Japanese Car Zone
    

Go Back   Japanese Car Zone > Website Forums > Off Topic > Computers

Computers General Questions, Hardware Reviews, Programming, etc.



Welcome to Japanese Car Zone.

You are currently viewing our boards as a guest which gives you limited access to view most discussions, articles and access our other FREE features. By joining our free community you will be able to post topics, communicate privately with other members (PM), respond to polls, upload your own pictures and access many other special features. Registration is fast, simple and absolutely free so please,
join our community today!

If you have any problems with the registration process or your account login, please contact us.
Reply
 
LinkBack Thread Tools Display Modes
Old 08-07-2006, 03:36 PM   #1
Devotee
 
bmer's Avatar
 
Join Date: Nov 2005
Posts: 2,904
Thanks: 1,547
Thanked 669 Times in 405 Posts
bmer is a name known to allbmer is a name known to allbmer is a name known to allbmer is a name known to allbmer is a name known to allbmer is a name known to allbmer is a name known to allbmer is a name known to allbmer is a name known to allbmer is a name known to allbmer is a name known to all
Vista hacked already!

Vista hacked at Black Hat


By Joris Evers, CNET News.com
Published on ZDNet News: August 4, 2006, 1:34 PM PT

LAS VEGAS--While Microsoft talked up Windows Vista security at Black Hat, a researcher in another room demonstrated how to hack the operating system.

Joanna Rutkowska, a Polish researcher at Singapore-based Coseinc, showed that it is possible to bypass security measures in Vista that should prevent unsigned code from running.

And in a second part of her talk, Rutkowska explained how it is possible to use virtualization technology to make malicious code undetectable, in the same way a rootkit does. She code-named this malicious software Blue Pill.

"Microsoft is investigating solutions for the final release of Windows Vista to help protect against the attacks demonstrated," a representative for the software maker said. "In addition, we are working with our hardware partners to investigate ways to help prevent the virtualization attack used by the Blue Pill."

At Black Hat, Microsoft gave out copies of an early Vista release for attendees to test. The software maker is still soliciting feedback on the successor to Windows XP, which is slated to be broadly available in January.

Rutkowska's presentation filled a large ballroom at Caesars Palace to capacity, even though it was during the last time slot on the final day of the annual Black Hat security confab here. She used an early test version of Vista for her research work.

As one of the security measures in Vista, Microsoft is adding a mechanism to block unsigned driver software to run on the 64-bit version of the operating system. However, Rutkowska found a way to bypass the shield and get her code to run. Malicious drivers could pose a serious threat because they run at a low level in the operating system, security experts have said.

"The fact that this mechanism was bypassed does not mean that Vista is completely insecure. It's just not as secure as advertised," Rutkowska said. "It's very difficult to implement a 100 percent-efficient kernel protection."

To stage the attack, however, Vista needs to be running in administrator mode, Rutkowska acknowledged. That means her attack would be foiled by Microsoft's User Account Control, a Vista feature that runs a PC with fewer user privileges. UAC is a key Microsoft effort to prevent malicious code from being able to do as much damage as on a PC running in administrator mode, a typical setting on Windows XP.

"I just hit accept," Rutkowska replied to a question from the audience about how she bypassed UAC. Because of the many security pop-ups in Windows, many users will do the same without realizing what they are allowing, she said.

Microsoft has touted Vista as its most secure version of Windows yet. It is the first operating system client to go through the company's Security Development Lifecycle, a process to vet code and stamp out flaws before a product ships.

"Windows Vista has many layers of defense, including the firewall, running as a standard user, Internet Explorer Protected Mode, /NX support, and ASLR, which help prevent arbitrary code from running with administrative privileges," the Microsoft representative noted.

After the presentation on bypassing the driver shield, Rutkowska presented a way to create the stealthy malicious software she code-named Blue Pill. The technique uses Pacifica, a Secure Virtual Machine, from chipmaker Advanced Micro Devices, to go undetected.

Blue Pill could serve as a backdoor for attackers, Rutkowska said. While it was developed on Vista and AMD's technology, it should also work on other operating systems and hardware platforms. "Some people suggested that my work is sponsored by Intel, as I focused on AMD virtualization technology only," she said, adding that is untrue.
bmer is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!
Reply With Quote

Reply

Bookmarks

Tags
hacked, vista
Search Cloud
"2009 porsche 911 turbo" "cars as fashion" "hannes oosthuizen" "johan wejedal" "loic kernen" 2008 honda accord 2009 audi r8 2009 wrx 3mturing 600 swb amazing car amg+w124 antivirus astra sedan audi a3 audi a4 b8 s line audi a5 audi a8 audi on gallardo wheels audi rs audi rs 8 audi rs4 b5 audi rs6 audi rs6 new audi rs8 audi s3 audi s5 benz 230e w123 bmw 3 series bmw 333is bmw 502 for sale bmw e30 333is bmw sport bugatti c class w204 umi navigation car zone car zone japan carzone carzone japan carzone tuning cl63 amg ferarri wallpaper fiat sedici flewitt coachbuilders fortuner ganizonda hamann m6 hanomag rl20 zu verkaufen honda honda accord coupe 2008 honda civic honda civic mugen rr honda fit http://www.japanesecarzone.com/q7/11986-audi-q7-got-tangled.html interior designer bmw f01/2 inurl:thread funkey itzkirbphotography.com japanese car zone japanese carzone japanesecarforum.com japanesecarzone.com koenesig koenesig ccx lambo's lamborghini alar lamborghini embolado lamborghini muira lamborghinis lexus rs400h vs mercedes ml320 cdi m6 maxima interior mazda5 mercedes 600 swb mercedes c tenorit mercedes c126 amg mercedes pre-save inactive mercedes w112 heckflosse mercedes w204 umi new audi rs6 nissan gt-r merc1 pagani zonda vin paganikon phaeton playboy mustang rav4 rs4 rs8 seat leon fr1 skyline gtr skywarim skywarim drive tiguan toyota venza volt concept vw torsional rigidity nm/degree w126 w204 interior w204 palladium silver w211 e320 faults www.japanesecarzone.com

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are On
Pingbacks are On
Refbacks are On

Similar Threads
Thread Thread Starter Forum Replies Last Post
Vista Bèta 2 RikfromBelgium Computers 9 06-13-2006 09:55 PM


All times are GMT -5. The time now is 12:32 PM.