Page 1 of 1

Another reason not to use Microsoft lookalike stuff.

Posted: Tue Apr 21, 2009 9:03 pm
by eddie

Re: Another reason not to use Microsoft lookalike stuff.

Posted: Wed Apr 22, 2009 10:54 am
by dann
.Net-Sploit allows a hacker to modify the .Net framework on targeted machines, inserting rootkit-style malicious software in a place untouched by security software and where few security people would think to look, said Erez Metula, the software security engineer for 2BSecure who wrote the tool.
I don't understand this statement. Who make security software that does not monitor the entire system. How is there places that people would not think to look? Who the hell is piloting this sinking ship?

What the hell do all these security companies do with the revenues from their overpriced software that they are not on top of this kind of crap? And I thought MS was going to be more security oriented.

Well the good news is you already have to have exploited the machine to launch the payload. The bad news is that is not too difficult.

Re: Another reason not to use Microsoft lookalike stuff.

Posted: Wed Apr 22, 2009 10:54 am
by dann
I wonder if the mono team will incorporate this exploit so they are compliant with MS's .net stack.

Re: Another reason not to use Microsoft lookalike stuff.

Posted: Mon Apr 27, 2009 3:15 pm
by riddlebox
dann wrote:I wonder if the mono team will incorporate this exploit so they are compliant with MS's .net stack.

bahhhhhhahahahaha
You just made me laugh on a crappy day at work.
Thanks dann!