June 15, 2004

Over quota

Life icon

Boy, I sure am glad Yahoo increased their free email quotas ;)

Yahoo over quota message

I don't really use the account, in part because of all the spam it receives. I didn't realize I had gone so long without checking it. It appears I last checked it in late March and in that time have received over 50,000 pieces of spam. That's not including anything their SpamGuard caught (usually 30%). Almost all of it is in a sub-folder because I have a couple of mail rules that moves the messages if, for instance, my address is not on the To: line.

My problem now is the system won't let me delete a folder with messages and I can't delete more than 200 at a time. Maybe it's time to just walk away. I've had it a long time, but the only part of "My" Yahoo that I ever use is the calendar so it'll page me. I used to use Yahoo chat a bit but now I just use AIM.

Posted to Life by extra88 at 02:35 PM | Comments (1) | TrackBack

June 04, 2004

Favicon, security hole

Comp.Security icon

I find this exploit amusing for some reason. You're probably familiar with "favicons," the images web servers can deliver to some browsers so you can have a tiny logo (or whatever) instead of a generic bookmark graphic on your address bar or in your bookmarks. Normally they're really small, like 15 pixels square. Well the folks at GreyMagic discovered that the Opera web browser could handle much wider graphics and that the graphic would cover up the URL in the address bar. This means a malicious web site could cover their hostname with a graphic displaying the URL of another site, say, "http://www.ebay.com." Here's the sample graphic from GreyMagic's site:

sample URL obscuring favicon

I wish they had a screenshot of what this looked like in Opera, the demonstration page is only a demonstration if you have the browser. Opera has already issued a patch.

Posted to Comp.Security by extra88 at 12:13 PM | Comments (1) | TrackBack