Archive Pages Design$type=blogging

Danger : WinRAR File Spoofing Vulnerability

A big vulnerability has been found in the most known archive program "Winrar", this vulnerability allows an attacker to spoof the ...

A big vulnerability has been found in the most known archive program "Winrar", this vulnerability allows an attacker to spoof the file name of a malicious executable to any other file formats and opening it will results in the execution of the original executable.



This vulnerability can be used by changing file extension in two levels, the first level, the extension of the archived file will be changed by changing the archive hex, so now at this level, "Winrar" will display the file as your desired extension (.jpg, .jpeg, .png, .mp3, ....), the second level will be left as it is.

So by doing this, the "Winrar" will show the file by your desired extension, but the core of the file is a virus (or a server).

And you can watch this video which is explaining the vulnerability, and showing how to use it:


Just to keep in mind that this vulnerability has been tested the version 4.02 and the only patch of it is to use the latest version on the program (Winrar)

COMMENTS

Name

ALL android Apple articles Build free website CSS Downloads DVD exclusive facebook freebies fun games giveaways google HTML internet iPhone iPhone 6 iPhone 6 Plus iPhone 6s kali linux leaks linux Microsoft News Offers opensource php psd Quick Tips Samsung Series Skype Templates Tips tools Tooltips tricks Tutorials Videos VPN windows Youtube
false
ltr
item
Sticky TUTS | When Technology meets pleasure: Danger : WinRAR File Spoofing Vulnerability
Danger : WinRAR File Spoofing Vulnerability
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjkkCoOwTlWLbk81i0jKCWPQZhCuTO_cMRyJbvEsOJSW1Xt8rGI2yeMWcql4Aca5q-uZHD06hCzQSKM03sinmoT4hp0rjYGkwMCvUHjG3OWw-7A8f-rfp-UAonaHQLxeCKHOObE35Ipm1wP/s1600/Gaussian-Blur-l.png
https://blogger.googleusercontent.com/img/b/R29vZ2xl/AVvXsEjkkCoOwTlWLbk81i0jKCWPQZhCuTO_cMRyJbvEsOJSW1Xt8rGI2yeMWcql4Aca5q-uZHD06hCzQSKM03sinmoT4hp0rjYGkwMCvUHjG3OWw-7A8f-rfp-UAonaHQLxeCKHOObE35Ipm1wP/s72-c/Gaussian-Blur-l.png
Sticky TUTS | When Technology meets pleasure
https://stickytuts.blogspot.com/2014/04/danger-winrar-file-spoofing.html
https://stickytuts.blogspot.com/
http://stickytuts.blogspot.com/
http://stickytuts.blogspot.com/2014/04/danger-winrar-file-spoofing.html
true
1514106023108819307
UTF-8
Not found any posts VIEW ALL Readmore Reply Cancel reply Delete By Home PAGES POSTS View All RECOMMENDED FOR YOU LABEL ARCHIVE SEARCH Not found any post match with your request Back Home Sunday Monday Tuesday Wednesday Thursday Friday Saturday Sun Mon Tue Wed Thu Fri Sat January February March April May June July August September October November December Jan Feb Mar Apr May Jun Jul Aug Sep Oct Nov Dec just now 1 minute ago $$1$$ minutes ago 1 hour ago $$1$$ hours ago Yesterday $$1$$ days ago $$1$$ weeks ago more than 5 weeks ago