Down the Rabbit-Hole...

Discussion in 'other security issues & news' started by Minimalist, Aug 13, 2019.

  1. Minimalist

    Minimalist Registered Member

    Joined:
    Jan 6, 2014
    Posts:
    14,883
    Location:
    Slovenia, EU
    https://googleprojectzero.blogspot.com/2019/08/down-rabbit-hole.html
     
  2. guest

    guest Guest

    Google Discloses 20-Year-Old Unpatched Flaw Affecting All Versions of Windows
    August 13, 2019
    https://thehackernews.com/2019/08/ctfmon-windows-vulnerabilities.html
     
  3. mirimir

    mirimir Registered Member

    Joined:
    Oct 1, 2011
    Posts:
    9,252
  4. guest

    guest Guest

    Yes really serious, basically even sandboxed process can escalate and gain esystem privileges...
    Sandbox escaping made easy, thanks MS lol
    The worst is that you can even impersonate the process...
     
  5. Mr.X

    Mr.X Registered Member

    Joined:
    Aug 10, 2013
    Posts:
    4,805
    Location:
    .
    And I thought I was really protected from evil in my beautiful yellow sandbox. :D
     
  6. guest

    guest Guest

    I think you get emotional Loooool.
    Sandboxes are just safety net anyway, doesn't say they prevent all attacks. If they did say, it would be a blatant lie.
    But seriously, I can't believe that nobody noticed, I'm sure some 3 letters agencies did and kept it for them.

    @itman and @Rasheed187 where are you? this is the kind of stuff we like to discuss.

    Disturbing

    That is a shame...ah or it is maybe the legendary "Windows backdoor"
     
    Last edited by a moderator: Aug 14, 2019
  7. mirimir

    mirimir Registered Member

    Joined:
    Oct 1, 2011
    Posts:
    9,252
    Yeah, most likely.
     
  8. Alec

    Alec Registered Member

    Joined:
    Jun 8, 2004
    Posts:
    480
    Location:
    Dallas, TX
    I just read this article... and I have to second the comment... Wow. Just wow.

    Also, did anyone else watch the exploit demo videos hosted within the middle of mood's article? I loved the explosion effect! LOL. The second one even had an accompanying sound effect. :argh:
     
    Last edited: Aug 15, 2019
  9. sdmod

    sdmod Shadow Defender Expert

    Joined:
    Oct 28, 2010
    Posts:
    1,161
    This may be a useful webpage
     
  10. Be_Ta

    Be_Ta Registered Member

    Joined:
    Jan 15, 2019
    Posts:
    49
    Location:
    Earth
    got fixed in the recent Update..
    But yeah, 20 freacking years that exploit existed..

    shame on you MS, shame on you....
     
  11. sdmod

    sdmod Shadow Defender Expert

    Joined:
    Oct 28, 2010
    Posts:
    1,161
    Is there an update or patch for XP?

     
  12. Be_Ta

    Be_Ta Registered Member

    Joined:
    Jan 15, 2019
    Posts:
    49
    Location:
    Earth
    Not that i know of..
    Win 10 for shure, WIn 7 i guess and hope. XP i dont think MS will bother with it..
     
  13. B-boy/StyLe/

    B-boy/StyLe/ Registered Member

    Joined:
    Sep 19, 2012
    Posts:
    518
    Location:
    Bulgaria
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.