07 Feb 1997
A German hacker organisation hit the headlines last week, when it demonstrated an online theft on German TV, using a Microsoft Active X control.
The Chaos Computer Club configured an Active X control to execute a bogus money transfer order on a PC running a personal finance application, thereby stealing money from the PC owner?s account.
Further reading
Microsoft subsequently contacted the hackers and asked them to hand over the offending code, but they refused and said it would be published in the 20 February issue of their publication, IX Multiuser Magazine.
Mike Pryke-Smith, Microsoft?s Internet tools manager, said the Chaos Computer Club had not actually undertaken a real theft, but had simply set up the situation as a publicity stunt to promote itself.
He added: ?This type of thing has come up before with the Exploder control. But, any executable can cause this type of mischief, not just Active X. It highlights that users should be aware that executables can be harmful, and it?s up to them to decide whether they want to trust them, particularly if they don?t carry a digital signature, which this didn?t.?
Latest stories from Web
Related articles
Related jobs
Poll
Are you confident that the UK's IT infrastructure is secure from attack in the wake of the Flame malware revelations?
Orange and Intel talk us through the ins and outs of their San Diego smartphone
Connect with V3.co.uk
The wrong printers, for the wrong tasks on the wrong contracts
Who leads the BI pack and who should we be watching out for?
Für einen Kunden aus dem Informations-Technologie Umfeld...
Manage advertising budget and relationship with third...
C# ASP.NET Web Software Application Developer required...
Linux/Unix Systems Administrator - Brighton - Up to £45...
Keep up to date with the latest products, services and technologies from the world's leading IT companies. IThound.com brings you over 2,000 white papers, case studies and analyst reports.
Do you agree?