Slashdot Mirror


Attackers Can Turn Microsoft's Exploit Defense Tool EMET Against Itself (csoonline.com)

itwbennett writes: FireEye researchers have found a way for exploits to trigger a specific function in EMET that disables all protections it enforces for other applications. The researchers believe that their new technique, which essentially uses EMET against itself, is more reliable and easier to use than any previously published bypasses. It works against all supported versions of EMET — 5.0, 5.1 and 5.2 — but Microsoft patched the issue in EMET 5.5, which was released on Feb. 2. So if you haven't upgraded yet, now would be a good time to do it. For more about how the technique works, read FireEye's blog post.

1 of 40 comments (clear)

  1. The summary should describe EMET. by Anonymous Coward · · Score: 0, Troll

    The summary should say what exactly this EMET thing is. We should never have to google for such info. We tend to use Linux here, so we know what systemd is, but we don't know what EMET is.