Posts Tagged ‘ black hat

Vista’s security rendered completely useless… 07 August 2008 at 9:47 pm by Jason 266 views

This week at the Black Hat Security Conference two security researchers will discuss their findings which could completely bring Windows Vista to its knees.

Mark Dowd of IBM Internet Security Systems (ISS) and Alexander Sotirov, of VMware Inc. have discovered a technique that can be used to bypass all memory protection safeguards that Microsoft built into Windows Vista. These new methods have been used to get around Vista’s Address Space Layout Randomization (ASLR), Data Execution Prevention (DEP) and other protections by loading malicious content through an active web browser. The researchers were able to load whatever content they wanted into any location they wished on a user’s machine using a variety of scripting languages, such as Java, ActiveX and even .NET objects. This feat was achieved by taking advantage of the way that Internet Explorer (and other browsers) handle active scripting in the Operating System.

While this may seem like any standard security hole, other researchers say that the work is a major breakthrough and there is very little that Microsoft can do to fix the problems. These attacks work differently than other security exploits, as they aren’t based on any new Windows vulnerabilities, but instead take advantage of the way Microsoft chose to guard Vista’s fundamental architecture. According to Dino Dai Zovi, a popular security researcher, “the genius of this is that it’s completely reusable. They have attacks that let them load chosen content to a chosen location with chosen permissions. That’s completely game over.”

read more | digg story



+ Microsoft’s MAPP and other tools to fight security threats By Jason 06 August 2008 at 9:05 am 224 views No Comments

Speaking yesterday at the Black Hat Security Conference in Las Vegas, Microsoft has now introduced a new group of security related programs that share advanced information with partners about upcoming security threats.

As many in the tech industry know, within hours, and sometimes minutes of monthly security patches being released, exploits are already booming for the security holes fixed by these updates. The Microsoft Active Protections Program (MAPP) will allow security software providers to provide protection to their customers quickly and effectively.

“The introduction of these new programs helps address evolving online threats and provides more practical guidance to assess and manage risk,” said Andrew Cushman, director of security response and outreach at Microsoft. “In the race between exploit and protection, Microsoft is committed to shifting the advantage to the security industry. The Microsoft Active Protections Program gives security software providers the information and resources they need to help better protect customers.”

read more | digg story