[cap-talk] bundling designation and authority

Karp, Alan H alan.karp at hp.com
Thu Oct 13 20:17:09 EDT 2005


I asked a question earlier that was not answered, so I'll reword it
here.  

Say that I am at a page http://www.hp.com/a/b.  I can attempt to find
the home page by typing http://www.hp.com or by typing
http://www.hp.com/a/b/../../  An IDS will likely not report the former
as an attack even if it reports the latter.  Is the former an intrusion?
Is the latter an intrusion if there is a link to http://www.hp.com on
the page http://www.hp.com/a/b?

________________________
Alan Karp
Principal Scientist
Virus Safe Computing Initiative
Hewlett-Packard Laboratories
1501 Page Mill Road
Palo Alto, CA 94304
(650) 857-3967, fax (650) 857-7029
https://ecardfile.com/id/Alan_Karp
http://www.hpl.hp.com/personal/Alan_Karp
  
-------------- next part --------------
A non-text attachment was scrubbed...
Name: Karp, Alan H.vcf
Type: text/x-vcard
Size: 433 bytes
Desc: Karp, Alan H.vcf
Url : http://eros.cs.jhu.edu/pipermail/cap-talk/attachments/20051013/7c976577/KarpAlanH.vcf


More information about the cap-talk mailing list