KHOBE: Say hello to my little friend(*)
May 14th, 2010 by Aviram, Filed under: Insider Threat, malware, Microsoft, Rootkits, Sec Tools
Guess what? You personal firewall/IDS/Anti Virus/(insert next month’s buzzword here) isn’t going to save you from an attacker successfully executing code remotely on your machine:
http://www.zdnet.com/blog/hardware/update-new-attack-bypasses-every-windows-security-product/8268
So no, it’s not the doomsday weapon, but definitely worthy of the Scarface quote in the title.
This isn’t surprising, researchers find ways to bypass security defenses almost as soon as those defenses are implemented (remember non-executable stack?). Eliminating vulnerabilities in the first place is the way to go, guys, not trying to block attacks hoping your ‘shields’ hold up.
(*) If you’re reading this out loud you need to do so in a thick cuban accent
-
alex eckelberry
-
sidereal



