|
Reverse engineering patches making disclosure a moot choice? |
|
|
|
Source: SecurityFocus - Posted by Pax Dickinson
|
When Microsoft released limited information on a critical vulnerability in Internet Explorer last month, reverse engineer Halvar Flake decided to dig deeper.
Using his company's tool for analyzing the differences in the patched and unpatched versions of a program, Flake pinpointed the portable networked graphics (PNG) vulnerability that Microsoft fixed with its latest update, locating the specific changes in less than 20 minutes.
"The PNG patch (is) excellent for a demo," he said. "It's a small (piece of code), which means quick comparison, and the bug is easily understandable for laymen, too."
While Flake--who is also CEO of security software firm SABRE Security--had been searching for a good way to show off the company's binary difference analysis tool BinDiff, the demonstration is just the latest example illuminating how fast patches can be reverse engineered to reveal vulnerable code.
Read this full article at SecurityFocus
Only registered users can write comments. Please login or register. Powered by AkoComment! |