Down the Rabbit-Hole...

Discussion in 'other security issues & news' started by Minimalist, Aug 13, 2019.

  1. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    12,403
    Location:
    Here
    https://googleprojectzero.blogspot.com/2019/08/down-rabbit-hole.html
     
  2. mood

    mood Updates Team

    Joined:
    Oct 27, 2012
    Posts:
    20,226
    Google Discloses 20-Year-Old Unpatched Flaw Affecting All Versions of Windows
    August 13, 2019
    https://thehackernews.com/2019/08/ctfmon-windows-vulnerabilities.html
     
  3. mirimir

    mirimir Registered Member

    Joined:
    Oct 1, 2011
    Posts:
    8,965
  4. guest

    guest Guest

    Yes really serious, basically even sandboxed process can escalate and gain esystem privileges...
    Sandbox escaping made easy, thanks MS lol
    The worst is that you can even impersonate the process...
     
  5. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    3,626
    Location:
    Mexico
    And I thought I was really protected from evil in my beautiful yellow sandbox. :D
     
  6. guest

    guest Guest

    I think you get emotional Loooool.
    Sandboxes are just safety net anyway, doesn't say they prevent all attacks. If they did say, it would be a blatant lie.
    But seriously, I can't believe that nobody noticed, I'm sure some 3 letters agencies did and kept it for them.

    @itman and @Rasheed187 where are you? this is the kind of stuff we like to discuss.

    Disturbing

    That is a shame...ah or it is maybe the legendary "Windows backdoor"
     
    Last edited by a moderator: Aug 14, 2019
  7. mirimir

    mirimir Registered Member

    Joined:
    Oct 1, 2011
    Posts:
    8,965
    Yeah, most likely.
     
  8. Alec

    Alec Registered Member

    Joined:
    Jun 8, 2004
    Posts:
    418
    Location:
    Dallas, TX
    I just read this article... and I have to second the comment... Wow. Just wow.

    Also, did anyone else watch the exploit demo videos hosted within the middle of mood's article? I loved the explosion effect! LOL. The second one even had an accompanying sound effect. :argh:
     
    Last edited: Aug 15, 2019
  9. sdmod

    sdmod Shadow Defender Expert

    Joined:
    Oct 28, 2010
    Posts:
    960
    This may be a useful webpage
     
  10. Be_Ta

    Be_Ta Registered Member

    Joined:
    Jan 15, 2019
    Posts:
    22
    Location:
    Earth
    got fixed in the recent Update..
    But yeah, 20 freacking years that exploit existed..

    shame on you MS, shame on you....
     
  11. sdmod

    sdmod Shadow Defender Expert

    Joined:
    Oct 28, 2010
    Posts:
    960
    Is there an update or patch for XP?

     
  12. Be_Ta

    Be_Ta Registered Member

    Joined:
    Jan 15, 2019
    Posts:
    22
    Location:
    Earth
    Not that i know of..
    Win 10 for shure, WIn 7 i guess and hope. XP i dont think MS will bother with it..
     
  13. B-boy/StyLe/

    B-boy/StyLe/ Registered Member

    Joined:
    Sep 19, 2012
    Posts:
    157
    Location:
    Bulgaria
Loading...
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.