Arthur Posted November 19, 2011 Posted November 19, 2011 Update on Ars Technica story... I've gotten clarification from Peter Kleissner on the nature of the exploit, and have updated the story. Stoned Lite uses an attack on legacy BIOS, not UEFI, so systems "built for Windows 8" would not be affected by the current version of the exploit. The exploit also works on Windows 7. It should come as no surprise, that turning off the Secure Boot option in your UEFI BIOS, prevents Secure Boot from doing its job.
ZeroHour Posted November 19, 2011 Posted November 19, 2011 If only it was true... http://i.imgur.com/U6H5j.png I love the fact its tomwarren trying to slate other writers, he is not great to say the least and Ars is normally of a far far higher standard.
mthomas08 Posted November 19, 2011 Posted November 19, 2011 Haven't you just described Apple there with their ring fenced hardware and software? I'd prefer to wait and see when it eventually comes out. All these sites thrive on rumour, speculation and such. Agreed, looks like MS is following the Apple path. Still, if it does happen I would like to see what insults Apple lovers use then?
Arthur Posted November 26, 2011 Posted November 26, 2011 Peter Kleissner has posted a video showing his bootkit in action. This shows how to use Stoned Lite to get SYSTEM rights on Windows 8 through the cmd privilege escalation (done by a driver loaded by the bootkit). The infector is just 14 KB of size and bypasses the UAC.
Recommended Posts
Create an account or sign in to comment
You need to be a member in order to leave a comment
Create an account
Sign up for a new account in our community. It's easy!
Register a new accountSign in
Already have an account? Sign in here.
Sign In Now