2 stage hack on UAC
Windows Vista Forum
Home      Members   Calendar   Who's On
Welcome Guest ( Login | Register )
      



2 stage hack on UACExpand / Collapse
Author
Message
Posted 5/20/2007 10:45:13 AM
Vista Goddess

Vista GoddessVista GoddessVista GoddessVista GoddessVista GoddessVista Goddess

Group: Forum Members
Last Login: 11/19/2008 6:07:18 PM
Posts: 372, Visits: 6,045
I found this on another site, good info.

Another security researcher has found a way through Windows Vista's heavily hyped User Account Control (UAC) feature. Robert Paveza, a web application developer with marketing firm Terralever, has published a paper demonstrating a two-stage attack which he says allows malicious code to infect Vista systems even from accounts running under the limited privileges afforded by UAC.

The attack takes advantage of the fact that UAC permissions are somewhat porous, with programs able to ride on the coattails of other processes that are commonly granted higher privileges.

This is related to one of the flaws in UAC pointed out by security researcher Joanna Rutkowska in February. Rutkowska pointed out that the integrity levels (ILs) put into place by UAC are designed to allow certain breaches.

 View: Complete article

AMD Athlon 64 X2 6400+ @ 3.2ghz
Asus M2N32 SLI Deluxe motherboard
HD3870 gfx
8gig DDR2 ram-150g Raptor for Vista home premium 64bit
Antec 900 atx ultimate gamer case

A site for clans and people looking for a clan, Clan Sign-Up.

Post #7980
« Prev Topic | Next Topic »


Reading This TopicExpand / Collapse
Active Users: 0 (0 guests, 0 members, 0 anonymous members)
No members currently viewing this topic.
Forum Moderators: Jason, blackhat, kingofnexus, Camride, MafiaLord91, WAW8, Walker, MrMagic, PC509, AmericanNightmare

PermissionsExpand / Collapse

All times are GMT -6:00, Time now is 4:08pm

Powered By InstantForum.NET v4.1.4 © 2008
Execution: 0.047. 9 queries. Compression Enabled.