Skip to main content

BoundHook: Microsoft downplays Windows systems exploit technique

  • October 18, 2017
  • 1 reply
  • 184 views

Jasper_The_Rasper
Moderator
Forum|alt.badge.img+54

It's just not a security vulnerability, says Redmond

 


 By John Leyden 18 Oct 2017 Features of the Intel MPX designed to prevent memory errors and attacks might be abused to launch assaults on Windows systems, security researchers claim.
 
Windows 10 uses Intel to secure applications by detecting boundary exceptions (common during a buffer overflow attack). An exploit technique by CyberArk Labs uses the boundary exception as the hook itself to give attackers control of Windows 10 devices.
 
Full Article.

1 reply

  • 2804 replies
  • October 18, 2017
Wow! You'd think that after the whole WannaCry/EternalBlue fiasco that Microsoft wouldn't be downplaying anything.

Reply