Free Newsletters

   All InfoWorld Newsletters
Security Adviser | Roger A. Grimes » Low threat Vista exploit

December 21, 2006 | Comments: (0)

Low threat Vista exploit

Several people are reporting a local exploit that can leverage a regular or admin user to the System account.

The CSRSS process is exploitable in Windows 2000 and above. You can read the report here.

And no, this doesn't make me take back my statement that Windows Vista is a secure OS. Privileged escalation exploits that need a logged on local user to begin with aren't much of a threat. There are many ways to accomplish the same thing.

Posted by Roger Grimes on December 21, 2006 05:19 PM


RATE THIS ARTICLE:





 

  •  
  • COMMENTS





Technology White Papers

 

InfoWorld Technology Marketplace

» Technology White Papers Library

Technology White Papers by Topic

Technology White Papers E-mail Alert

Find out when the latest white paper is available:
 
 
» BUY A LINK NOW

Sponsored Technology Links