04.04.2016 Views

A New CVE-2015-0057 Exploit Technology

asia-16-Wang-A-New-CVE-2015-0057-Exploit-Technology

asia-16-Wang-A-New-CVE-2015-0057-Exploit-Technology

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Introduction<br />

- About me (yu.wang@fireeye.com)<br />

- Background<br />

It is worth noting that in <strong>2015</strong> alone, we have repeatedly<br />

caught APT class zero-day attacks - all of which target the<br />

Win32K subsystem’s User Mode Callback mechanism. This leads<br />

us to re-visit this old-school kernel attack surface.<br />

This talk will focus on <strong>CVE</strong>-<strong>2015</strong>-<strong>0057</strong> and the User Mode<br />

Callback mechanism.

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!