New User, Welcome!     Login

Jorge Luis

CORE-2009-0625: Internet Explorer Dynamic OBJECT tag and URLMON sniffing vulnerabilities

used to perform attacks that abuse the vulnerabilities described in this
advisory.

7. *Credits*

These vulnerabilities were discovered and researched by Jorge Luis
Alvarez Medina and Federico Muttis from Core Security Technologies.

8. *Technical Description / Proof of Concept Code*

The bugs in this advisory as well as a number of specific methods to

CORE-2008-0826 - Internet Explorer Security Zone restrictions bypass

vulnerability, workarounds and mitigations [3].


7. *Credits*

This vulnerability was discovered and researched by Jorge Luis Alvarez
Medina from Core Security Consulting Services (SCS). Additional research
was made by Federico Muttis from Core Security Exploit Writers Team (EWT).


8. *Technical Description / Proof of Concept Code*

Hackito Ergo Sum Conference (Paris 8-10 April 2010) : Schedule

17h00-18h00 ? Evolution of Microsoft security mitigations ? Tim Burrell
(Microsoft)

Friday 2010-04-09:
10h30-11h30 ? Internet Explorer turns your personal computer into a
public file server ? Jorge Luis Alvarez Medina (Core Security)
11h30-12h30 ? Breaking Virtualization by switching to Virtual 8086 mode
? Jonathan Brossard (P1 Security)

14h00-15h00 ? Mac OS X Physical Memory Analysis ? Matthieu Suiche
(Moonsols, Sandman, win32dd)

CORE-2008-0103: Internet Explorer Zone Elevation Restrictions Bypass and Security Zone Restrictions Bypass

6. Click Remove, and then click OK. Click Yes and OK on subsequent screens.


*Credits*

This vulnerability was discovered and researched by Jorge Luis Alvarez
Medina from Core Security Technologies.


*Technical Description / Proof of Concept Code*




Copyright © 1995-2012 LinuxRocket.net. All rights reserved.

Nearly all of LinuxRocket's features are free. Be kind and donate to the cause!