Interesting People mailing list archives
Best. Vista. exploit. ever!
From: David Farber <dave () farber net>
Date: Fri, 9 Feb 2007 12:30:00 -0500
Begin forwarded message: From: Ethan Ackerman <eackerma () u washington edu> Date: February 9, 2007 12:07:51 PM EST To: David Farber <dave () farber net> Subject: Best. Vista. exploit. ever! Greetings Dave, The SANS blog has a nice summary of an innovative exploit in MS Vista's speech recognition implementation - a malicious audio file can be used to give user-level control. It does so not in the usual buffer overflow or mileading header corruptions, but by actual voice recognition of spoken scripting commands.Playing a sound file featuring spoken commands to open a malicious website
http://isc.sans.org/diary.html?storyid=2148 - including a MSFT confirmation. (als written up on zdNet - http://blogs.zdnet.com/Ou/? p=420&tag=nl.e589 )
I wonder what William Gibson would have to say about oral viruses? ------------------------------------------- Archives: http://archives.listbox.com/247/ Powered by Listbox: http://www.listbox.com
Current thread:
- Best. Vista. exploit. ever! David Farber (Feb 09)
- <Possible follow-ups>
- Re: Best. Vista. exploit. ever! David Farber (Feb 09)
- Re: Best. Vista. exploit. ever! David Farber (Feb 09)