Feature

Windows Phone 7 RTM

By pthurrott

Well, the day has finally arrived. I was told very early on that Windows Phone would most likely be released to manufacturing (RTM)... »

 

September 2010
M T W T F S S
« Aug    
 12345
6789101112
13141516171819
20212223242526
27282930  

Understanding DEP as a mitigation technology part 2

Friday, June 12, 2009
By

In our previous blog post, we explained how DEP works and how to determine if / how a process opted-in to DEP. Now we will demonstrate how DEP can be used to mitigate the risk of a real-world attack.


We published a security advisory in February describing an Excel vulnerability in fully-patched Excel being used in limited targeted attacks. As we noted in the SRD blog, the exploits target Office 2007 running on Windows XP. We will demonstrate now how to opt Excel in to DEP to help mitigate attempts to exploit this vulnerability.


First, why does Excel not opt-in to DEP by default?


If you look at the sysmain.sdb on Windows XP SP2 or the “DLL Characteristics” header value of iexplore.exe (IE 7) or excel.exe (or any Office application) you can see that these processes do not opt-in to DEP by default. Both IE 7

Tags: , , , , , , , ,

I love to hear your comments and suggestions.