Thursday, 10 March 2011 08:32
Apple’s Safari Browser Hacked In 5 Seconds Using MacBook In Pwn2Own Contest
Apple’s Safari browser has once again been compromised, this time by VUPEN co-founder Chaouki Bekrar in today’s Pwn2Own hacker contest. The vulnerability was demoed on a MacBook which was running a fully patched version of Mac OS X (64-bit) where he was able to launch a calculator on the compromised machine. According to Bekrar, the vulnerability was discovered in WebKit, the open-source browser rendering engine using fuzzers. The team took around two weeks to identify the vulnerability and coding a working exploit for it. Bekrar and his team ended up winning a $15,000 cash prize and an Apple MacBook Air 13” running Mac OS X Snow Leopard. Bekrar said the Safari exploit was “somewhat difficult” because of the lack of documentation regarding 64-bit Mac OS X exploitation.” We had to do everything from scratch. We had to create a debugging tool, create the shellcode and create the ROP (return oriented programming) technique,” he explained. “The main difficulty was doing this on our own, without the help of any documentation,” he said. Interestingly, Apple released Safari 5.0.4 in the nick of time for the Pwn2Own security competition but it was successfully exploited anyway. We’ll bring you more updated news from the 5th Pwn2Own hacking contest. You can stay tuned for more info by following us on Twitter and/or subscribing to our RSS feed. [Source: ZDNet] Authors:
Read 3083 times
Published in
News Technologique-Tech News
Last WebBuzz
-
WebBuzz du 04/12/2015: Animation stroboscopique de Scultures: Blooms-Blooms Strobe-Animated Sculptures
Read 13738 times
-
WebBuzz du 03/12/2015: Le challenge mobil 1: 240cm avec Jenson button-Mobil 1 challenge 240 cm with Jenson button
Read 13648 times
-
WebBuzz du 02/12/2015: Carpes et poissons chat à Tchernobyl-Chernobyl catfishes and carps
Read 14645 times
-
WebBuzz du 01/12/2015: La porte des étoiles par le groupe playmid-The Playmid's star gate
Read 15364 times
-
WebBuzz du 30/11/2015: Vie sauvage en artique filmé par drone-Wild life in artic recorded by a drone
Read 14233 times
-
WebBuzz du 27/11/2015: Les migrants de Calais: la réalité-The truth about Calais emigrants
Read 11690 times
-
WebBuzz du 26/11/2015: Un batteur vole la veddette-Best drummer ever
Read 8469 times
-
WebBuzz du 25/11/2015: Une cheminée s'écroule sur une pelleteuse-A chimney collapsed on a excavator
Read 13657 times
-
WebBuzz du 24/11/2015: Un cargo perd son ancre-A freighter loose its anchor
Read 8880 times
-
WebBuzz du 23/11/2015: Destruction du super star destroyer en LEGO-Giant Star Wars LEGO Super Star Destroyer Shattered
Read 8479 times
accident
Amazing
animal
animals
animaux
avec
baby
bébé
car
Cat
chat
chien
comment
Crazy
Cute
dans
Dog
droles
Echec
fail
From
funny
jump
nature
new
people
pour
raté
russia
russie
saut
sauvage
Sport
stupid
sur
Technique
The
truck
une
usa
vehicule
vehicules
video
video du jour
videos
voiture
webbuzz
wild
with
étonnant