Archive for the 'CanSecWest 2010' Category
Inevitably, CanSecWest 2010 kicked off with the promised and eagerly-awaited Pwn2Own hacking contest, in which a number of effective protection strategies (DEP, code signing, ASLR [1]) failed to prevent determined vulnerability researchers making loadsamoney by circumventing them with attacks on Firefox and IE8 on Windows 7, Safari, and the iPhone.
For details and extensive comment see:
http://macviruscom.wordpress.com/2010/03/25/and-the-firewalls-came-tumbling-down/
http://kevtownsend.wordpress.com/2010/03/25/sacred-cows-fall-at-pwn2own/
http://www.theregister.co.uk/2010/03/25/pwn2own_2010_day_one/
http://macviruscom.wordpress.com/2010/03/24/cansecwest-go-west-young-mac-but-fuzzily/
http://macviruscom.wordpress.com/2010/03/19/touching-base/
http://threatpost.com/en_us/blogs/iphone-hacked-pwn2own-sms-database-stolen-032410
The take-home message from … Read More…
- David Harley (740)
- Randy Abrams (431)
- Cameron Camp (111)
- Stephen Cobb (62)
- ESET Research (56)
- Pierre-Marc Bureau (51)
- Aryeh Goretsky (31)
- Andrew Lee (15)
- Robert Lipovsky (12)
- Jeff Debrosse (12)
- Paul Laudanski (11)
- Sebastian Bortnik (8)
- Dan Clark (6)
- Righard Zwienenberg (6)
- Sébastien Duquette (5)
- Peter Stancik (4)
- Alexis Dorais-Joncas (3)
- Tasneem Patanwala (3)
- Aleksandr Matrosov (2)
