Slashdot Mirror


Windows Vulnerable To 'Token Kidnapping' Attacks

cuppa+tea writes "More than a year after Microsoft issued a patch to cover privilege escalation issues that could lead to complete system takeover, a security researcher plans to use the Black Hat conference spotlight to expose new design mistakes and security issues that can be exploited to elevate privileges on all Windows versions, including the brand new Windows 2008 R2 and Windows 7."

8 of 126 comments (clear)

  1. Re:Yes by Windwraith · · Score: 4, Funny

    No, but it's polite, it's greeting the world. You are so insensitive!

  2. Re:Apple replies by $RANDOMLUSER · · Score: 3, Funny

    Actually, that's a pretty good analogy, as it makes Windows the fat, ugly chick with 17 enumerable STDs.

    --
    No folly is more costly than the folly of intolerant idealism. - Winston Churchill
  3. Re:About Software by Lord+Juan · · Score: 2, Funny

    Really? Can you find a bug in this...

      #include <stdio.h>
      int main()
      {
            printf("hello, world");
            return 0;
      }

    But Microsoft did not write that routine, had they done it, it would read something like:

    #include <stdio.h>
      int main()
      {
            printf("hello, world");
            get_administrative_privileges();
            collapse_system();
            return 0;
      }

  4. Re:About Software by DAldredge · · Score: 5, Funny

    You aren't checking the the return status of printf.

  5. Re:Apple replies by $RANDOMLUSER · · Score: 2, Funny

    Windows has shown it will let ANYBODY fuck it. Low self-esteem and all.

    --
    No folly is more costly than the folly of intolerant idealism. - Winston Churchill
  6. Re:Yes by Anonymous Coward · · Score: 1, Funny

    Neither does Windows.

  7. Get a Life Already Hackers!! by Anonymous Coward · · Score: 0, Funny

    I bet these without-a-life hackers are so lame they go on slashdot on a Saturday night! Poor saps don't have a life. Wouldn't want to be them, that's for sure!

  8. Re:About Software by rudy_wayne · · Score: 2, Funny

    Really? Can you find a bug in this...

    #include
    int main()
    {
                    printf("hello, world");
                    return 0;
    }

    Yes. You left out goatse.cx