42 Comments
- quasipalm, on 10/12/2007, -0/+7must... resist... urge to... visit... detroithardcore.
Hah, it seems that D14BL0 told someone that it just takes common sense to avoid shock sites... and then scolded someone for fooling him into viewing one 10 seconds later. :D - wyattxp, on 10/12/2007, -0/+6no ***** - that was nasty and just wrong
- firemaker103, on 10/12/2007, -1/+7I'll wait for the firefox extension. :)
- inactive, on 10/12/2007, -2/+7It's called "The Digg Effect".
- DrGonzo1184, on 10/12/2007, -2/+7"oh yeah I heard about that. they talk about it at www.detroithardcore.com right?"
And I just had to check out thta URL... excues me while I go and find a rusty spoon in order to dig that image out of my eyeballs... - inactive, on 10/12/2007, -2/+7It's called "Common sense".
- sophiaperennis, on 10/12/2007, -3/+7I think their methodology is a better one that the one employed at SiteAdvisory, as it is instantaneous verification. SiteAdvisory can be ultimately spoofed, as it only verifies the sites periodically, and in between those times the site can still have malicious components.
- quasipalm, on 10/12/2007, -0/+4One of the best things about SiteAdvisor is their spam metric which tells you exactly how much email you'll get from a site before giving them your email. I have also found the reviews are handy on occassion, where you can warn others about a site or read other reviews.
- kristopher, on 10/12/2007, -0/+3Nothing happens on Opera.
- jer2eydevil88, on 10/12/2007, -0/+2the page of death didn't work for me on firefox 1.5.0.4 but it did kill http://www.explabs.com/linkscanner/
- ylikone, on 10/12/2007, -0/+2HA HA, the page of death does nothing to my browser... although I admit I am running a few extensions, mainly NoScript, Flashgot, and AdBlock.
- deanlowe, on 10/12/2007, -0/+1Google or Yahoo should build it into their search!
- .Steven, on 10/12/2007, -0/+1Congratulations! LinkScanner did not find any exploits at:
http://www.serials.ws
Great work... - .Steven, on 10/12/2007, -0/+1http://www.explabs.com/linkscanner/checksite.asp?CS=www.mscracks.com&NextStep=ChkOnly&SourceName=ExpLabs.com
Hm.. so it only checks against a blacklist.. lame. - blackomegax, on 10/12/2007, -0/+1Using firefox kind of defeats the purpose, doesn't it?
- rogoz, on 10/12/2007, -0/+1No, it doesn't just check against a blacklist. That would indeed be lame. What we do is check against a blacklist first, and then allow the connection. We then check the stream for exploits. If it's not on the blacklist and it's not trying to serve an exploit, we allow the content.
We constantly monitor the known bad websites for new exploits, and we constantly monitor a whole bunch of other sources for new bad websites.
What this means is that to get by us, it needs to be a new exploit, from a new server. That's perfectly possible ,but as soon as we find either one (the new spolit or the new server) we add them.
We're not saying that we're perfect, and can't be beaten. What we are saying is that it's like the 80/20 rule, except that it's more like 98/2. Most of the Real World problems can be handled with just a small effort, provided it's applied correctly.
What we are really trying to do is give people time to patch, because then the exploit issues (at least) go away.
Cheers
Roger
ExpLabs.com - fiv3isaliv3, on 10/12/2007, -2/+3I guess explabs couldn't take the traffic because the link to the site in the articles goes to a page that says, "Service Unavailable"
http://www.explabs.com/linkscanner/ - bacirriu, on 10/12/2007, -0/+1SiteAdvisor was great. Until McAfee bought them.
- hybridtheory849, on 10/12/2007, -0/+1since when does firefox use 400MB? mine only uses about 80MB and thats with 5 million pages open running alot of media
- r0b0h0b0, on 10/12/2007, -0/+1instantaneous verification? in a few sites i tried, it took 10-20 seconds. SiteAdvisor has no delay at all, because they've done the crawling before hand, and their data is very fresh. true there are certain trade-offs you have to make when protecting yourself, but I'm not going to wait 20 seconds to go to a web page.
- glafira, on 10/12/2007, -0/+1Just wait till they make a firefox rightclick extension.
- inactive, on 10/12/2007, -2/+2From what I read on the article, it looks like it may be a useful tool. However, it's rather hard to prove/disprove this, since we've already raped their servers.
- javierror, on 10/12/2007, -10/+10oh yeah I heard about that. they talk about it at www.detroithardcore.com right?
- Ausome1, on 10/12/2007, -1/+1See below about Page of Death.
- hybridtheory849, on 10/12/2007, -0/+0hmmm i will be very busy this week however
- Ausome1, on 10/12/2007, -1/+1Here's source code for it. http://www.enigmagroup.org/pod.txt
- inactive, on 10/12/2007, -1/+1Hm. I watched my Task Manager as Firefox attempted to render that page. The RAM usage only went to about 400MB. That's only a tiny bit more than Firefox usually uses, anyway. =P
- rogoz, on 10/12/2007, -0/+0Well.... what exploit do you think that serials.ws is serving? I don't think it is currently serving any, and in fact, has never served one to us, or we would have blacklisted it.
It _may_ well have served them at some point, but it might also have simply linked to an exploitive page, which is not necessarily their fault.
As nasty as the page might be, we're not doing net censorship, we're simply trying to stop the exploiters.
Roger
ExpLabs.com - ChadAllen, on 10/12/2007, -0/+0Very informative
- Ausome1, on 10/12/2007, -0/+0The first time I went to the page of death it didn't work. So I tried it again and the second time it crashed FF.
- hybridtheory849, on 10/12/2007, -0/+0it would appear that in the latest version of firefox (released 20 days before i created the pod)
version 1.5.0.4 the POD can only cause a DoS, excluding the video card crash, so likley if you are running the latest firefox it will just lag you alot, and not crash, on others maybe it will
i will have to update it - vze2wnv2, on 10/12/2007, -0/+0There is another product out there that works a different way by kind of setting up a virtual border around what you're doing with your browser and the rest of your computer. Walt Mossberg of the Journal wrote about it a couple of weeks ago: http://online.wsj.com/article/SB115214039392298879-search.html?KEYWORDS=mossberg+green&COLLECTION=wsjie/6month
However, some people wrote to him after and said they had installation problems. - hybridtheory849, on 10/12/2007, -0/+0want to challenge me to a rooting mr. roger?
- inactive, on 10/12/2007, -2/+1Heh. I'll wait till this RapidShare finishes uploading before I try this out. =P
- Ausome1, on 10/12/2007, -1/+0The page of death causes increases in ram usage exponentially to a crash. Not tested in all environments yet.
- Ausome1, on 10/12/2007, -3/+1Not Digg effect... Page of Death took the service down. http://www.aohxshop.com/syphon849/pod/index.html
Above link is safe. - inactive, on 10/12/2007, -6/+4@javierror
Totally unnecessary. - javierror, on 10/12/2007, -5/+3Now all we need is something that'll keep us from getting owned by Goatse and Tubgirl.
- nicklinus, on 10/12/2007, -3/+1yea i am useing opera and it did not crash on me. LOL opera is the best
- hybridtheory849, on 10/12/2007, -3/+0likley you didnt actually go to it and just clicked the intro
i coded the pod awhile back, maybe i should advertise, heh, - inactive, on 10/12/2007, -4/+1Nah, I just recognized that one. =P
- Ausome1, on 10/12/2007, -7/+0Looks like the service has some problems. I had it check a link with a known exploit and it crashed the server.


What is Digg?
Check out the new & improved