Defensewall, Sandboxie, and PatchGuard

Discussion in 'sandboxing & virtualization' started by Brandonn2010, May 7, 2011.

Thread Status:
Not open for further replies.
  1. Brandonn2010

    Brandonn2010 Registered Member

    Joined:
    Jan 10, 2011
    Posts:
    1,854
    I know people have been wanting a 64-bit version of DefenseWall, but that it's not possible at the moment because of PatchGuard. It sounds like Sandboxie has almost or as much protection on 64-bit systems now, even though it was originally though impossible because of PatchGuard. I know DefenseWall and Sandboxie are two different programs, but couldn't the technique for bypassing PatchGuard in Sandboxie possibly be applied to DefenseWall? I know DefenseWall and Sandboxie's developers are obviously competitors, but isn't there a chance Sandboxie's developers could help DefenseWall's a bit with the PatchGuard issue?
     
  2. moontan

    moontan Registered Member

    Joined:
    Sep 11, 2010
    Posts:
    3,931
    Location:
    Québec
    somebody correct me but i dont think there is any major difference between the 32 & 64 bits version.

    i am not even sure the 32 bits version does any kernel patching.

    more here:

    http://www.sandboxie.com/index.php?NotesAbout64BitEdition
     
  3. J_L

    J_L Registered Member

    Joined:
    Nov 6, 2009
    Posts:
    8,738
    A chance? Maybe if there's a good deal in return, I highly doubt anyone would help their competitor for free.

    @moontan: Look at the latest beta.
     
  4. Brandonn2010

    Brandonn2010 Registered Member

    Joined:
    Jan 10, 2011
    Posts:
    1,854
    Does Sandboxie at least prove that 64-bit sandbox and HIPS programs can work? Is there even an attempt to create a 64-bit Defensewall? I know this has been beaten to death, but I'm just wondering.
     
  5. Ilya Rabinovich

    Ilya Rabinovich Developer

    Joined:
    Sep 13, 2005
    Posts:
    1,543
    Before making an attempt, I need to know I can make it's protection the same level as 32 bit. Right now the only way I see is to bypass PG.
     
  6. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    Latest Sandboxie beta 3.55 has virtually the same level of protection for x64 as for 32-bit.

    Using Drop-my-rights on Sandboxie x64 is no longer necessary.
     
  7. Ilya Rabinovich

    Ilya Rabinovich Developer

    Joined:
    Sep 13, 2005
    Posts:
    1,543
    Yes, by bypassing PG.
     
  8. shadek

    shadek Registered Member

    Joined:
    Feb 26, 2008
    Posts:
    2,538
    Location:
    Sweden
    Aye! So, out of curiosity, do you plan on doing the same thing or would the work not be worth it if Microsoft patch the kernel in the right spots, hence destroying hours of hours of work with just an ordinary Tuesday patch?
     
  9. Ilya Rabinovich

    Ilya Rabinovich Developer

    Joined:
    Sep 13, 2005
    Posts:
    1,543
    It's a good question. I'll get some time to see MS reaction on PG bypass.
     
  10. EboO

    EboO Registered Member

    Joined:
    Mar 12, 2011
    Posts:
    287
    Is it possible to work with Microsoft on a solution ?
     
  11. cheater87

    cheater87 Registered Member

    Joined:
    Apr 22, 2005
    Posts:
    3,291
    Location:
    Pennsylvania.
    I would hope so.
     
  12. Ilya Rabinovich

    Ilya Rabinovich Developer

    Joined:
    Sep 13, 2005
    Posts:
    1,543
    Theoretically- yes, practically- have some doubts in it.
     
  13. EboO

    EboO Registered Member

    Joined:
    Mar 12, 2011
    Posts:
    287
    I hope next news about 64 bits version will be good.
     
  14. Rilla927

    Rilla927 Registered Member

    Joined:
    May 12, 2005
    Posts:
    1,742
    Microsoft needs to get rid of 32bit and we will be in good shape.
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.