>ANY windows system, updated with the latest security patches is VULNERABLE to CODE INJECTION exploit AtomBombing attack abuses the system-level Atom Tables, a feature of Windows that allows applications to store information on strings, objects, and other types of data to access on a regular basis. This exploit can enable -Injecting malicious codes to ANY windows version and release -MAN IN THE MIDDLE (MITM) attack on web browsers (regardless of the one you use) -DECRYPT YOUR PASSWORDS
>No patch >NO PATCH can fix this exploit, because it does not rely on flawed codebase, it utilizes on How windows works
IT'S OVER, LADS MICROSOFT IS FINISHED AND BANKRUPT WINSHILL DAMAGE CONTROL FORCE WILL ARRIVE WITH NO DEFENCE POOINLOOTELLA ON SUICIDE WATCH DELETE YOUR WINDOWS VM RIGHT NOW
>relies on tricking a user into running a malicious executable
Daniel Perez
>Windows
Brandon Carter
Lesson learned
Grayson Green
>POOINLOOTELLA
Juan Adams
Finally we can exploit the security holes and become millionaires!
Gabriel James
>Finally
Lincoln Wood
because that never has happened before.
Grayson Price
Hold up I have Windows on a virtual machine, but it doesn't have any network interface. Only a shared folder. No risks, right?
Nathaniel Cruz
I know of 2 similarly unfixable bugs in Linux and 1 of them also applies to Darwin.
I'll never release the info about it though.
Wyatt Lewis
I also know know 7 exploits of a similar situation on osx that I will never release
Joseph Harris
I call microsoft linux or bsd in 5 years
Benjamin Jackson
Probably bsd, Can't make a propriety linux distro.
Eli Turner
>doesn't have any network interface You should be okay
Nolan Gray
then you make a free one and add propriety shit to in in a non-free repo. Why should they care if the literal base of the system is free if they can add a non-free DE, drivers and apps to it.
Tyler Lee
Aight. I only use it for illustrator, I should probably ditch it sometime. I just wish Wine got better.
Colton Martinez
x is finsihed and bunkrupt x's ceo is on suicide watch i am fucking hilarious
Tyler Hall
>My dad works for Nintendo!
David Cox
How bad is it? The article looks legit troublesome. I have windows XP running in virtual machine
Grayson Robinson
now you're getting the hang of it!
Jaxson Martinez
So yeah, how about those linux vulnerabilities?
Logan Taylor
lmao
Jayden Cox
Fixed
Gabriel Kelly
I don't buy into the "UNFIXABLE" or "UNPATCHABLE" hype. It is basically the clickbait of exploit articles.
We're all coders here. We all know there isn't much that can't be done. Considering we won't have the source available, and we don't have their full component design available. Trying to claim what is and isn't patchable from our perspective isn't the best of ideas.
Colton Lee
B-b-but my ten years
Gavin Young
All of them? Even the ones not yet found?
Camden Turner
nice try linturds
Thomas Lewis
>We're all coders here. >coders
>windows source >available
First post in Sup Forums?
Dylan Turner
>Bothell, Washington >BOT HELL
Chase Cruz
>only affects atom tablets WOW IT'S FUCKING NOTHING
Ryder Cruz
Better than having an unfixable KNOWN EXPLOIT
Blake Hughes
>Wintoddler tier reading comprehension
Camden Martin
Lmao windows hehehe
Aiden Cooper
nuh nuh bud, the AddAtom kernel32 function and friends.
>"Unfortunately, this issue cannot be patched since it does not rely on broken or flawed code – rather on how these operating system mechanisms are designed," the researchers said.
Jaxson Watson
You mean you're not a coder?
Get the fuck out.
Dominic Barnes
>Claims I have poor reading comprehension >Didn't even read the article. What?
David Miller
>coder I'm not XDD
Hunter Williams
>what Go back to primary school
Jayden Gonzalez
everything is patchable, but we have no idea how much of the code they will have to rewrite , and how poorly they will do it this time.
Kayden Davis
Can you please explain
Oliver Parker
I haven't updated my windows 7 for a year. Anything I'm missing? Guess not
William Sanchez
>Any version of windows is vulnerable
Anthony Ward
if the vulnerability is caused by the design not the implementation then the system has to be redesigned or disabled, breaking compatibility with existing programs
Ethan Wright
>...updated with the latest security patches is VULNERABLE Doesnt this mean my un-updated one isn't?
Mason Watson
That article's been proven to be fake years ago.
The guy has never worked for Microsoft, he's a former Google employee.
post yfw win32 will be deprecated in your life time
Justin Hughes
FIX RELEASED SEE WEBM >FIX RELEASED SEE WEBM FIX RELEASED SEE WEBM >FIX RELEASED SEE WEBM FIX RELEASED SEE WEBM >FIX RELEASED SEE WEBM
Evan Powell
Because you keep trash-talking it user :(
Gabriel Walker
>rubbish bin Is this real in England?
Carter Clark
Surprised only one reader actually knows enough about security to realize this. It's literally no worse than the "hacking technique" that has already existed on Windows forever: rely on stupid users who blindly allow admin prompts or ignore their browser updates. It won't work unless either the user's an idiot, or if the computer's already been owned with a different vulnerability
Jaxson Gray
>rubbish bin are you england faggots for real?
Adam Powell
/thread
Camden Hill
BIN THAT WIN
Kayden Diaz
>Unfortunately, this issue cannot be patched since it does not rely on broken or flawed code – rather on how these operating system mechanisms are designed
Are you dumb? It literally means that it isn't a bug, part of the operating system has to be recoded. In other words it *CAN* be patched, it can't be hotfixed.
Also why the fuck do I literally see a dozen threads per day about "pooinloo" and I literally post a single cumskin thread and get banned. Fuck you white ass faggots and your privilege.
Joshua Brooks
Singles check'd
Brody Harris
Calm down pajeet
Dominic Stewart
>cumskin wat
Jack Russell
>. It won't work unless either the user's an idiot All idiots use windows
Zachary Reed
No, it's a fundamental system mechanic that cannot be fixed without an all new OS that isnt windows
Isaac Gomez
Noice
Cameron Campbell
>32 posters Stop forcing this fucking shitty meme
Liam Brooks
nu uh, some idiots use MACS
hahaha am i a memester yet, guies? x^D
Ayden Sanchez
>Also why the fuck do I literally see a dozen threads per day about "pooinloo" and I literally post a single cumskin thread and get banned. Fuck you white ass faggots and your privilege.
Funny you mention that! I have made soo many pooinloo posts in Windows threads or directed at Windows users (despite being one) and never got a ban but after out of the like the 10 times I said it to a Linux thread I was banned 3 times.
Mods clearly are Linux users since the clear display of such fragile egos.
Aaron Edwards
...
Samuel Bailey
Seeing the exploit requires an application to be modifying another applications entries in the Atom tables on simple solution could be to add a user prompt to allow such activity from an application. One of those "Malware app X wants to access data from Chrome, do you want to allow it?"
It would break apps that need to be updated to handle the blocked exception, but it probably won't break many apps because that behavior is probably uncommon.
By the sounds of things it is also possible to inject code to be executed into the tables, which probably isn't by design, in fact it is pretty much insane to allow executable code into be entered into your database, so improved sanitization may also be available for implementation.
Christian Stewart
Semantics. Still an exploit UNTIL someone bothers to fix it.
>Mitigation >the direct mitigation answer would be to tech-dive into the API calls and monitor those for malicious activity.
Michael Torres
start run rundll32.exe kernel32.dll AddAtom
no error = function exists.
Austin Sanchez
Trips never lie
Hunter Anderson
who would the user know if an application is supposed to use atoms or not?
most Windows users would just click allow
Ayden Hernandez
UNFIXABLE LINUX VULNERABILITY HAS BEEN DISCOVERED
>ANY Linux system, updated with the latest security patches is VULNERABLE to CODE INJECTION exploit FileBombing attack abuses the file system, a feature of Linux that allows applications to store information on strings, objects, and other types of data to access on a regular basis. This exploit can enable -Injecting malicious codes to ANY linux version and release -MAN IN THE MIDDLE (MITM) attack on web browsers (regardless of the one you use) -DECRYPT YOUR PASSWORDS
>No patch >NO PATCH can fix this exploit, because it does not rely on flawed codebase, it utilizes on How Linux works
IT'S OVER, LADS STALLMAN IS FINISHED AND BANKRUPT LINSHILL DAMAGE CONTROL FORCE WILL ARRIVE WITH NO DEFENCE CUMSKINELLA ON SUICIDE WATCH DELETE YOUR LINUX VM RIGHT NOW
>literally this thread
Samuel Nguyen
>most Windows users would just click allow That's their problem. Like how when you get UAC asking if you want an application to do stuff in the System areas. Applications can do all sorts of shit with that access but most of the time you're going to click Okay anyway. Often they genuinely need it.
Anthony Barnes
Loonix pajeet BTFO
Chase Baker
then someone finds a variation to the attack that doesn't get detected
Leo Lewis
linux problem: "it's a bug, fixed upstream hours ago" windows problem: "it's a feature"
Blake Bennett
>mfw using XP
Jaxon King
Wincucks BTFO
Robert Anderson
can somone create a worm with this which installs loonux and removes windows partition? please work on it