Jeudi, 10 Mars 2011 08:32
Apple’s Safari Browser Hacked In 5 Seconds Using MacBook In Pwn2Own Contest
Apple’s Safari browser has once again been compromised, this time by VUPEN co-founder Chaouki Bekrar in today’s Pwn2Own hacker contest. The vulnerability was demoed on a MacBook which was running a fully patched version of Mac OS X (64-bit) where he was able to launch a calculator on the compromised machine. According to Bekrar, the vulnerability was discovered in WebKit, the open-source browser rendering engine using fuzzers. The team took around two weeks to identify the vulnerability and coding a working exploit for it. Bekrar and his team ended up winning a $15,000 cash prize and an Apple MacBook Air 13” running Mac OS X Snow Leopard. Bekrar said the Safari exploit was “somewhat difficult” because of the lack of documentation regarding 64-bit Mac OS X exploitation.” We had to do everything from scratch. We had to create a debugging tool, create the shellcode and create the ROP (return oriented programming) technique,” he explained. “The main difficulty was doing this on our own, without the help of any documentation,” he said. Interestingly, Apple released Safari 5.0.4 in the nick of time for the Pwn2Own security competition but it was successfully exploited anyway. We’ll bring you more updated news from the 5th Pwn2Own hacking contest. You can stay tuned for more info by following us on Twitter and/or subscribing to our RSS feed. [Source: ZDNet] Authors:
Read 3559 times
Published in
News Technologique-Tech News
Last WebBuzz
-
WebBuzz du 04/12/2015: Animation stroboscopique de Scultures: Blooms-Blooms Strobe-Animated Sculptures
Read 16590 times
-
WebBuzz du 03/12/2015: Le challenge mobil 1: 240cm avec Jenson button-Mobil 1 challenge 240 cm with Jenson button
Read 16047 times
-
WebBuzz du 02/12/2015: Carpes et poissons chat à Tchernobyl-Chernobyl catfishes and carps
Read 17424 times
-
WebBuzz du 01/12/2015: La porte des étoiles par le groupe playmid-The Playmid's star gate
Read 18864 times
-
WebBuzz du 30/11/2015: Vie sauvage en artique filmé par drone-Wild life in artic recorded by a drone
Read 17231 times
-
WebBuzz du 27/11/2015: Les migrants de Calais: la réalité-The truth about Calais emigrants
Read 15391 times
-
WebBuzz du 26/11/2015: Un batteur vole la veddette-Best drummer ever
Read 10785 times
-
WebBuzz du 25/11/2015: Une cheminée s'écroule sur une pelleteuse-A chimney collapsed on a excavator
Read 16264 times
-
WebBuzz du 24/11/2015: Un cargo perd son ancre-A freighter loose its anchor
Read 12060 times
-
WebBuzz du 23/11/2015: Destruction du super star destroyer en LEGO-Giant Star Wars LEGO Super Star Destroyer Shattered
Read 10052 times
Accusé de reception
bancaires
bilan
cheval
configuration
Confirmation de lecture
copie
copies
Dolibarr
duplicata
EDF
Excel
exim
facture
factures
Firefox
Google cloud print
hameçonnage
IE6
IE7
impression
informatique
itunes
java
linux
luxembourgeois
mac os
MAJ
micosoft
microsoft
Office
Outlook
phishing
quicktime
rappels
relances
seamonkey
serveurs
spécifique
Sécurité
Tentative
thunderbird
troie
utilisant
V322
Vista
Windows
Windows 7
XP/2000 : Activer le pavé numérique
établissements








