FEATURED VIDEO

Sponsored By:


SLIDE SHOWS
ChannelWeb's Top 25 Execs of 2008 know that reading is fundamental. Here are their picks for books to feed your brain.
There were plenty of high-powered movers and shakers that made a big impact on the channel in 2008. Here's a look at who made our list of the 25 most influential.
It's time again to agonize over what to get the techie in your life. With the holidays closing in fast, here are 25 gift ideas sure to wow any techie.
INSIDE CHANNELWEB
techcareers logo Search Jobs:


  

Post Resume|Employers

Recent Post:


Regional Desktop Coordinator
BP seeking Regional Desktop Coordinator in Houston, TX
spacer

Windows Vista Brought Down In Hacker Challenge


By Stefanie Hoffman, ChannelWeb
3:15 PM EDT Mon. Mar. 31, 2008
While it put up a strong fight, the notebook running Windows Vista Ultimate finally failed the annual CanSecWest hacker challenge Friday when a security researcher successfully exploited a critical error located in Adobe Systems Flash Player.

A Fujitsu U810 running Windows Vista was the second system to be hacked, leaving a Sony Vaio notebook running the Ubuntu distribution of Linux to emerge unclaimed at the contest's end.

The Vista hack was part of the three-day 2008 "Pwn to Own" hacker challenge, held at the CanSecWest conference in Vancouver, B.C. March 26-28. The contest included three laptops -- a MacBook Air running OS X 10.52, the Sony Vaio running Ubuntu 7.10, and the Fujitsu U810 running Vista Ultimate SPI -- running the "most up to date and patched installations," which were pitted against each other to determine which machine is most hack resistant.

Researcher Shane Macaulay won a $5,000 cash prize for breaking into a Fujitsu U810 running Vista when he exploited an unidentified Adobe Flash Player vulnerability. Macaulay was assisted by Derek Callaway, of Security Objectives, and Alexander Sotirov, an independent researcher.

Friday's triumphant hack was the contest's second successful exploit. Charlie Miller, an analyst for Security Evaluators LLC, won the notebook and a $10,000 cash prize when he infiltrated a MacBook Air on Thursday by exploiting a vulnerability in the Safari Web browser. No one, however, claimed the first day's prize of $20,000, which required the researchers to remotely exploit the detected vulnerabilities without any user interaction.

The contest was kicked off on Wednesday when all three machines were exposed to viruses and other malware before the contestants attempted to exploit the vulnerabilities.

According to the Tipping Point Website, the purpose of the contest was to "responsibly unearth new vulnerabilities within these systems so that the affected vendors can address them." All subsequent exploits were handed over to the affected vendors following the challenge.

Altogether, the hackers were required to "read the contents of a designated file on each system through exploitation of a zero-day code execution vulnerability." The first contestant to hack into a system was allowed to keep the notebook, in addition to receiving designated cash prizes. 3Com's Tipping Point Technologies Zero Day Initiative put up the cash prizes for the players.


RATE THIS ARTICLE Worse 1 2 3 4 5 Better
CHANNELWEB MARKETSPACE >> (Sponsored Links)
Channelweb : Promofinder
FEATURED PROMOTIONS
90% OFF Aladdin SafeWord Starter Pack - Act Now!!
Make more money with SafeWord and Aladdin now that we've joined teams. Order a SafeWord Two-Factor Authentication Starter P...
Get More in Q4 from Kaspersky Lab
Sell Kaspersky products and earn dollars for every sale of 10 or more nodes. That’s right! Every sale you make will put extra...
LATEST NEWS >>
December 01, 2008 06:50 PM
December 01, 2008 04:19 PM
December 01, 2008 03:40 PM
December 01, 2008 11:55 AM
December 01, 2008 10:39 AM
RELATED BLOG >>
Photo
The Test Center's most recent threat watch.
ADVERTISEMENT




CHANNEL SERVICES >>