[Fixed] ABP $rewrite filter can be exploited to run malicious code

Discussion of topics related to ad blocking.
Locked
User avatar
LanikSJ
Site Owner
Site Owner
Posts: 1806
Joined: Thu Feb 15, 2007 7:44 am
Location: /dev/null

[Fixed] ABP $rewrite filter can be exploited to run malicious code

Post by LanikSJ »

https://www.bleepingcomputer.com/news/s ... ious-code/

I'll file this under sensationalism for the sake of page views. Let's hope I'm not wrong about that. Adding filters to any list to serve malware is even worse then ads you're trying to avoid in the first place. :evil:
"If it ain't broke don't fix it."
okiehsch
uBlock Origin Author
uBlock Origin Author
Posts: 98
Joined: Wed Oct 12, 2016 9:00 pm

Post by okiehsch »

A filter list maintainer has blocked sites for political reasons in the past, so blindly trusting people you don't know is never a good idea.
https://github.com/uBlockOrigin/uBlock- ... issues/285
User avatar
smed79
Liste AR/FR Author
Liste AR/FR Author
Posts: 15839
Joined: Sun Jan 17, 2010 4:00 am
Location: EasyList Forum

Post by smed79 »

•► Read RULES / Use forum Search
••► Don't post clickable links
•••►Upload screenshots at imgbb.com
User avatar
smed79
Liste AR/FR Author
Liste AR/FR Author
Posts: 15839
Joined: Sun Jan 17, 2010 4:00 am
Location: EasyList Forum

Post by smed79 »

The $rewrite Adblock Plus filter option now works for internal redirects ONLY :

https://adblockplus.org/blog/vulnerability-fixed
https://adblockplus.org/releases/adbloc ... a-released
•► Read RULES / Use forum Search
••► Don't post clickable links
•••►Upload screenshots at imgbb.com
Locked