Author Topic: CVE-2015-0057  (Read 1727 times)

0 Members and 1 Guest are viewing this topic.

KingCasra

  • Guest
CVE-2015-0057
« on: March 02, 2015, 05:24:16 pm »
Does anybody know how to get the binary files associated with this? Is it on Metasploit or can I just download it standalone?

Offline Lapsenis

  • NULL
  • Posts: 1
  • Cookies: 0
    • View Profile
Re: CVE-2015-0057
« Reply #1 on: March 04, 2015, 03:44:50 pm »
I don't think any exploits are available for public.

KingCasra

  • Guest
Re: CVE-2015-0057
« Reply #2 on: March 04, 2015, 05:12:45 pm »
Do you know who the author is? I'm trying to reference his research in a project I was just hoping something would have been public.

Offline ZiLOG

  • /dev/null
  • *
  • Posts: 14
  • Cookies: 4
    • View Profile
Re: CVE-2015-0057
« Reply #3 on: March 05, 2015, 07:16:21 am »
Udi Yavo from enSilo has been credited with disclosing the vulnerability. I've found the blog post below to contain the most useful technical information regarding the vulnerability, including a proof-of-concept video, which uses a standalone executable. As of today there is no public release of it for Metasploit.

http://breakingmalware.com/vulnerabilities/one-bit-rule-bypassing-windows-10-protections-using-single-bit/

KingCasra

  • Guest
Re: CVE-2015-0057
« Reply #4 on: March 05, 2015, 04:33:46 pm »
Thanks man. I really appreciate that.