Nytro Posted July 26, 2012 Report Posted July 26, 2012 Smashing the AtomAbout MeSecurity Researcher at Azimuth SecurityPast presentationsHeaps of Doom (/w Chris Valasek)Kernel Attacks Through User-Mode CallbacksKernel Pool Exploitation on Windows 7Generally interested in operating system internals and bug findingRecent focus on embedded platformsThis TalkA rather unusual Windows bug classAffects Windows atoms3 vulnerabilities patched 2 days ago in MS12-041Allows a non-privileged user to run code in the context of a privileged processE.g. the Windows login manager (winlogon)No need to run arbitrary code in Ring 0DEP/ASLR? SMEP? No problem!Download:http://mista.nu/research/smashing_the_atom.pdf Quote