You are using an out of date browser. It may not display this or other websites correctly. You should upgrade or use an alternative browser.
extended-path
About this tag
The extended-path tag on WindowsForum.com covers discussions about Windows path handling, particularly the MapUrlToZone API and its improper resolution of path equivalence. This security weakness can allow attackers to bypass security zoning, making remote or network resources appear more trusted. Topics include legacy Windows components, URL zoning classification, and related security bypasses. The tag is relevant for IT professionals and security researchers interested in Windows internals, path equivalence vulnerabilities, and system security.
Windows’ long-standing URL zoning system has been shown to contain a dangerous weakness: an improper resolution of path equivalence in the MapUrlToZone API that can allow an attacker to bypass security zoning and make remote or network resources appear more trusted than they are.
Overview...