techPowerUp! Forums

Go Back   techPowerUp! Forums > www.techpowerup.com > News

Reply
 
Thread Tools
Old Aug 11, 2007, 01:00 PM   #1
W1zzard
Benevolent Dictator
 
W1zzard's Avatar
 
Join Date: May 2004
Location: Stuttgart, Germany
Posts: 13,780 (4.18/day)
Thanks: 184
Thanked 10,246 Times in 3,171 Posts
Send a message via ICQ to W1zzard Send a message via AIM to W1zzard Send a message via MSN to W1zzard

System Specs

ATI driver flaw exposes Vista kernel

An unpatched flaw in drivers from ATI creates a means to smuggle malware past improved security defences in the latest version of Windows and into the Vista kernel.

Microsoft is working with ATI on an update which security watchers warn might be far from straightforward to roll-out.


Quote:
The existence of the security flaw in ATI's driver came to light after developer Alex Ionescu released a proof-of-concept tool called Purple Pill that created an easy way to load and unload unsigned (potentially malicious) drivers on Vista. The utility circumvented new anti-rootkit defences built into Vista by turning off checks for signed drivers.

Ionescu pulled the utility hours after its release after realising that the ATI driver flaw Purple Pill uses, which he learned about in a presentation by Vista kernel security expert Joanna Rutkowska at Black Hat last week, is yet to be patched.
Source: The Register
W1zzard is offline  
Reply With Quote
Old Aug 12, 2007, 04:48 AM   #2
WarEagleAU
Bird of Prey
 
WarEagleAU's Avatar
 
Join Date: Jul 2006
Location: Gurley, AL
Posts: 9,994 (3.98/day)
Thanks: 3,810
Thanked 557 Times in 521 Posts
Send a message via AIM to WarEagleAU Send a message via Yahoo to WarEagleAU

System Specs

Sounds like Vistas super security isnt super secure. I doubt anyone would use an ATI driver flaw to do something like this, but at least its worth noting and they are working on fixing it.
__________________
=-TheEagle-=



http://www.heatware.com/eval.php?id=62454
“You crazy? Surfing any website without an antivirus is like freaking with a dirty woman without protection” -OzzmanFloyd120
- Edited for content and clarity
WarEagleAU is offline  
Reply With Quote
Old Aug 12, 2007, 08:16 AM   #3
wiak
1000 Posts
 
wiak's Avatar
 
Join Date: Sep 2004
Location: Norway
Posts: 1,681 (0.53/day)
Thanks: 15
Thanked 199 Times in 156 Posts

Quote:
Originally Posted by WarEagleAU View Post
Sounds like Vistas super security isnt super secure. I doubt anyone would use an ATI driver flaw to do something like this, but at least its worth noting and they are working on fixing it.
everything is unsecure, dont think you ARE secure, just look at Blu-Ray Disc and HD DVD, and the (un)brackable AACS

"the history has thought use that"
wiak is offline  
Reply With Quote
Reply


Currently Active Users Viewing This Thread: 1 (0 members and 1 guests)
 
Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is On

Forum Jump


All times are GMT. The time now is 05:02 PM.


Powered by vBulletin® Version 3.8.6
Copyright ©2000 - 2013, Jelsoft Enterprises Ltd.
no new posts