> For the OpenBSD experts on this list:
> 
> Can the malware at Gookle.com described at the link crack 
> OpenBSD and/or Konqueror?
> (I am far from an expert, so I practice 'better safe than 
> sorry' when I see f-secure's explicit warnings).
> 
> http://www.f-secure.com/v-descs/googkle.shtml
> 
> Thanks,
> Dave Feustel

I may not be an OpenBSD expert, but I do tech support at an anti-virus
company and deal with viruses, disinfection and the like all day long. :)

My initial reaction is that an OpenBSD machine isn't at risk from this at
all. First reason is that the only way this will work is if you're using a
web browser that has the vulnerabilities that it uses to run the
executables. F-secure didn't give any details, but these problems are
typically IE issues. While it *could* be present in other browsers, I'd be
surprised.

So even if you were running a browser on an OpenBSD machine that somehow had
an exploit that allowed the code to run, the files that they're talking
about are all Windows executables aside from the JAR file - which is still
expecting to find a Windows environment for extraction.

I'm very prone to go and poke around there with Firefox - though I wish
F-secure was more explicit about the "exploits" that they're describing - as
most of the really dangerous ones do have patches available for
irresponsible Windows users.

Just my $.02

-M 

Reply via email to