Slashdot Mirror


Shattering Windows

ChrisPaget writes: "I've just released a paper documenting and exploiting fundamental flaws in the Win32 API. Essentially, they allow you to take control of any window on your desktop, regardless of whether that window is running as you, localsystem, or anywhere in between. The technique has been discussed before, but AFAIK this is the first working exploit. Oh, did I mention it's unfixable?" You may want to read this CNET interview with Microsoft security head Scott Charney to learn even more about "trustworthy computing."

12 of 772 comments (clear)

  1. Re:FP by Anonymous Coward · · Score: -1, Offtopic

    I agree. It was definitely more Informative than Insightful

  2. Microsoft has had 7 years of warning. by Quasar1999 · · Score: 2, Offtopic

    Microsoft was told about this flaw when it was first discovered 7 years ago. They still haven't fixed it.

    In other news, microsoft is sueing the cnet for making a flaw public news. They claim they needed more time to fix it, 7 years just isn't enough time to fix the bug and test the patch...

    --

    ---
    Programming is like sex... Make one mistake and support it the rest of your life.
  3. 9/11 related Easter Egg on orbitz.com by Anonymous Coward · · Score: -1, Offtopic

    OMG!! Go to Orbitz.com and use their OrBot to book a flight from BOS to LAX on 9/11.

  4. Re:Article text in case of /. effect by Anonymous Coward · · Score: -1, Offtopic

    The article is straight text, no images, off a good connection. Please moderators, for once do your job and mod these down as redundant.

  5. Re:here we go by laserjet · · Score: 1, Offtopic

    Does your mouth hurt? You just got trolled.

    --
    Moon Macrosystems. Sun's biggest competitor.
  6. Re:here we go by Anonymous Coward · · Score: -1, Offtopic

    nah...look at his previous posts. This guy's not smart enough to be a troll. He's great at being an idiot, though.

  7. Wrong Title by Anonymous Coward · · Score: -1, Offtopic

    What happened to "Good/Bad news for linux?" Why can't you trolls stick to your roots?

  8. MOD PARENT UP by MORTAR_COMBAT! · · Score: 2, Offtopic

    and then mod me down. posting this one at +1 to attempt to get some attention...

    --
    MORTAR COMBAT!
  9. Re:FP by DaveAtFraud · · Score: 0, Offtopic

    Noise

    --
    They that can give up essential liberty to obtain a little temporary safety deserve neither safety nor liberty.
    Ben
  10. Re:FP by DaveAtFraud · · Score: 0, Offtopic

    Like I said, noise.

    --
    They that can give up essential liberty to obtain a little temporary safety deserve neither safety nor liberty.
    Ben
  11. Re:I didn't expect a Spanish Inquisition! by Warped-Reality · · Score: 0, Offtopic

    NOBODY EXPECTS THE SPANISH INQUISITION!

    Our chief weapon is surprise...surprise and fear...fear and surprise.... Our two weapons are fear and surprise...and ruthless efficiency.... Our *three* weapons are fear, surprise, and ruthless efficiency...and an almost fanatical devotion to the Pope.... Our *four*...no... *Amongst* our weapons.... Amongst our weaponry...are such elements as fear, surprise.... I'll come in again.

    --
    This is not the greatest sig in the world, no. This is just a tribute.
  12. Re:WARNING Virus in article download!!!!!!! by Anonymous Coward · · Score: -1, Offtopic

    The original post was an excellent troll. 6 replies.. and this one makes it 7.