|
lol Anonymous.
It looks like it requires someone to open something in order for this to work, I wouldn't work with anyone that internets with a moderate amount of intelligence/paranoia.
On the other hand, I'm sure they have other tools that work better. This probably works much better then they let on...
loooooooooool.
|
In theory, they could exploit a buffer overflow in say, image decoding code. Or the HTML parser. Or corrupt the DOM tree and access a dangling pointer.
Then they could execute arbitrary code on your system, and you're basically hosed. This is exactly the same way people get exploited by spammers and turned into botnet zombies. It happens every day.
It's extremely unethical of the FBI to "hoard" a security vulnerability they know about, for any reason. They should disclose this sort of thing to the vendor.
Full disclosure: I work for a browser vendor.
Most amazing jew boots