CENTER.HU groups
CENTER.HU address

User:

Guest

www.center.hu / Archive / Security news / december, 2005 / Denial of service in MSN Messenger authentication 

Denial of service in MSN Messenger authentication

Denial of service in MSN Messenger authentication

Madrid, November 30, 2005 - SecuriTeam has reported a vulnerability in the MSN Messenger authentication system, which could allow a malicious user to carry out denial of service attacks.

This problem occurs because MSN Messenger does not validate user authentication when account logon fails, allowing attackers to temporarily suspend the victim´s account.

Any person can try to brute force a victim´s MSN Messenger password, until MSN temporarily suspends the account. While the account is temporarily suspended, not even the owner of the MSN Messenger Passport account can login, even if the correct password is used.

(*) A brute force attack involves using certain data -such as the username- and trying different passwords using different character combinations.

Oxygen3 24h-365d
by Panda Software

Back




Copyright © CENTER.HU Ltd, 2000-2010. All rights reserved

sitemap | privacy policy |

copyrights | new pages |

terms of purchase | contact us


PARTNERS: Computerworld.hu | GameStar.hu | PCWorld.hu | SG.hu | PC Guru | Hitel