Awesome Techs

First Windows 7 zero day exploit found

by oDx on Nov.14, 2009, under Computer, Security

So  the first Zero day a.k.a. 0day vulnerability for windows 7. The details of this exploit were posted on the Full Disclosure mailing list.

The newly found bug was discovered by Laurent Gaffie. You can view the Details and POC here.

It is caused by a flaw in the Server Message Block (SMB) protocol that forms the backbone of Windows file sharing. When triggered, the flaw results in an infinite loop that renders the computer useless, or at least more useless than it was before when Windows was still running.

And till now Microsoft don’t have any patches for this. The author recommends Closing the SMB feature and ports, until a real audit is provided. The vulnerability hits Windows 7 and Windows Server 2008 R2.

Since this exploit is just for crashing the system, you don’t have to panic about losing sensitive data. And for the same reasons black-hat hackers won’t be much interested in this exploit.

The odd thing is, this exploit has been spotted just a day after the operating system was declared risk free in Microsoft’s monthly security bulletin. :P

Update:Microsoft Issues SMB Vulnerability Advisory‎ for Windows 7Read it Here.

  • Share/Bookmark
:, , , , ,

Leave a Reply

Get Adobe Flash playerPlugin by wpburn.com wordpress themes

Looking for something?

Use the form below to search the site:

Still not finding what you're looking for? Drop a comment on a post or contact us so we can take care of it!

Visit our friends!

A few highly recommended friends...