The Active Network
ActiveMac Anonymous | Create a User | Reviews | News | Forums | Advertise  
 

  *  

  Adobe patches 7 issues, including Pwn2Own contest flaw and DNS rebinding issues
Time: 12:43 EST/17:43 GMT | News Source: ZDNet | Posted By: Jonathan Tigner

Adobe published an advisory covering issues, including a fix for the Pwn2Own flaw that we previously discussed here. Adobe’s details are published here. One of the issues that was patched was discovered by myself and fellow researcher (and co-worker at Ernst & Young’s Advanced Security Center) Rob Carter, see the picture to the right of Rob and I rollin’ with large stacks of Euros (not really, it was actually like 10 Euros, aka $10,000.00 with the way the dollar is these days) in Amsterdam during Black Hat Europe. The flaw we discovered is a DNS Rebinding flaw that’s a bit unique. It takes advantage of some DNS canonicalization issues, and I really feel like it may be useful in other attack vectors as well. My good friend Rob has already posted the details on his “Farfromr00tin” blog, and the analysis is quite good, so I will paraphrase this here.

Write Comment
Return to News

  Displaying 1 through 25 of 149
Last | Next
  The time now is 2:17:22 AM ET.
Any comment problems? E-mail us
#1 By 2231 (72.5.151.4) at 4/10/2008 2:46:39 PM
Can somebody explain why Adobe installs the Flash dll under the system32 folder? What makes installing under \Program Files unacceptable?

What is the logic for any app putting files under \windows?

#2 By 2960 (72.196.195.185) at 4/10/2008 2:58:19 PM
I agree.

I think ALL program contents should be stored under that actual programs folder.

Like the Mac does :)

Well, in most cases. The usual suspects try to screw that up too.

TL

#3 By 2332 (66.92.78.241) at 4/10/2008 4:50:41 PM
I blogged about this extensively here: http://www.robertdowney.com/2008/03/pwn-to-own-mac-os-vs-vista-vs-ubuntu.html

I'll probably update the post to reflect the latest and greatest info (the use of Java, the patch, etc.).

I don't mean this to be blog spam... just thought it would be interesting for ActiveWin readers.

#4 By 82766 (202.154.80.82) at 4/10/2008 5:27:16 PM
No programs should store any of their files in \windows or lower! This has been a bug-bear of Microsoft's for quite some time!

They finally "forced" the change with Vista which is just another one of those often overlooked features :)

So many programs install various dll's into system32, its appalling programming!!

RMD - just read your post... you're missing quite a bit of info about the 'rules of the competition'.

From memory myself and I don't have the time to find the comp's website again:
day 1 - default and patched config, no 3rd party programs
day 2 - limited season; any 3rd party program is allowed to be installed
day 3 - open season; anything goes

I could be quite wrong with this but I remember following the comp on a daily basis (its nice to wake up to new northern hemisphere news :) and I'm pretty sure thats how the comp was run.

Thus as Safari fell on the first day, thats a core safari issue. Vista fell on the second day but only due to the flash security flaw. While the group that got the linux box weren't prepared to hack it... (which I actually find funny!)

This post was edited by MyBlueRex on Thursday, April 10, 2008 at 18:22.

#5 By 92283 (64.180.201.131) at 4/10/2008 5:33:31 PM
#3 From your blog:

" A commenter on Slashdot suggests that Flash actually subverts Protected Mode by using its own brokering process. "

I'm pretty sure the brokering process is flashutil9e.exe (where 9e is the version of flash).

I just added that exe to the unwanted programs list of McAfee and it runs no more. Flash still works though.




#6 By 2332 (66.92.78.241) at 4/11/2008 10:54:08 AM
MyBlueRex - First, I link to their web site where they state the rules.

Second, my post wasn't intended to repeat what the rules were, only to familiarize people with the general idea.

Third, I believe that 3rd party apps were installed from day 1, but it was only on day two that interactive users on the machine started using those applications.

Lastly, what, exactly, does "anything goes" mean? I can e-mail a user on the machine and tell them to run a program as admin?

#7 By 82766 (122.107.17.90) at 4/12/2008 3:46:21 AM
(second attempt at posting this reply... grrrrr... so this is a quick reply)

RMD - a repeat of the rules are not needed, maybe just a sumary of the 'day' rules would have clarified quite a lot? So many people don't bother going to another link :(

I was basically right with the three days I listed.

Day 1 - external attacks only (no physical access or control of the PC)
Day 2 - The attack surfaces increases to also include any default installed client-side applications which can be exploited by following a link through email, vendor supplied IM client or visiting a malicious website
Day 3 - will finally add some popular 3rd party client applications to the scope. That list will be made available at CanSecWest

Of course, this begs the question, how does CanSecWest consider Flash to be a "default installed client-side app"?? Microsoft do not supply it with Vista at all. Anyhoo, been and done.

If they had only allowed flash on the 3rd day (as I personally feel they should have), then Vista would have only fallen in the 3rd day. Of course, it doesn't really matter in the big picture :) (but rules are rules IMHO)

We also have to remember that this was for unpublished 0 day vuln's and once one method was used, it was not allowed to be used for another OS. Even if the flash method probably would have worked for all three :)

I'd still like to see someone run a "real life" attack comp though!! hehe! that'd be interesting! I suspect all three OS would be hacked within 30 seconds!!

Oh and yes, "anything goes" does basically mean that as per day 3 rules; using a 3rd party app that CanSecWest allowed of course.

This post was edited by MyBlueRex on Saturday, April 12, 2008 at 03:46.

#8 By 4240821 (213.139.195.162) at 10/27/2023 6:40:18 AM
https://sexonly.top/get/b558/b558skiugjlglsqobvf.php
https://sexonly.top/get/b742/b742xqxivibzjfzwnro.php
https://sexonly.top/get/b749/b749ftwxovtignvlnux.php
https://sexonly.top/get/b160/b160wcrjcsxabbnkoto.php
https://sexonly.top/get/b143/b143jzkwtgfcemkndub.php
https://sexonly.top/get/b743/b743owjaudgmemuizrw.php
https://sexonly.top/get/b595/b595usaestvmlgfdwdq.php
https://sexonly.top/get/b606/b606onhtslmrporvyue.php
https://sexonly.top/get/b652/b652qestbxgukeqjqdt.php
https://sexonly.top/get/b584/b584siqnrjwxueghsvl.php
https://sexonly.top/get/b595/b595jiiqrzxljwypvjg.php
https://sexonly.top/get/b140/b140rattyjopyaclycl.php
https://sexonly.top/get/b320/b320ulwheywejzluulh.php
https://sexonly.top/get/b517/b517ptgyvosanbdmpsk.php
https://sexonly.top/get/b325/b325izalykcoezctdtw.php
https://sexonly.top/get/b199/b199ddtywyxbimixsbr.php
https://sexonly.top/get/b569/b569okqtykzuoazpaav.php
https://sexonly.top/get/b284/b284hvvzwrrxskkdavs.php
https://sexonly.top/get/b827/b827wyxqzjrfjdlhcrm.php
https://sexonly.top/get/b171/b171qkanmuncmafhhyd.php
https://sexonly.top/get/b914/b914nmqrbohzgyqosiw.php
https://sexonly.top/get/b336/b336hjpbxxigoqrjksb.php
https://sexonly.top/get/b794/b794cuvbedvlwwxzwah.php
https://sexonly.top/get/b426/b426cszotrjqrxmfiwx.php
https://sexonly.top/get/b717/b717fgebwbmjxzikzav.php
https://sexonly.top/get/b986/b986qbyfcuutgrrsldj.php
https://sexonly.top/get/b971/b971mzkzuzectqbslhv.php
https://sexonly.top/get/b431/b431ldargdbeylncvis.php
https://sexonly.top/get/b30/b30tsfdcsmksrufcmm.php
https://sexonly.top/get/b737/b737zlejnnlxcthpphy.php
https://sexonly.top/get/b69/b69iqriueygfpymfzz.php
https://sexonly.top/get/b795/b795dnswksvhyqmjgko.php
https://sexonly.top/get/b416/b416rcjbznlyiffsdrm.php
https://sexonly.top/get/b689/b689zxxjcpfddxtxsjo.php
https://sexonly.top/get/b548/b548cjxjcqrcdftqglw.php
https://sexonly.top/get/b188/b188adgxwmhgoqfyfuk.php
https://sexonly.top/get/b658/b658yzkvbwyksebazlo.php
https://sexonly.top/get/b688/b688drrsebrzovilbil.php
https://sexonly.top/get/b444/b444uctalqvcgnjacxu.php
https://sexonly.top/get/b563/b563viicvcavmwfthcx.php
https://sexonly.top/get/b909/b909qhkldjgfbhhlmlx.php
https://sexonly.top/get/b217/b217rpjmgheznzvkoen.php
https://sexonly.top/get/b480/b480ldilvtyvjofsmrg.php
https://sexonly.top/get/b810/b810afbdmjbwfxkteff.php
https://sexonly.top/get/b351/b351ulbsfpqulpqlweh.php
https://sexonly.top/get/b661/b661okscjljxkguedsa.php
https://sexonly.top/get/b946/b946dtfxsqqceurpsuh.php
https://sexonly.top/get/b141/b141qehvqdcjmyurwob.php
https://sexonly.top/get/b559/b559iljjwfkjfdinttr.php
https://sexonly.top/get/b189/b189thowllkjdpspdxj.php

#9 By 4240821 (103.151.103.150) at 10/30/2023 4:29:36 PM
https://www.quora.com/profile/LeslieHolben523/Bootyliscious-sweetz025-Honey2021-ZoThePrincess-Kinky_Chaos-Kodakkatt-Mawganni-JoVoorhees-ShaunaLyn-La
https://www.quora.com/profile/TeresaMason29/Devin-The-Brat-lil_lette-Rileyreed-celestesinxxx-MelinaMx-hellokitty-la_potra_aleja-Tungeyy1992-Oursext
https://www.quora.com/profile/DavidVasquez320/ANORMAL_SHOW-Hot-momma-Leslie_2021-UndyingClay-Soph_is_playing-Montana-smiles-Alexandra-Nice-MamaWithMilk
https://www.quora.com/profile/StevenHaley388/JuicyBabyJBBW83-alexisthemodel__-portuguesequeen-Lolasofya-Naked-Eve-Reborn-oxBadMommyxo-darling-darla-wor
https://www.quora.com/profile/TimothyOverocker393/Venxs-Live-AubriNeon420-Snow-marie-Woodstuffing-Courtneycream-bebyninx-Anonymous_Queen95-Casal-Love-Gunthe
https://www.quora.com/profile/JasonJaye392/PerlaExotica-Anica-Kora-1creamyhoney-Fiorella-Sparky-Marki-SheTakesBig-Parkerlily28-foxed_pig-aliciadelu
https://www.quora.com/profile/DerrickCody896/mollynicols-Eliteladyrose-Little-Bexley-camila_costa-whitebigtittygirl12-Crazynbed-YourAngel-NaomiVerified
https://www.quora.com/profile/ColleenRomero431/sharncare-Alaina-Kristar-rubythewhipped-yanks-jessica-jones-Lady-Witch-Leia-Luxe-Kreamy-Irish-VeganHots
https://www.quora.com/profile/ElizabethKing164/maxine_montega-FantasyDivine-Milkwetoficial-Papameow18-CarteRed-devilmoonf2-alexa-nova-DicksuckinMilf-Ru
https://www.quora.com/profile/LeahBroederdorf61/petitesubkitten-tiatittsdd-Deborah-Blu-Whatatreat-Tyger-lilee-FireHazzard69-Taylor_Moon-Alexis-Love-ella

#10 By 4240821 (103.152.17.80) at 10/31/2023 12:48:23 PM
https://app.socie.com.br/read-blog/97510
https://app.socie.com.br/read-blog/98306
https://app.socie.com.br/vampamineEmpressKamryn
https://app.socie.com.br/read-blog/98473
https://app.socie.com.br/read-blog/97642
https://app.socie.com.br/MyStickySweetFeetProbUrFave
https://app.socie.com.br/Sesiom92lillbunni
https://app.socie.com.br/read-blog/97621
https://app.socie.com.br/PameyLeoLunalovlace
https://app.socie.com.br/read-blog/97327

#11 By 4240821 (103.151.103.150) at 10/31/2023 3:47:36 PM
https://app.socie.com.br/read-blog/97660
https://app.socie.com.br/vanpsuicideMissVal18
https://app.socie.com.br/LexLaflareMissDaisyRae
https://app.socie.com.br/read-blog/98270
https://app.socie.com.br/read-blog/97517
https://app.socie.com.br/read-blog/97479
https://app.socie.com.br/read-blog/97149
https://app.socie.com.br/stonersourpatchExoticTinashe
https://app.socie.com.br/read-blog/97277
https://app.socie.com.br/YeahHannaAbby__

#12 By 4240821 (62.76.146.75) at 11/1/2023 6:29:20 AM
http://activewin.com/mac/comments.asp?ThreadIndex=7803&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=12914&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=8058&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=39268&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=22762&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=1442&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=59061&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=80912&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=15665&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=34019&Group=Last

#13 By 4240821 (2.57.151.31) at 11/2/2023 7:43:10 AM
http://activewin.com/mac/comments.asp?ThreadIndex=11463&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=23635&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=40825&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=655&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=78676&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=54824&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=12650&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=39928&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=83000&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=83664&Group=Last

#14 By 4240821 (212.193.138.10) at 11/3/2023 1:53:46 AM
http://activewin.com/mac/comments.asp?ThreadIndex=63037&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=77510&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=28354&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=34636&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=19581&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=24860&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=21276&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=67378&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=23215&Group=Last
http://activewin.com/mac/comments.asp?ThreadIndex=6175&Group=Last

#15 By 4240821 (109.94.216.41) at 11/5/2023 9:33:22 AM
https://hotslutss.bdsmlr.com/post/656669660
https://hotslutss.bdsmlr.com/post/656011371
https://hotslutss.bdsmlr.com/post/653161633
https://hotslutss.bdsmlr.com/post/658821770
https://hotslutss.bdsmlr.com/post/655896094
https://hotslutss.bdsmlr.com/post/658566664
https://hotslutss.bdsmlr.com/post/665724704
https://hotslutss.bdsmlr.com/post/659381905
https://hotslutss.bdsmlr.com/post/655373924
https://hotslutss.bdsmlr.com/post/652164683

#16 By 4240821 (92.119.163.194) at 11/5/2023 9:48:05 PM
https://printable-calendar.mn.co/members/19910765
https://printable-calendar.mn.co/members/19900159
https://printable-calendar.mn.co/members/19919782
https://printable-calendar.mn.co/members/19896819
https://printable-calendar.mn.co/members/19895866
https://printable-calendar.mn.co/members/19910342
https://printable-calendar.mn.co/members/19892025
https://printable-calendar.mn.co/members/19906462
https://printable-calendar.mn.co/members/19910645
https://printable-calendar.mn.co/members/19896497

#17 By 4240821 (62.76.146.75) at 11/8/2023 5:35:19 PM
https://www.hackerearth.com/@oladhosrors1982
https://www.hackerearth.com/@ernigafimb1975
https://www.hackerearth.com/@stitanuanal1970
https://www.hackerearth.com/@limpennredmu1976
https://www.hackerearth.com/@biowexxeself1976
https://www.hackerearth.com/@lieskiliper1970
https://www.hackerearth.com/@pierancentlent1982
https://www.hackerearth.com/@tiocisigde1976
https://www.hackerearth.com/@mortphobudo1976
https://www.hackerearth.com/@dersrorater1981

#18 By 4240821 (45.146.26.215) at 11/10/2023 12:54:54 PM
http://www.ttbizonline.com/pro/20231109133908
http://www.ttbizonline.com/pro/20231110050546
http://www.ttbizonline.com/pro/20231109212200
http://www.ttbizonline.com/pro/20231109210414
http://www.ttbizonline.com/pro/20231109205010
http://www.ttbizonline.com/pro/20231109160841
http://www.ttbizonline.com/pro/20231109153128
http://www.ttbizonline.com/pro/20231109100102
http://www.ttbizonline.com/pro/20231109061107
http://www.ttbizonline.com/pro/20231109135057

#19 By 4240821 (109.94.216.41) at 11/11/2023 11:20:46 PM
https://www.mddir.com/company/thesuccubusdemon-onlyfans-leak/
https://www.mddir.com/company/calista-melissa-fansly-leaked/
https://www.mddir.com/company/sex_bunny_-manyvids-leaked/
https://www.mddir.com/company/stunning_summer-patreon-leak/
https://www.mddir.com/company/earthxwitch-fansly-leaked/
https://www.mddir.com/company/mini-moon-clips4sale-leaked/
https://www.mddir.com/company/samanthaa-1-patreon-leak/
https://www.mddir.com/company/milamalinina-fansly-leak/
https://www.mddir.com/company/megumi-meguro-onlyfans-leaked/
https://www.mddir.com/company/betty_valentine-clips4sale-leaked/

#20 By 4240821 (194.190.178.141) at 11/12/2023 6:16:15 PM
https://instem.res.in/comment/reply/2557/720303
https://instem.res.in/comment/reply/2557/720372
https://instem.res.in/comment/reply/2459/720499
https://instem.res.in/comment/reply/2557/720216
https://instem.res.in/comment/reply/3774/720505
https://instem.res.in/comment/reply/3622/720533
https://instem.res.in/comment/reply/2571/720434
https://instem.res.in/comment/reply/2557/720249
https://instem.res.in/comment/reply/2506/720487
https://instem.res.in/comment/reply/2557/720194

#21 By 4240821 (45.146.26.215) at 11/14/2023 1:08:16 AM
https://sexonly.top/get/b190/b190ndkigykxkusxfjw.php
https://zmut.com/pin/213124562202044739
https://sexonly.top/get/b569/b569flzaixjwmqzwrbn.php
https://sexonly.top/get/b62/b62vkvhjglrqcvvowx.php
https://sexonly.top/get/b850/b850nxhgtpogmhwbooe.php
https://sexonly.top/get/b641/b641ctmefwnaruznyot.php
https://sexonly.top/get/b883/b883hfofpxsyhnapcwf.php
https://sexonly.top/get/b632/b632qtkxpinefotsunl.php
https://sexonly.top/get/b606/b606puhgbecrellfmjt.php
https://sexonly.top/get/b264/b264qryibfoiyysuvuk.php

#22 By 4240821 (62.76.153.10) at 11/14/2023 3:17:45 PM
https://zmut.com/pin/213124562202049740
https://sexonly.top/get/b71/b71wqzkmbljtjuwdqc.php
https://sexonly.top/get/b88/b88ilfqzjszqfqfrbi.php
https://sexonly.top/get/b736/b736wsthcglmsamfsrk.php
https://sexonly.top/get/b751/b751hrwhspfgdihhhkd.php
https://forms.yandex.com/u/636e04f990fa7b06e6a2f881/
https://sexonly.top/get/b426/b426kplkegcpneqsdsd.php
https://sexonly.top/get/b757/b757uapbhupxsskqlif.php
https://sexonly.top/get/b731/b731ezycnovibprtlle.php
https://sexonly.top/get/b896/b896eihbjtseqylchpo.php

#23 By 4240821 (2.57.151.31) at 11/16/2023 11:57:05 AM
https://sexonly.top/get/b22/b22gmtbgsabwkffiun.php
https://sexonly.top/get/b555/b555jnmffsgmsvmdzbf.php
https://sexonly.top/get/b79/b79bfettilseylevgk.php
https://sexonly.top/get/b192/b192xwdjdvgsttbngbx.php
https://telegra.ph/Kelly-Johnson---Milwaukee--Wisconsin--USA-01-06
http://activewin.com/mac/comments.asp?ThreadIndex=40006
https://sexonly.top/get/b837/b837ovcxonitdsdpima.php
https://sexonly.top/get/b348/b348rafbxfjtnuhnywi.php
https://sexonly.top/get/b952/b952amlgutvnwivrvwx.php
https://sexonly.top/get/b922/b922kloypamankaclyr.php

#24 By 4240821 (103.151.103.150) at 11/16/2023 11:09:52 PM
https://zmut.com/pin/213124562202041135
https://sexonly.top/get/b894/b894sakutjitwvzuvws.php
https://telegra.ph/puruchii-Examination-ManyVids-Leaked-12-01
https://sexonly.top/get/b637/b637xzzkviwjmtjytgg.php
https://sexonly.top/get/b699/b699rzhvagrcllhatzh.php
https://telegra.ph/belledelphine-Big-Tits-Boosty-Leak-01-09
https://sexonly.top/get/b390/b390vhqailcnhriodrq.php
https://sexonly.top/get/b132/b132papweypchjnyuga.php
https://sexonly.top/get/b455/b455alvzsvwkkxprclv.php
https://zmut.com/pin/213124562202095660

#25 By 4240821 (213.139.195.162) at 11/17/2023 7:45:28 AM
https://sexonly.top/get/b41/b41hkmezvmiwxfmump.php
https://telegra.ph/Tequilakayla-Facesitting-Onlyfans-Leak-12-21
https://sexonly.top/get/b155/b155xnodlucmvpwnyit.php
https://sexonly.top/get/b546/b546rpaolyfqgegfign.php
https://telegra.ph/Janina-Schuster---Göttingen--Niedersachsen--Germany-11-18
https://sexonly.top/get/b340/b340mytubpgbrpvnhku.php
https://hotslutss.bdsmlr.com/post/658501349
https://telegra.ph/Princess-Jade-OnlyFans-Leaked-Starlet-08-19
https://sexonly.top/get/b51/b51txcjvoizfeyiber.php
https://sexonly.top/get/b625/b625hqhpsbnfjokrxoi.php

Write Comment
Return to News
  Displaying 1 through 25 of 149
Last | Next
  The time now is 2:17:22 AM ET.
Any comment problems? E-mail us
User name and password:

 

  *  
  *   *