Instant Messaging Vulnerable To New Smiley Attacks 170
titus writes "Security researchers Yoann Guillot and Julien Tinnes have found a way to encode malicious code into smileys and provided a proof of concept encoder to automate the process. The researchers said their discovery paves the way for IM malware that would be impossible to detect since the malicious code would be 'indistinguishable from genuine chat messages.' I've tested the proof of concept code which works very well. Time to panic?"
Virus Smiles!?! (Score:4, Funny)
Take that! :-) (Score:5, Funny)
Re:Virus Smiles!?! (Score:5, Funny)
Re:Virus Smiles!?! (Score:3, Funny)
Mom was right. (Score:5, Funny)
Smiles are contagious.
Re:Very.. (Score:5, Funny)
Yeah, opening for Kathy Griffin.
April Fools Day is always a great opportunity to see that computer nerd humor is every bit as good as computer nerd social skills and personal hygiene.
Brett
Virus Variant (Score:5, Funny)
As I understand it, there is already a variant out undetectable to anti-smiley software as it embeds itself in a frowny-face.
I wonder if it's transmittable on a discussion board as well? :(
Re:Take that! :-) (Score:5, Funny)
Ack! Now I'm :-) infected. How could :-) you go posting :-) such a virulent :-) virus where :-) everyone could see i:-)t? I thin:-)k th:-)e inf:-)ect:-)ion's g:-)et:-)tin:-)g wo:-)rs:-)e n:-)o:-)w. I:-)'m of:-)f t:-)o pa:-)t:-)ch:-) m:-)y s:-)ys:-)te:-)m. :-):-):-):-):-)
More fun with smilies... (Score:5, Funny)
I've always thought that it would be far more fun to get into someone's system (actually, lots of people's systems) and replace the smiley images. You send :) and, instead of getting a smiley face, they see an image that contains a sexually explicit proposition in the default MSN font. Imagine the chaos.
Fortunately for the world, I can't write viruses. :D
This is the one to watch out for (Score:4, Funny)
It always leads to trouble.
Re::) and :-) (Score:3, Funny)
Re:Stop. Really, just stop (Score:1, Funny)
Re:Very.. (Score:3, Funny)
"computer nerd... every bit"
har har
Re::D (Score:1, Funny)
Mark my word. Next year, this day, there'll be a slashdot front page story...about security risk in using to text based emoticons.
And people will spend the year working on the exploit.
obligatory xkcd (Score:5, Funny)
http://xkcd.com/380/ [xkcd.com]
Yay! The Smiley of Death! (Score:1, Funny)
Ah, the Smiley of Death! Long time no see.
Yes, I have seen people reboot their PC because of him, tho I tend to use the less virulent :(){:|:};: on the innocent, as it gives them a sporting chance of stopping it...
But who's innocent these days? MWUAHAHA! :(){:|:&:}:&: !!!
STOP PRESS! Slashcode is also vulnerable! (Score:3, Funny)
:O
Warning! (Score:4, Funny)
Slashdot vulnerable to lame April Fools' jokes! Cease using immediately for at least 24 hours.
This message brought to you by the Association of Simpleminded Slashdot Humor Adversion Team
Re:This is the one to watch out for (Score:2, Funny)
I more concerned with this one:
8===D (!)
Stay away from my @ss!!
Or it'll end up looking like this.. =(*)=
-- Never thought I get the use the goatse emoticon in a real posting ;)
Re:Virus Smiles!?! (Score:5, Funny)
Granny: idk my bff jill?
I'll go kill myself now.
DO YOU THINK THIS IS FUNNY ? (Score:1, Funny)
ARE you STUPID or waht?
DO YOU THINK THIS IS FUNNY ?
do you even HAVS A BRAIN ?
Why don't you just stop posting here right now like forever and evr ?
You know... (Score:3, Funny)
Re:Awesome (Score:5, Funny)
^_^
Re:Stop. Really, just stop (Score:5, Funny)
Nothing wrong with my penis. What you talkin about Willis?
Bobby McFerrin says: (Score:3, Funny)
Re:You know... (Score:3, Funny)
Re:Take that! :-) (Score:3, Funny)
You can use a good programming editor when posting, something with syntax highlighting and parensbcwsmilies matching to keep your smilies properly balanced.
I guess the way the infection works is you put so many smilies to make the message look like some sort of lisp code. The IM software gets confused, starts a lisp interpreter to make some sense of it, the unbalanced parenthesis cause a buffer overflow in the parser, ...
This is real you guys (Score:2, Funny)
Re:Virus Smiles!?! (Score:1, Funny)
:(){ :|:& };:
See? It is true!!!
PS -- don't paste that into a shell terminal unless you use ulimit to limit the number of processes per user, because it will fork bomb.
Re:More fun with smilies... (Score:4, Funny)
Re:Mom was right. (Score:2, Funny)
Re:crap anyone? (Score:2, Funny)
that wasn't fun at all. I had to restart my computer. I specifically got ubuntu windows instead of microsoft because of this kind of crap!
A geek girl on LJ is getting it as a tattoo (Score:1, Funny)
:(){ :|:& };:
YAY!