All things SMS, System Center Configuration Manager, Active Directory, Group Policy, Virtualization, Security, Gadgets, Technology, and the Daily Thoughts of an SMS Engineer named Anthony Clendenen.

The Daily Ramblings of an SMS Engineer

Hacker promises month of browser holes

July 06, 2006

If you are not familiar with Donna or her blog you are MISSING out.  Well, if you are into computer security at all.  I remember her back from my days on dslreports.com. 

I am not sure how to feel about Metasploit but I have to applaud them in part on this move.  Actually notifying the vendors before hand AND not releasing code that will allow anyone to use it as a RCE.

Hacker promises month of browser holes
The creator of a widely used hacking tool has promised to publish details of one browser security hole per day during July.
HD Moore, the hacker behind the Metasploit toolkit, started his Month of Browser Bugs on 1 July by publishing software that demonstrates bugs in a variety of Web browsers.
Moore said he decided to do the month of bugs in order to show the kinds of results he's generated using a variety of automated security testing tools known as "fuzzers."
"This information is being published to create awareness about the types of bugs that plague modern browsers and to demonstrate the techniques I used to discover them," Moore said in a blog post. The code does not include details that would allow attackers to run unauthorised code on a victim's machine, Moore said.
More at http://www.techworld.com/security/news/index.cfm?newsID=6383

Donna's SecurityFlash : Hacker promises month of browser holes.

Filed under: ,

Comments

  • No Comments