black hat大会之后代码公布了。

Source: https://media.blackhat.com/bh-us-10/source/Cerrudo/Source.zip

PDF:
[1] https://media.blackhat.com/bh-us-10/whitepapers/Cerrudo/BlackHat-USA-2010-Cerrudo-Toke-Kidnapping%27s-Revenge-wp.pdf
[2] https://media.blackhat.com/bh-us-10/presentations/Cerrudo/BlackHat-USA-2010-Cerrudo-Toke-Kidnapping%27s-Revenge-slides.pdf

This new presentation will detail new design mistakes and security issues that can be exploited to elevate privileges on all Windows versions including the brand new Windows 2008 R2 and Windows 7. These new attacks allow to bypass new Windows services protections such as Per service SID, Write restricted token, etc. It will be demonstrated that almost any process with impersonation rights can elevate privileges to Local System account and completely compromise Windows OSs. While the issues are not critical in nature since impersonation rights are required, they allow to exploit services such as IIS 6, IIS 7, SQL Server, etc. in some specific scenarios. Exploits code for those services will be released. The presentation will be given in a very practical way showing how the new issues were found, with what tools, techniques, etc. allowing the participants to learn how to easily find these kind security issues in Windows operating systems.

http://www.blackhat.com/html/bh-us-10/bh-us-10-archives.html

NP编译的:http://pcsec.googlecode.com/files/pr.rar

CharlieCollin_610x360

两名网络安全专家米勒及马利纳,30日在拉斯维加斯的黑客网络安全大会上公开iPhone这个保安漏洞。他们会展示只要传送大量空白短信到 iPhone,便能控制手机所有功能,包括拨电话、浏览网页、开启相机及扩音器,最重要是可操控传送更多短信,进一步传播病毒。米勒表示,若用家收到只显 示出一个细小正方形的短信,即表示手机已被入侵,建议用户立即关机。

阅读全文

[zz]bh-usa-09

From:http://hi.baidu.com/hi%5Fheige/blog/item/f9c6a0b691d78bfd31add1a0.html

http://www.blackhat.com/html/bh-usa-09/bh-usa-09-archives.html [thx flyhat]

希望大家不要看到某些’吐血’的pp