20.02.2013 Views

Windows RunTime - Hack In The Box 2012 - QuarksLAB

Windows RunTime - Hack In The Box 2012 - QuarksLAB

Windows RunTime - Hack In The Box 2012 - QuarksLAB

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

<strong>Windows</strong> 8 WinRT - Applications & Components WinRT - <strong>In</strong>ternals <strong>Windows</strong> Store Sandbox Conclusion<br />

Process isolation<br />

Chrome<br />

Low<strong>Box</strong><br />

. . .<br />

Microsoft modified _TOKEN structure<br />

PackageSid (unique per application)<br />

CapabilitiesSid<br />

Lowbox number entry<br />

Handle (?)<br />

New TOKEN::Flags TOKEN IS IN APP CONTAINER (0x4000)<br />

A new syscall NtCreateLow<strong>Box</strong>Token to make a very limited token<br />

SepAccessCheck was slightly modified

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!