Windows Class IDs Create Serious Vulnerability
Remember the scene in "Mission Impossible 2" where the guy in the plane rips off the mask and exposes Ethan Hunt's nemesis? So too are Windows users also having problems distinguishing between good and bad applications. As security analyst Georgi Guninski has recently shown, malicious users can play a devastating trick on Windows systems using a CLSID extension, and thereby disguise a potentially dangerous COM object as a lowly .TXT file.? (more...)
August 1st, 2009





Home