Hot Potato Super Exploit strikes all versions of Windows

Researchers from Foxglove Security managed to develop a super exploit, connecting together three different known Windows security blanks. The new exploit, called Hot Potato, can break almost all the latest versions of Microsoft Windows.exploit windows code

Hot Potato exploit is based on three different types of attacks, some of which have been discovered by 2000.

All three of these security loopholes have been left unattended by Microsoft, with the explanation that their repair will ruin the compatibility between the different versions of the company's operating systems.

The three exploits that make up the single Hot Potato exploit a local NBNS (NetBIOS Name Service) a spoofing που είναι 100% αποτελεσματική, ένα ελάττωμα που επιτρέπει σε hackers να δημιουργήσουν ψεύτικους WPAD proxy servers WPAD (Web Proxy Auto-Discovery Protocol), και μια to the Windows NTLM (NT LAN Manager) authentication protocol.

In case of success, the attacker can increase the privileges of an application from the lower tier to system-level privileges.

Foxglove's researchers created a proof-of-concept explode (PoC) and assigned it to the group Google's Project Zero from 2014. But they presented it to on Security (ShmooCon) last weekend.

In addition, researchers have uploaded some videos showing PoC on YouTube, breaking all recent versions of Windows (7, 8, 10, Server 2008, and Server 2012).

The researchers report that the “Extended Protection for Authentication” feature (Extended for Authentication) of Windows should stop the last stage of the exploit.

Meanwhile the explosion has already climbed to GitHub.

Watch videos

https://www.youtube.com/watch?v=Mzn7ozkyG5g

 

https://www.youtube.com/watch?v=Nd6f5P3LSNM

https://www.youtube.com/watch?v=z_IGPWgL5SY

https://www.youtube.com/watch?v=Kan58VeYpb8

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).