Bofra Exploit Ticks Away At Microsoft
News After more than two weeks of investigating the IFRAME Bofra exploit, Microsoft has yet to announce when it will be able to fix the problem. In a prepared email statement from the company, a spokesperson said: "Microsoft is actively investigating...
[November 26, 2004, 11:30]
Malware Authors Exploit Microsoft's Monthly Cycles
News The creators of the Bofra worm, which exploits the recently discovered IFRAME vulnerability in Internet Explorer, may have timed the release of their worm to throw Microsoft's monthly patch cycle into disarray, say security experts.
[November 10, 2004, 10:18]
ASP.NET Blob & File Control
Downloads A single DLL ASP.NET server control solution for rendering 2 way data bindable images or other files on the fly from SQL BLOB or URL with Thumbnail generation, Rollover image effect, IFrame, File Upload to BLOB or URL, 'Force Download' and...
[July 10, 2007, 9:01]
IESpy
Downloads For example: You can spy on the browser cookies that are currently set within the browser or any iframe. You can peek at the source of the main document and any iframe, even if the right-click menu has been disabled.
[January 26, 2007, 14:31]
Trend Micro Sites Hacked In Global Web Attack
News It was an iFrame-injection attack, which redirected users to a malicious site," said Rand. Rand added that none of Trend Micro's customers would have been affected by visiting the company's sites, as the vendor detects iFrame attacks.
[March 14, 2008, 14:29]
Hackers Launch Bofra Banner Ad Attacks
News Hackers have already attacked several European Web sites using the as yet un-patched IFRAME exploit, otherwise known as Bofra, in Internet Explorer 6.0. The Storm Center received a report of a high profile UK Web site that contains a pointer on...
[November 22, 2004, 14:05]
IE Flaw Danger Increases As Exploit Code Released
News The Iframe flaw is the latest in a series of security issues related to Internet Explorer. Microsoft has begun to investigate the Iframe vulnerability and has not been made aware of any program designed to exploit the flaw, the company said in an...
[November 5, 2004, 7:23]
MSN Korea Hacked
News Early investigation has shown that the attackers placed an additional frame on the Web site, a so-called IFRAME, Sohn said. The IE Elements flaw, also known as the IFRAME vulnerability, could allow an attacker to take control of a victim's PC.
[June 3, 2005, 9:25]
Web-borne Security Threats Soar
News Approximately half of the infected websites contained code that the security company calls "Mal/Iframe". Mal/Iframe opens a tiny window, often measuring one pixel by one pixel, through which other malicious content which seeks to exploit web...
[July 25, 2007, 13:33]
Vendor Warns Of 'Chinese' Website Attacks
News When a user visits a compromised page, their browser is redirected via SQL injection to another page, which in turn loads a second iframe. That iframe loads a script that assesses the victim computer for various vulnerabilities, including a memory...
[May 20, 2008, 16:54]
Infamous Russian Malware Gang Vanishes
News MPack [packer kit] and its IcePack add-on are being offered, as well as Iframe exploits. MPack is a PHP-based malware kit that allows its developers to sell modules of malicious code, while Iframe malware targets browsers by attacking...
[November 9, 2007, 17:08]
Sophos Spots Return Of 'old-timer' Email Worm
News Mal/Iframe once again topped the chart this month, accounting for more than two-thirds of all infected web pages found in November, at 69.6 percent. Web pages hosted in China continue to be plagued by Mal/Iframe, and overall the country hosted more...
[December 5, 2007, 15:17]
Trend Micro: Antivirus Industry Lied For 20 Years
Articles An attacker can insert an Iframe through SQL injection. It was an Iframe-injection attack on the page we outsourced to a developer. Chen believes that no single company can offer adequate protection against the sheer volume of new viruses that are...
[June 30, 2008, 11:31]
Hundreds Of Sites Infected With Dynamic Malware
News Compromised sites in the past have predominantly had static iframe code pointing to malicious sites, served by a host. This makes it relatively easy to detect which hosts are infected, said ScanSafe, as a search on the contents of the HTML iframe...
[January 18, 2008, 15:58]
Identify/React Chart: Bofra
White Papers The Bofra worms exploit a serious IFRAME flaw in Internet Explorer 6 and pose a serious threat to unpatched systems. TechRepublic's Identify/React chart for Bofra puts critical information for identifying and eliminating the virus right at your...
[May 19, 2006, 1:00]
Government Says Finnish With IE 6
News The Bofra exploit - also known as the IFRAME exploit - was used this week to infect computers through banner ads. A government agency in Finland is urging the country's citizens to avoid use of Internet Explorer until Microsoft has patched the...
[November 26, 2004, 12:35]
Microsoft Patches Bofra
News The vulnerability, dubbed the Internet Explorer Elements flaw by Microsoft, is also known as the IFRAME vulnerability, or Bofra exploit. Microsoft published a patch for Internet Explorer on Wednesday, aiming to close a month-old hole that has been...
[December 2, 2004, 7:15]
Microsoft Complains About 'irresponsible' Security Revelation
News With some additional research from others in the community, it came to light that the IFRAME flaw was causing the crash. Microsoft has slammed the people responsible for publishing details of the vulnerability that has lead to the creation of the...
[November 10, 2004, 11:28]
Hackers Launch Bofra Banner Ad Attacks
Talkback What's worse, actually, is that users needn't even click the ad to get exploited - the IFRAME attack could hit users that just *viewed* the advertisement. Scary.
[November 28, 2004, 0:56]
Remove It Permanently
Downloads Now includes previewing of items before removal, support for IFrame as well as lots of advanced features to make it easy for anyone to remove annoying content from web pages. Permanently hide content from web pages using the Context Menu.
[October 15, 2007, 10:26]

