MS fortifies Windows 7 kernel with overrun buster

Airbot

----------------------
VIP
SF Team
Local time
6:12 PM
Messages
18,396
Microsoft engineers have fortified the latest version of Windows with a feature designed to make it significantly harder for attackers to exploit bugs that may be lurking deep inside the operating system.
The safeguard is called safe unlinking, and it's been dropped into a part of the Windows 7 kernel that allocates and deallocates chunks of memory. Safe unlinking performs a series of checks before entries are removed to make sure attackers aren't trying to exploit the operating system using what's known as a pool overrun.
"This simple check blocks the most common exploit technique for pool overruns," Peter Beck, a member of Microsoft's Security Science team writes here. "It doesn't mean pool overruns are impossible to exploit, but it significantly increases the work for an attacker."
more..
 

My Computer My Computer

Computer type
PC/Desktop
Computer Manufacturer/Model Number
Airbot 2.0
OS
Windows 7 Ultimate x64 SP1
CPU
Core i7 920 (D0) @ 4Ghz, *26c idle *65c full load on air
Motherboard
Asus P6X58D Premium - Sata 6Gb/s - USB 3.0
Memory
12GB DDR3 Corsair Dominator -CMD12GX3M6A1600C8 at 1600MHz
Graphics Card(s)
Zotac Geforce GTX 770
Sound Card
ASUS Xonar D2X
Monitor(s) Displays
1 LG 24" Flatron W2453V-PF 1 Samsung 24" P2450H both 2ms RT
Screen Resolution
1920x1080@60hz
Hard Drives
1 Samsung 250GB 840 Evo SSD
1 OCZ Vertex2 180GB SSD
1 TB Samsung Spinpoint F1 7200RPM 32MB cache
2 500GB WD Caviar Blacks 7200RPM 32MB cache (WD5001AALS)

Pioneer DVD Burner DVR-S18M
PSU
Corsair HX1000W
Case
Cooler Master HAF 932
Cooling
Case Fans *3 230mm, *1 140mm/CPU - *Tuniq Tower 120 Extreme
Keyboard
Logitech Wireless MK700
Mouse
Logitech Wireless MK700
Internet Speed
DL 15 Mbps UL 0.98 Mbps
Antivirus
None
Browser
Firefox Nightly
Other Info
Processor-7.7 *RAM- 7.9 *Graphics-7.9 *Gaming Graphics- 7.9 *SSD- 7.8 W.E.I final score= 7.7
*Phone- LG Nexus 5
Thanks for the news Aaron, good to know they are still improving the security but it can never be enough.
 

My Computer My Computer

Computer Manufacturer/Model Number
Home Brew
OS
Windows 7 Ultimate Vista Ultimate x64
CPU
Core 2 Duo E8500 3.16Ghz @ 3.8Ghz
Motherboard
eVGA 750i FTW
Memory
2x2Gigs Patriot PC2-6400 LL
Graphics Card(s)
Inno3D GeForce GTX260 216 SP
Monitor(s) Displays
ASUS VW222U 22" 2ms Response time
Screen Resolution
1680x1050
Hard Drives
SATA 150GB
SATA II 250GB
USB IDE 750GB Ext.
PSU
HYTEC 600W & Thermaltake 650W Toughpower Power Exp
Case
Thermaltake Armor LCS (Liquid Cooling System)
Cooling
Liquid Cooling System
Keyboard
Logitech G15 Gaming Keyboard
Mouse
Logitech G9 Gaming Mouse
There is no fullproof OS including Linux, you can only lessen them and that's what MS is trying to do...
 
Bravo to MS. Hopefully future measures continue to not interfere with performance.
 

My Computer My Computer

Computer Manufacturer/Model Number
Dell Inspiron 1520 (Laptop)/ Home (Desktop)
OS
Windows 7 x64 / Same
CPU
Intel Core 2 Duo T7250 / Intel Core i7 930
Motherboard
Intel 945 / Asus P6X58D-E
Memory
4GB / 6GB
Graphics Card(s)
NVIDIA GeForce 8400M GS / ASUS 1GB
Sound Card
Whatever Dell gave me :-( / Onboard
Monitor(s) Displays
15.4" LCD / Crappy CRT
Hard Drives
Seagate 500GB SATA; 7200 RPM / Seagate 1TB SATA; 7200 RPM
PSU
N/A / OCZ Fatal1ty 550W Modular
Case
N/A / Antec 900
Cooling
Air
Mouse
Microsoft Presenter (Bluetooth)
There is no fullproof OS ...

I agree on that statement. Everybody learns along the way.
And that includes MS!

And... unfortunately hackers and virusmakers. :(

The history of computers will always be, and has always been a neverending story/battle.
 

My Computer My Computer

OS
Windows 7 RC build 7100 32 bit Danish
The only thing Linux is safe ATM is its usage ratio..., when it grows then u'll all see viruses, malwares and other threats even for linux no matter how it is built....
 

Attachments

  • os.PNG
    os.PNG
    8.9 KB · Views: 107
Right on the spot bhuulo and TheMan

That and that its been hammered for so long by hackers compared to MS...
id say one of the most secure are the RTOS's out there Being used by goverment agencies and id say second would be Unix as its out for pretty out there since the web started and since it has had more time to mature security wise and that it was one of main OS's to be hacked upon in the old days when noone was on the net (only a bunch of Unix computers and Servers) which has strengthen much the OS design...

The malware creator wants to infect and create a backdoor these days...
creating massive botnets and hiding their trails along the way...
and making use of these botnets for extortion, blackmail, and even for hire by the highest bidder (be it a rival company, mafia ect...)

Also remember that not only does it the program have to be tailored to the specific OS ver but also the specific vulnerability...
want to hit a Mac PC?
Well 9/10 you are going to be wrong compared to the 1/10 wrong if you hit a Windows PC, god help you if you want to hit a Linux machine or even worse a Unix machine...:p
Which do you think looks better to the malware and which one creates less hassle for him/her?
The Windows PC of course...
its the easiest target of all and doing every little bit MS can reinforce the security of the kernel space is a Very Good thing.

Although all it will take is very critical bug to render this useless and what worse people can create frameworks where the pretty much all the hard work is done by the black hat author
all the potential malware author has to do is discover a bug that allow for his code to run in the kernel space (ring 0)
i applaud MS for doing this as this signifies that they are taking preventive measures to lessen attack from hackers...
all that i ask is to test it extensively to the point that you can be certain that this can be applied without any errors or bugs as this can bring this tech down...


and which is why im entering into this field...
A never ending battle means to me never ending job opportunities...:p
 

My Computer My Computer

Computer Manufacturer/Model Number
Tx2500z Tablet Pc/Homemade Server
OS
Windows 7 Ult x64(x2), HomePrem x32(x4), Server 08 (+VM), 08 R2 (VM) , SuSe 11.2 (VM), XP 32 (VM)
CPU
Turion X2 ultra (oh well came with laptop)/P4 @3.2 (yes P4)
Motherboard
IDK HP Motherboard / Intel DG965SS
Memory
OCZ Dual Channel 4GB kit/ 1gb Dual Channel
Graphics Card(s)
HD 3200 graphics /GMA x3100 (yay for intergrated!!)
Sound Card
Realtek HD Audio(mic working, well sort of)/Siig IC-70012
Monitor(s) Displays
built-in Hp 12" laptop screen/ Acer 19"
Screen Resolution
1280x800 /1440x900
Cooling
All Air Cooled
Mouse
Logi MX Rev. /MS Wheel Optical 1.1A /Logitech Optical Mouse
Internet Speed
College baby but its still routed through vpn to 1536k...
Other Info
love my wacom pen and pressure sensitivity...
wished it worked in 7, SUSE for that matter though
I think MS is doing better slowly although there are tons and tons people, forums and threads critisizing them... I think they are inspired by the criticism...:sarc:

Pardon Me, If I have stepped on someone's mind or tongue but Linux is not for Common user becuase it needs time to be dedicated extensively and for businesses it is a big No (I'm not talking about some companies) because as we work Adobe Indesign and Corel give out work for printing, then there may applications available equailent to these but then the printer also needs them, so it is practically a No... so windows is most used os and windows is most targetted os...
Atleast I appriciate the steps taken by MS...:)
 
I think MS is doing better slowly although there are tons and tons people, forums and threads critisizing them... I think they are inspired by the criticism...:sarc:

well technically not only that since they have been criticized for as long as i can remember security wise.
while it never reached the heights that vista reached i believe its more than that...
malware authors are getting more sophisticated and create better malware which might be able to create severe buffer overflows in non executable areas (response was DEP ) attacks on certain memory locations (response was ASLR) and now to prevent pool overruns (response will be safe unlinking)


Pardon Me, If I have stepped on someone's mind or tongue but Linux is not for Common user becuase it needs time to be dedicated extensively and for businesses it is a big No (I'm not talking about some companies) because as we work Adobe Indesign and Corel give out work for printing, then there may applications available equailent to these but then the printer also needs them, so it is practically a No... so windows is most used os and windows is most targetted os...
Atleast I appriciate the steps taken by MS...:)
of course not....
well at least speaking for myself (i use many OS'es at any time as you can see although i am starting to be bias for using 7 as my *main* os..;))

it can be for the *regular* consumer in the way that he has tasks that are abstract and dont require a specific application to be done...
lets say a Word processor
there are many out there and so if the user just wants to type a letter he can do so being given the right tools...

but being a profession relying on a piece of software i can see your reasoning...
Corels and Adobe's programs are very powerfully and flexible and they are great on professionals so if its good for you by all means you shouldnt do anything drastic to either compromise the security of your OS and/or stability.

right now even having a old OS you have protection as a minority (like i said in a thread ago there was i486 running win95 and its still running and even more so stable and protected because the operator practices safe handling of files, and does not install anything he can grab off the net(compared to the win98 those were crash a hour systems.....:p)
the best part is that according to the operator it has never went thru a reinstall..:shock:
 

My Computer My Computer

Computer Manufacturer/Model Number
Tx2500z Tablet Pc/Homemade Server
OS
Windows 7 Ult x64(x2), HomePrem x32(x4), Server 08 (+VM), 08 R2 (VM) , SuSe 11.2 (VM), XP 32 (VM)
CPU
Turion X2 ultra (oh well came with laptop)/P4 @3.2 (yes P4)
Motherboard
IDK HP Motherboard / Intel DG965SS
Memory
OCZ Dual Channel 4GB kit/ 1gb Dual Channel
Graphics Card(s)
HD 3200 graphics /GMA x3100 (yay for intergrated!!)
Sound Card
Realtek HD Audio(mic working, well sort of)/Siig IC-70012
Monitor(s) Displays
built-in Hp 12" laptop screen/ Acer 19"
Screen Resolution
1280x800 /1440x900
Cooling
All Air Cooled
Mouse
Logi MX Rev. /MS Wheel Optical 1.1A /Logitech Optical Mouse
Internet Speed
College baby but its still routed through vpn to 1536k...
Other Info
love my wacom pen and pressure sensitivity...
wished it worked in 7, SUSE for that matter though
I agree completely that linux is useful for common man's task like typing letters and browsing or some photoshopping or sorry rather to say gimping...(caution u may not find these words in dictionary as they are indian words):sarc:
 
A never ending battle means to me never ending job opportunities...:p

And U are to, Mr Assasino El Darco, right on the spot! hehe

Thats what some of us makes a living on, so halleluja for that. :geek:
 

My Computer My Computer

OS
Windows 7 RC build 7100 32 bit Danish
Back
Top