由买买提看人间百态

boards

本页内容为未名空间相应帖子的节选和存档,一周内的贴子最多显示50字,超过一周显示500字 访问原贴
Hardware版 - zz Google Chrome sandbox apparently cracked
相关主题
用DD-WRT的要升级了[合集] 300GB ATA 硬盘在enclosure里XP不认
ie9 怎么个快法?NAS比网络邻居强多少?
大家来比较一下pc上firefox和chrome的优缺点????????Speed Test: Windows 7 May Not Be Much Faster Than Vista
apple air vs. lenovo yoga (转载)装了win7 ,现在看看osx和vista,都觉得好山寨啊。。。
[求助] Lenovo 410S LCD crack for no reasonVista 32bit,双千兆网卡
请教在Win 8.1里面用 Sandbox和VM (转载)这些软件在vista x64上,有问题吗?
不用64位系统的理由?给帮忙看看这个配置?
那个开启32位windows 7 4G内存的软件谁能推荐个ClearQAM HDTV tuner
相关话题的讨论汇总
话题: google话题: sandbox话题: chrome话题: vupen话题: exploit
进入Hardware版参与讨论
1 (共1页)
i***1
发帖数: 2534
1
http://www.net-security.org/secworld.php?id=11001
French security firm VUPEN has announced that its researchers have managed
manufacture an exploit able to bypass Google Chrome's sandbox, ASLR and DEP.
It is precisely the sandbox feature what made hackers eschew or fail in
their attacks directed at Chrome at Pwn2Own time and time again - since, as
researcher Charlie Miller pointed out, it has a "sandbox model that's hard
to get out of". The feature is also what secured its reputation as the most
secure browser around.
VUPEN researchers have also presented a video that shows the exploit in
action with Google Chrome v11.0.696.65 on Microsoft Windows 7 SP1 (x64),
though no details about it can be actually gleaned from it. According to
VUPEN, the user only needs to visit a specially crafted web page with the
exploit and a number of payloads are automatically executed, which
ultimately allows an attacker to execute arbitrary code outside the sandbox
at Medium integrity level.
"The exploit shown in this video is one of the most sophisticated codes we
have seen and created so far as it bypasses all security features including
ASLR/DEP/Sandbox, it is silent (no crash after executing the payload), it
relies on undisclosed (0day) vulnerabilities discovered by VUPEN and it
works on all Windows systems (32-bit and x64)," they simply say, and add
that the code and the technical details of the underlying vulnerabilities
will not be publicly disclosed, but shared only with their Government
customers.
While I understand that various governments will likely pay infinitely more
for the details of the vulnerabilities than Google would through it's bounty
program, the creation of this exploit, the discovery of this 0day
vulnerability, and VUPEN's refusal to share it with the public or Google is
extremely bad news for Chrome users.
In the end, we can't know which governments have shelled out for the exploit
and how will they use it. If VUPEN doesn't change its mind, I'm afraid the
only thing left for Google to do is to try to find out the hole for
themselves and patch it, or hope that a researcher more inclined to share
with them the details finds it and notifies them.
T****n
发帖数: 6187
2
即便如此,也还是比其他的强啊
而且目前对普通用户没影响

DEP.
as
most

【在 i***1 的大作中提到】
: http://www.net-security.org/secworld.php?id=11001
: French security firm VUPEN has announced that its researchers have managed
: manufacture an exploit able to bypass Google Chrome's sandbox, ASLR and DEP.
: It is precisely the sandbox feature what made hackers eschew or fail in
: their attacks directed at Chrome at Pwn2Own time and time again - since, as
: researcher Charlie Miller pointed out, it has a "sandbox model that's hard
: to get out of". The feature is also what secured its reputation as the most
: secure browser around.
: VUPEN researchers have also presented a video that shows the exploit in
: action with Google Chrome v11.0.696.65 on Microsoft Windows 7 SP1 (x64),

1 (共1页)
进入Hardware版参与讨论
相关主题
谁能推荐个ClearQAM HDTV tuner[求助] Lenovo 410S LCD crack for no reason
求助高手:1TB Western Digital SATA 内置硬盘format请教在Win 8.1里面用 Sandbox和VM (转载)
菜鸟请教这款配置如何?Toshiba Satellite L305-S5955:Intel Celeron900不用64位系统的理由?
T500 Vista home basic downgrade to XP那个开启32位windows 7 4G内存的软件
用DD-WRT的要升级了[合集] 300GB ATA 硬盘在enclosure里XP不认
ie9 怎么个快法?NAS比网络邻居强多少?
大家来比较一下pc上firefox和chrome的优缺点????????Speed Test: Windows 7 May Not Be Much Faster Than Vista
apple air vs. lenovo yoga (转载)装了win7 ,现在看看osx和vista,都觉得好山寨啊。。。
相关话题的讨论汇总
话题: google话题: sandbox话题: chrome话题: vupen话题: exploit