Free Republic
Browse · Search
General/Chat
Topics · Post Article

To: for-q-clinton

So far you’ve claimed Apple didn’t patch the exploited vulnerabilities, FALSE. You’ve claimed Apple knew about these vulnerabilities before the contest. FALSE. You still haven’t given evidence for your claim that Miller told Apple about these 20 or so exploits he’s ready to use in future contests.

This year Windows 7 64-bit with IE8 was compromised by bypassing the security features of DEP and ASLR.
Hey, you do realize that ASLR is security through obscurity, right? It randomizes the start addresses of processes (=obscures them) to make it harder to leverage buffer overflows. Do you suggest Microsoft dump it because it’s not “real” security?


190 posted on 07/23/2010 6:31:58 AM PDT by antiRepublicrat
[ Post Reply | Private Reply | To 124 | View Replies ]


To: antiRepublicrat

I did not suggest apple didn’t patch the exploited vulnerabilities. I claimed they didn’t patch all the vulnerabilities that Charlie Miller has known about for quite a while. And that they knew he was going to attack OS X with one of those exploits he had at his dispossal.


202 posted on 07/23/2010 11:32:57 AM PDT by for-q-clinton (If at first you don't succeed keep on sucking until you do succeed)
[ Post Reply | Private Reply | To 190 | View Replies ]

Free Republic
Browse · Search
General/Chat
Topics · Post Article


FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson