One of the most amazing things I’ve ever seen…

April 17, 2008 – 6:36 pm

I don’t write exploits or work in security, I wish I did but that isn’t my particular talent. Maybe in the future I’ll start playing at Dambala, SPI, or ISS and see what I can do. Until then I’m going to sit and stare in awe at the bit of hackery Mark Dowd[0] at IBM just released:

The summary is an easy read, I haven’t tackled the actual exploit yet.

[0] – I think he just became the thing that is hiding under the bed waiting for you to forget to check a malloc. There will be stories that TA’s tell students for ages, “Remember to check your mallocs or Mark Dowd will get you!”

