digg   Add To My Yahoo   Add To My Google   Bookmark   Search Plugin

Topics:
Architecture & Design Languages & Tools Project Management Web Services
Database Microsoft & .NET Security Wireless
Java Open Source Techniques XML