Madrid, November 30, 2005 - SecuriTeam has reported a vulnerability in the MSN Messenger authentication system, which could allow a malicious user to carry out denial of service attacks.
This problem occurs because MSN Messenger does not validate user authentication when account logon fails, allowing attackers to temporarily suspend the victim´s account.
Any person can try to brute force a victim´s MSN Messenger password, until MSN temporarily suspends the account. While the account is temporarily suspended, not even the owner of the MSN Messenger Passport account can login, even if the correct password is used.
(*) A brute force attack involves using certain data -such as the username- and trying different passwords using different character combinations.
Oxygen3 24h-365d
by Panda Software
Member of IVSZ

Member of SZEK

Acer Affinity Gold partner

Dell Registered Partner
![]()
OKI System Shinrai Partner

XEROX Viszonteladó

APC megbízható szállító

EATON Authorized Partner

Cisco partner

Symantec Software Partner

ESET Partner
![]()
FUJITSU partner

LENOVO Premium Partner

IBM Business Partner

PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel