The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  More details on the Pwn2Own Flash flaw that won the Vista machine
Time: 16:09 EST/21:09 GMT | News Source: ZDNet | Posted By: Jonathan Tigner

So, I’ve been pretty surprised by the response to the discussion of the Flash flaw that allowed the Vista machine to be compromised in the Pwn2Own contest. I’m working on getting an interview with Alexander Sotirov and Shane Macaulay (see image, courtesy of ZDI’s official site) to discuss the issue, but in the meantime, I think we can make some reasonable assumptions from the details that have been released in an InfoWorld article:

Macaulay, who was a co-winner of last year’s hacking contest, needed a few hacking tricks courtesy of VMware researcher Alexander Sotirov to make his bug work. That’s because Macaulay hadn’t been expecting to attack the Service Pack 1 version of Vista, which comes with additional security measures… For those who aren’t familiar with Sotirov, he’s of the Javascript Fung Shui fame, which is basically a new method of heap spraying that allows the exploit code to have a predictable target address where it will be located in the heap.

So they team up and get to work:

Under contest rules, Macaulay and Miller aren’t allowed to divulge specific details about their bugs until they are patched, but Macaulay said the flaw that he exploited was a cross-platform bug that took advantage of Java to circumvent Vista’s security.
Hmmm… does this sound familiar to anyone? See my posts (part 1 here and part 2 here) on the flaws that John Heasman spoke of in Java which require it to turn off features like DEP in operating systems that provide these protections.

Write Comment
Return to News

  Displaying 301 through 310 of 310
Prev | First
  The time now is 4:31:51 AM ET.
Any comment problems? E-mail us
#301 By 4240821 (62.76.153.72) at 11/23/2024 7:36:35 PM
https://justpaste.me/BpmD3
https://justpaste.me/C9pH
https://justpaste.me/CcCx4
https://justpaste.me/Bvcm4
https://justpaste.me/BxDC8
https://justpaste.me/CKGJ2
https://justpaste.me/ByYR3
https://justpaste.me/Bwcj2
https://justpaste.me/CLhd3
https://justpaste.me/BnV11

#302 By 4240821 (212.193.138.162) at 11/24/2024 1:20:21 PM
https://www.google.mw/amp/s/nsfw.su/get/a179/a179dnreboahultxnfm.php
https://www.google.ne/amp/s/sexonly.top/get/a243/a243fpiwmjjxlcwknai.php
https://www.google.nu/amp/s/sexonly.su/get/a223/a223uurlgsfnnbjpbfu.php
https://www.google.no/amp/s/sexonly.su/get/a191/a191kxajdghcdevzquh.php
https://www.google.mx/amp/s/sexonly.top/get/a116/a116pknzsgylwydbykz.php
https://www.google.ne/amp/s/nsfw.su/get/a262/a262xrcdyadgxayurux.php
https://www.google.nr/amp/s/sluts.su/get/a67/a67yvufwycwtvevzcy.php
https://www.google.nr/amp/s/sexonly.top/get/a165/a165nghumcuprahkifm.php
https://www.google.ng/amp/s/sluts.su/get/a231/a231yjjbcoajwdsqrwf.php
https://www.google.ne/amp/s/sexonly.su/get/a97/a97afdkwmhxtwbyktp.php

#303 By 4240821 (62.76.153.72) at 11/24/2024 2:23:49 PM
https://justpaste.me/CUOs4
https://justpaste.me/CUtp
https://justpaste.me/CbXV
https://justpaste.me/BcHY4
https://justpaste.me/Be1j1
https://justpaste.me/Be1j1
https://justpaste.me/CZC31
https://justpaste.me/Bmzw3
https://justpaste.me/BdV21
https://justpaste.me/CQ1K1

#304 By 4240821 (77.83.4.69) at 11/24/2024 10:59:11 PM
https://justpaste.me/Botf1
https://justpaste.me/CUOs4
https://justpaste.me/C9Tk2
https://justpaste.me/CVDe2
https://justpaste.me/CP80
https://justpaste.me/CR541
https://justpaste.me/Bf4s
https://justpaste.me/BlGm1
https://justpaste.me/BswE2
https://justpaste.me/CCmG2

#305 By 4240821 (212.193.138.162) at 11/25/2024 1:43:20 AM
https://www.google.ac/amp/s/nsfw.su/get/a166/a166cxannuwalsaeitk.php
https://www.google.al/amp/s/nsfw.su/get/a280/a280sidljnsfktdixln.php
https://www.google.al/amp/s/sluts.su/get/a133/a133mvgvwsznmzyjhqs.php
https://www.google.al/amp/s/sexonly.su/get/a268/a268lkvdhxcaebijmvm.php
https://www.google.af/amp/s/sexonly.su/get/a125/a125vhiqwkanzugymvw.php
https://www.google.al/amp/s/nsfw.su/get/a270/a270dchwypnyebdcwrg.php
https://www.google.as/amp/s/nsfw.su/get/a181/a181bvhzrgeieexprnj.php
https://www.google.com/amp/s/nsfw.su/get/a222/a222casgtiwdukzarhe.php
https://www.google.ag/amp/s/lustful.su/get/a180/a180eotalmnzczxnsuo.php
https://www.google.ac/amp/s/sexonly.su/get/a247/a247hywoqzozoiitayx.php

#306 By 4240821 (212.193.138.162) at 11/26/2024 12:55:42 AM
https://justpaste.me/CMOK1
https://justpaste.me/C9Tk2
https://justpaste.me/Cflm6
https://justpaste.me/Botf1
https://justpaste.me/CFc61
https://justpaste.me/BqHo1
https://justpaste.me/CaPQ4
https://justpaste.me/BoCH1
https://justpaste.me/Cdf52
https://justpaste.me/CeLo4

#307 By 4240821 (77.83.4.69) at 11/26/2024 6:34:57 AM
https://www.google.ps/amp/s/sluts.su/get/a202/a202plqbjgfwcdcczjf.php
https://www.google.pt/amp/s/nsfw.su/get/a171/a171gelxobseqwbmysl.php
https://www.google.rw/amp/s/lustful.su/get/a6/a6przleebfocnzikm.php
https://www.google.ro/amp/s/sexonly.su/get/a89/a89gfykoktmxtntuvz.php
https://www.google.sc/amp/s/lustful.su/get/a259/a259uyevhvbbgaxregw.php
https://www.google.ru/amp/s/sluts.su/get/a130/a130rzpfrpgzqrwymfj.php
https://www.google.ro/amp/s/nsfw.su/get/a20/a20gyncaunbfeliayl.php
https://www.google.ps/amp/s/lustful.su/get/a8/a8qpfjxuhlwhbzxnu.php
https://www.google.se/amp/s/sexonly.top/get/a96/a96qtejlshrfyukekz.php
https://www.google.ru/amp/s/sexonly.top/get/a6/a6mlvlawvmtaphdnu.php

#308 By 4240821 (82.117.86.164) at 11/26/2024 8:14:55 PM
https://justpaste.me/CQul
https://justpaste.me/BbwX1
https://justpaste.me/BjtN3
https://justpaste.me/CRw5
https://justpaste.me/BwEU3
https://justpaste.me/COna
https://justpaste.me/CBNy1
https://justpaste.me/CENs3
https://justpaste.me/CN72
https://justpaste.me/CN72

#309 By 4240821 (77.246.244.253) at 11/27/2024 12:18:26 PM
https://justpaste.me/C7G9
https://justpaste.me/BbRU4
https://justpaste.me/BejG
https://justpaste.me/C4FG
https://justpaste.me/Bwov6
https://justpaste.me/C9Iq
https://justpaste.me/CSI0
https://justpaste.me/CA04
https://justpaste.me/CIQT2
https://justpaste.me/CC4w

#310 By 4240821 (77.83.4.69) at 11/27/2024 10:53:48 PM
https://telegra.ph/Lola-rose-OnlyFans-Leaked-08-06
https://telegra.ph/DaintyWilder-Pawg-Onlyfans-Leaked-12-31
https://168.exodirectory.com/index.php?topic=85384.new
https://168.exodirectory.com/index.php?topic=148548.new
https://telegra.ph/Leak-Helly-Von-Valentine-Geek-Patreon-Girlfriends-02-01
https://telegra.ph/oliviacasta-Naked-Fansly-Leaked-01-10
https://telegra.ph/HerzAndHiz-Candy-Patreon-Leaked-01-12
http://activewin.com/mac/comments.asp?ThreadIndex=17018
https://telegra.ph/Onlyfans-Quickie-Female-POV-Leaked-HellyValentine-01-30
https://168.exodirectory.com/index.php?topic=85441.new

Write Comment
Return to News
  Displaying 301 through 310 of 310
Prev | First
  The time now is 4:31:51 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *