<?xml version="1.0" encoding="UTF-8" standalone="yes"?>
<feed xmlns="http://www.w3.org/2005/Atom">
    <id>http://www.cocomment.com/comments/raz0r</id>
    <title>coComments related to raz0r</title>
    <link rel="self" href="http://www.cocomment.com/comments/raz0r"/>
    <rights>Copyright 2007 coComment.com</rights>
    <updated>2009-11-23T03:55:16.241+01:00</updated>
    <icon>http://www.cocomment.com/images/logo4rss.gif</icon>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=2381755&amp;comment_id=55782328</id>
        <title>Yes!!!  Send this man to DC an</title>
        <author>
            <name>raz0r</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=2381755&amp;comment_id=55782328"/>
        <content>Yes!!!  Send this man to DC and let him have at Congess.

Love the "Lead from the front" declaration.</content>
        <published>2009-02-05T21:31:07.759+01:00</published>
        <updated>2009-02-05T21:31:07.759+01:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1376351&amp;comment_id=26323002</id>
        <title>I read about this yesterday.  </title>
        <author>
            <name>raz0r</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1376351&amp;comment_id=26323002"/>
        <content>I read about this yesterday.  To clear up a bit, she gets 10 days for a 10 month work schedule.  She didn't miss just 20 days though.  She had missed 10 days within the first month of the school year and 20 by January.  By the end of the school year, it was 30 days.

http://www.palmbeachpost.com/treasurecoast/content/tcoast/epaper/2008/04/30/m1b_teacher_0501.html</content>
        <published>2008-05-02T18:30:33.141+02:00</published>
        <updated>2008-05-02T18:30:33.141+02:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1351096&amp;comment_id=25463394</id>
        <title>But somehow it only counts for</title>
        <author>
            <name>raz0r</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1351096&amp;comment_id=25463394"/>
        <content>But somehow it only counts for vista eh? The hackers said it was cross platform. Adobe after hearing about the exploit updated flash for every platform.

Again, the reason why linux wa still up there is because once an exploit is used it can’t be used on another system.

LordDaMan on April 18, 2008 at 11:39 AM

And yet it was a Vista box that fell to it first.  So much for DEP and UAC. /sarc

What I haven't seen addressed regarding pwn2own is the privileges of the accounts on the Mac or Vista box.  I'm going to guess it was default accounts (which would mean super-user).  Bad,bad,bad.  Never, ever do that.  Create a regular user account.

If so, I'd like to know if these same exploits would work against users with reduced privileges.  My guess is that the exploit might fire off, but fail since the exploit process would be running with the same reduced privileges as the user.</content>
        <published>2008-04-18T19:22:09.655+02:00</published>
        <updated>2008-04-18T19:22:09.655+02:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1351096&amp;comment_id=25461645</id>
        <title>Due to a bug in flash, which a</title>
        <author>
            <name>raz0r</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1351096&amp;comment_id=25461645"/>
        <content>Due to a bug in flash, which also could be exploited in every os flash run on. Only once an explout works it’s taken out and can’t be applied to other platforms

LordDaMan on April 17, 2008 at 11:22 AM

Without the exploit code/steps being published, no one has any way of verifying that this exploit is cross platform.  As of right now, it is only known that it involved Flash (and some javascript) on a Vista box, to which I surmise also involved IE7.

The thing to note from pwn2own was that both exploits were web based against what most folks would consider safe applications.  No firewall to help you now.  Not even application firewalls as the browser and Flash would most likely be green lighted.

Welcome to Web 2.0 people.</content>
        <published>2008-04-17T18:12:31.765+02:00</published>
        <updated>2008-04-17T18:12:31.765+02:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1351096&amp;comment_id=25461288</id>
        <title>&lt;blockquote&gt;DaveS on April 16,</title>
        <author>
            <name>raz0r</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1351096&amp;comment_id=25461288"/>
        <content>&lt;blockquote&gt;DaveS on April 16, 2008 at 10:55 PM&lt;/blockquote&gt;

Wow.  Not even close to the truth.

Let's both of us drop in an nVidia card, install from bare metal, and see who gets 3D first.

Shoot, I'll race you to see who gets their box up and running first.</content>
        <published>2008-04-17T14:15:01.407+02:00</published>
        <updated>2008-04-17T14:15:01.407+02:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1351096&amp;comment_id=25461277</id>
        <title>&lt;blockquote&gt;DaveS on April 17,</title>
        <author>
            <name>raz0r</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1351096&amp;comment_id=25461277"/>
        <content>&lt;blockquote&gt;DaveS on April 17, 2008 at 3:42 AM&lt;/blockquote&gt;

That's great for dev (app and db types) guys, but doesn't mean anything for the small mom and pops or home users.  Or the multimedia crowd either.</content>
        <published>2008-04-17T14:08:34.526+02:00</published>
        <updated>2008-04-17T14:08:34.526+02:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1349954&amp;comment_id=25461223</id>
        <title>Like for instance loading Phot</title>
        <author>
            <name>raz0r</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1349954&amp;comment_id=25461223"/>
        <content>Like for instance loading Photoshop CS3 would start faster on Vista 64 than Vista 32 and both would load faster than Windows XP.

Chakra Hammer on April 16, 2008 at 5:43 PM

Wait till they start shipping 64-bit apps.  You'll be asking how come they didn't do this years ago.</content>
        <published>2008-04-17T13:27:30.944+02:00</published>
        <updated>2008-04-17T13:27:30.944+02:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1349954&amp;comment_id=25459948</id>
        <title>Vista has been out only a litt</title>
        <author>
            <name>raz0r</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1349954&amp;comment_id=25459948"/>
        <content>Vista has been out only a little over a year and its trouncing OSX..

http://marketshare.hitslink.com/report.aspx?qprid=10

Chakra Hammer on April 15, 2008

But how many of those Vista boxes have had the drives formatted and XP or some other OS installed?  According to recent whitepapers from Gartner, Forrester, etc.; most Vista boxes (in business environs) have been turned into XP boxes.

Vista is just now starting to get traction among the students where I work.  XP is the main OS with OSX and Vista slugging it out for second place.  A very distant second place.

Let them have at it.  I'll stick with my OpenSuse install (64-bit) running Compiz Fusion.</content>
        <published>2008-04-16T17:37:01.187+02:00</published>
        <updated>2008-04-16T17:37:01.187+02:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1006160&amp;comment_id=18887523</id>
        <title>Well ain't that sage advice.  </title>
        <author>
            <name>raz0rsvids</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=1006160&amp;comment_id=18887523"/>
        <content>Well ain't that sage advice.  Not.  Let's look at the ballot.  That person has a white sounding name (or black, etc.), so I'll vote for them, nevermind if they're actually qualified to perform the duties of the office.  Seattle, do yourself a favor and do not vote for her.  She's an idiot.</content>
        <published>2007-09-18T16:15:58.825+02:00</published>
        <updated>2007-09-18T16:15:58.825+02:00</updated>
    </entry>
    <entry>
        <id>http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=913230&amp;comment_id=17691834</id>
        <title>Coach,

Goatse is nothing to t</title>
        <author>
            <name>(anonymous)</name>
        </author>
        <link rel="self" href="http://www.cocomment.com/sidebar?object=people&amp;context=explore&amp;mode=detail&amp;id=raz0r&amp;conv=913230&amp;comment_id=17691834"/>
        <content>Coach,

Goatse is nothing to tubgirl.  Beth got me on that one.  Now I have to look through squinted eyes when I follow a link at Beth's.  Keep the mouse hovered over the "close tab" of the window for emergency closing of offending window.</content>
        <published>2007-07-25T04:17:41.864+02:00</published>
        <updated>2007-07-25T04:17:41.864+02:00</updated>
    </entry>
</feed>
