Author Topic: [Software Exploit - By Google] ESET Remote Exploit  (Read 1034 times)

0 Members and 1 Guest are viewing this topic.

Offline xor

  • Peasant
  • *
  • Posts: 59
  • Cookies: 32
    • View Profile
[Software Exploit - By Google] ESET Remote Exploit
« on: June 24, 2015, 04:29:16 am »

Most anti viruses emulate a stack for the first few cycles of program execution to apply signature analysis.
Google recently discovered that ESET has a vulnerability in this process leading to a remote code execution on the affected hosts.


This was reported to ESET only 6 days ago.
Google released a proof of concept exploit in the article below.

https://code.google.com/p/google-security-research/issues/detail?id=456


If you are using ESET, or your corporation is using ESET, get them to update now!


-- xor
« Last Edit: June 24, 2015, 04:29:40 am by xor »

Offline proxx

  • Avatarception
  • Global Moderator
  • Titan
  • *
  • Posts: 2803
  • Cookies: 256
  • ФФФ
    • View Profile
Re: [Software Exploit - By Google] ESET Remote Exploit
« Reply #1 on: June 25, 2015, 05:24:41 pm »
Most anti viruses emulate a stack for the first few cycles of program execution to apply signature analysis.
Google recently discovered that ESET has a vulnerability in this process leading to a remote code execution on the affected hosts.


This was reported to ESET only 6 days ago.
Google released a proof of concept exploit in the article below.

https://code.google.com/p/google-security-research/issues/detail?id=456


If you are using ESET, or your corporation is using ESET, get them to update now!


-- xor
That is fucking awesome:)
Thanks for sharing.
Wtf where you thinking with that signature? - Phage.
This was another little experiment *evillaughter - Proxx.
Evilception... - Phage

Offline Phage

  • VIP
  • Overlord
  • *
  • Posts: 1280
  • Cookies: 120
    • View Profile
Re: [Software Exploit - By Google] ESET Remote Exploit
« Reply #2 on: June 25, 2015, 05:49:09 pm »
Our good Turboborland found this vulnerability 6 months ago. Taviso is just claiming he found it. #fgt
« Last Edit: June 25, 2015, 05:52:20 pm by Phage »
"Ruby devs do, in fact, get all the girls. No girl wants a python, but EVERY girl wants rubies" - connection

"It always takes longer than you expect, even when you take into account Hofstadter’s Law."

Offline 0E 800

  • Not a VIP
  • VIP
  • Baron
  • *
  • Posts: 895
  • Cookies: 131
  • • тнε ιηтεяηεт ιs мү яεcүcℓε-вιη •
    • View Profile
Re: [Software Exploit - By Google] ESET Remote Exploit
« Reply #3 on: June 25, 2015, 06:52:09 pm »
Incredible. I use ESET on all my boxes. Thanks for share, 1▲
The invariable mark of wisdom is to see the miraculous in the common.