[G3]-Technews
[G3]-TechNews : Home| RSS | Atom | MSN | WAP

 Stickies:
Article: Step-by-Step Guide: How to set up a VPN
Article: Download: Microsoft Monad (Beta)
Article: Building a 64-Bit Multimedia Workstation
Article: Coming Soon to Windows: The Microsoft Shell (MSH)
Article: How to Reset Win NT / 2000 / XP Administrator Password
Article: The Technology Behind Dual Core CPUs
Article: How-To: Wireless Network Security
Article: Article: PCI Express - technology backgrounder
Article: Tutorial: Access Hidden Files on Your iPod
Article: Troubleshooting drivers with XP's hidden Driver Verifier Manager
Article: How to Make a 5 in 1 Network Cable
Article: Comparison - Blu-ray & HD DVD
Article: Beginners Guides Linux : Part 1 | Part 2 | Part 3
Article: How To Crack WEP (Wired Equivalent Privacy)
Article: Email Addresses Spoofing.
Link: Free PHP ebook
Link: FREE ASP.NET books and eLearning course
Link: Free registration code for Opera 8.
Invitations: Gazzag (Here) | Yahoo! 360 (Here)  | Orkut (Here)

Windows XP SP2 "Data Execution Prevention" Vulnerability Discovered.
Contributed by: G3nu1n3, at 1/31/2005 09:54:00 AM.

This is not so good for XP SP2 Users. Russian security outfit, Maxpatrol, have discovered CRITICAL vulnerability to defeat Microsoft Windows XP SP2 Heap protection and Data Execution Prevention mechanism.

Data execution prevention (DEP) is a set of hardware and software technologies that perform additional checks on memory to help protect against malicious code exploits. By default, software-enforced DEP only protects limited system binaries. Hardware-enforced DEP relies on processor hardware to mark memory with an attribute that indicates that code should not be executed from that memory.

Maxpatrol have published a full article on their discoveries. They claim that it's possible to implement arbitrary memory region write access (smaller or equal to 1016 bytes), Arbitrary code execution and DEP bypass.

The company have also published a solution named PTmsHORP. PTmsHORP allows restriction of lookaside list creation, governed by a special global flag.

View: Maxpatrol announcement
View: Maxpatrol bypass article


Important:
To Read MOST UPDATED News Items browse to HOME page.

0 Comments:

Post a Comment

<< Home



[G3]-TechNews : Home| RSS | Atom | MSN | WAP


Archives :

- Monthly Archives :


- Post Count: 1,783 before June 1, 2005. (Since: October 26, 2004)