home hardware prices news articles forums photos user reviews
Go Back   Tech Support Forums - TechIMO.com > PC Hardware and Tech > Security and Privacy Issues
Join TechIMO for Free!
Register Blogs FAQ Members List Calendar Search Today's Posts Mark Forums Read
Reply Get bargains at  »  Dealighted.com
 
Thread Tools
Currently Active Users: 2181
Discussions: 186,591, Posts: 2,226,891, Members: 230,215
Free Scan: Update Your PC's Outdated Drivers to Optimize Performance
Old April 24th, 2008, 11:19 AM   Digg it!   #1 (permalink)
Ultimate Member
 
Theophylact's Avatar
 
Join Date: Oct 2001
Location: inside the Beltway
Posts: 5,114
Blog Entries: 32
Reverse-engineering security patches to automatically generate exploits

Uh-oh:
Quote:
Automatic Patch-Based Exploit Generation
David Brumley, Pongsin Poosankam, Dawn Song, and Jiang Zheng

Abstract
The automatic patch-based exploit generation problem is: given a program P and a patched version of the program P', automatically generate an exploit for the potentially unknown vulnerability present in P but fixed in P'. In this paper, we propose techniques for automatic patch-based exploit generation, and show that our techniques can automatically generate exploits for vulnerable programs based upon patches provided via Windows Update.

In many cases we are able to automatically generate exploits within minutes or less. Although our techniques may not work in all cases, a fundamental tenet of security is to conservatively estimate the capabilities of attackers. Thus, our results indicate that automatic patch-based exploit generation should be considered practical. One important security implication of our results is that current patch distribution schemes which stagger patch distribution over long time periods, such as Windows Update, may allow attackers who receive the patch first to compromise the significant fraction of vulnerable hosts who have not yet received the patch. Thus, we conclude update schemes, such as Windows Update as currently implemented, can detract from overall security, and should be redesigned.

What does this mean?
Attackers can simply wait for a patch to be released, use these techniques, and with reasonable chance, produce a working exploit within seconds. Coupled with a worm, all vulnerable hosts could be compromised before most are even aware a patch is available, let alone download it. Thus, Microsoft should redesign Windows Update. We propose solutions which prevent several possible schemes, some of which could be done with existing technology.

Read the full paper: PDF
Hat tip to Bruce Schneier.
__________________
Editing! Gerunds! Death!

Theophylact is offline   Reply With Quote
TechIMO.com Ads - Login or register for less ads.
How many errors does your computer have?

You no longer need to guess! This free stability scan and registry cleaner download will give you a complete diagnosis of your Windows registry, identifying errors and conflicts.

FREE instant scan


Guest, Register Free! to remove this ad and get your tech support questions answered in minutes!
Old April 26th, 2008, 03:26 PM     #2 (permalink)
Ultimate Member
 
SeanC's Avatar
 
Join Date: Oct 2001
Location: Toronto Canada
Posts: 4,619
Interesting. Another reason to stay up to date on patches for the OS and programs. That would only hit those that don't update or don't update often enough.
__________________
AMD Phenom Q9500 Quad-Core 2.2ghz / Asus M3A78-EMH HDMI / 4GB PC667 RAM / 320GB SATA II
Debian Lenny AMD64 version

SeanC is offline   Reply With Quote
Old April 28th, 2008, 09:43 PM     #3 (permalink)
Member
 
Join Date: Feb 2008
Posts: 416
Its sad people stop @ nothing to hurt people they dont even know.....

Very sad and sickening........

Dude111 is offline   Reply With Quote
Old April 28th, 2008, 10:41 PM     #4 (permalink)
Banned
 
Keymaker's Avatar
 
Join Date: Jan 2005
Location: Loveland, CO
Posts: 5,493
Blog Entries: 2
Send a message via ICQ to Keymaker Send a message via Yahoo to Keymaker
This exactly why my paranoid view on computer security has all programs not auto update!

One thing I find about these so called security holes, is that the finders themselves add more damn fuel to the fire.

http://www.pandora.com/music/song/u2/bullet+blue+sky
Keymaker is offline   Reply With Quote
Old April 29th, 2008, 02:04 AM     #5 (permalink)
SoMuchAnime-SoLittleTime
 
EXreaction's Avatar
 
Join Date: Aug 2003
Location: Plymouth, WI
Posts: 13,696
Blog Entries: 1
Send a message via ICQ to EXreaction Send a message via AIM to EXreaction Send a message via MSN to EXreaction Send a message via Yahoo to EXreaction
I don't see how there would be any possible way around this. As soon as you release a patch the user can reverse engineer it and find the place it patches, and there really is no way of releasing patches without letting people have access to the patch files.

Quote:
Originally Posted by Keymaker View Post
This exactly why my paranoid view on computer security has all programs not auto update!
Wait, so you are saying that you turn off auto updates because you think you are keeping yourself more secure?
__________________
The mark of the immature man is that he wants to die nobly for a cause, while the mark of a mature man is that he wants to live humbly for one.
EXreaction is online now   Reply With Quote
Old April 29th, 2008, 02:40 PM     #6 (permalink)
Banned
 
Keymaker's Avatar
 
Join Date: Jan 2005
Location: Loveland, CO
Posts: 5,493
Blog Entries: 2
Send a message via ICQ to Keymaker Send a message via Yahoo to Keymaker
No, I update manually. Guess I should have stated that..
Keymaker is offline   Reply With Quote
Old April 29th, 2008, 02:52 PM     #7 (permalink)
Super F@D Folder
 
Join Date: Jun 2004
Posts: 5,004
Send a message via AIM to sr71000
that still makes no sense. It's imperative to get the updates installed before an exploit can be reverse engineered. Do you wait up on patch nights just waiting for the patch to be released, then run around on all your machines and immediately install it?

Anyways, this just further demonstrates the need for a firewall to keep them away from your inherently flawed software.

/edit - I can't wait to go through this paper and see their proposed solutions.

Last edited by sr71000 : April 29th, 2008 at 03:28 PM.
sr71000 is offline   Reply With Quote
Old April 30th, 2008, 04:16 PM     #8 (permalink)
Banned
 
Keymaker's Avatar
 
Join Date: Jan 2005
Location: Loveland, CO
Posts: 5,493
Blog Entries: 2
Send a message via ICQ to Keymaker Send a message via Yahoo to Keymaker
Believe the solution was to encrypt the patch being sent...

My purpose of turning off auto updates is to reduce any vulnerability in the update routine. Like a hijack of some type.
Keymaker is offline   Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may post new threads
You may post replies
You may not post attachments
You may not edit your posts

vB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are On
Refbacks are Off

Similar Threads
Thread Thread Starter Forum Replies Last Post
how does one generate a read receipt when sending a attachment in outlook roafamily Applications and Operating Systems 0 March 2nd, 2007 05:12 PM
Name of softwares that allow to generate PDFs by filling PDF templates.... Indian Applications and Operating Systems 2 November 17th, 2004 09:46 AM
Detecting and cleaning recent exploits M_Six Security and Privacy Issues 2 August 11th, 2003 05:55 PM
Lirva worm exploits Avril Lavigne's popularity Sweeper IMO Community 7 January 9th, 2003 12:48 PM
Access / Automatically generate a report from a form? Turnip12 Webmastering and Programming 22 November 6th, 2002 02:24 PM

Most Active Discussions
Is It Just Me? (492)
heatsink issue (8)
Word Association!! (1651)
Why Does the MOON Grow Bigger as It.. (11)
SSD's, RAID, and External Backup (6)
New Mobo (16)
1 internet. 1 house. 3 computer. ho.. (11)
UPGRADING C/D DRIVE TO 250GB & .. (10)
Is This A Compatible Gaming PC? (16)
Recent Discussions
Letter Count Array (3)
Hard Core Overclock (9)
C++ compiler suggestions (1)
SSD's, RAID, and External Backu.. (6)
Folderchat: The Holiday thread (113)
1 internet. 1 house. 3 computer.. (11)
heatsink issue (8)
FS: New Benny Hill Megaset DVD .. (6)
Computer won't start (2)
New Mobo (16)
FS: Dell 6000 laptop, modded 36.. (2)
Apple iPod touch 16 GB $200 (4)


All times are GMT -4. The time now is 12:44 AM.
TechIMO Copyright 2008 All Enthusiast, Inc.



1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28