Exploits, Vulnerabilities & PoCs Got information about the above?

InterN0T Affiliates:
EvilZonepy1337

SirCapsAlot.NET

Reply
 
LinkBack Thread Tools Display Modes
  #1  
Old 27th January 2010, 20:23
SiG SiG is offline
 
Join Date: Jan 2010
Location: Europe
Posts: 11
Rep Power: 3
Reputation: 1
SiG is an unknown memory address at this point
0-day exploit for all Windows versions, gain kernel priv

All 32bit x86 versions of Windows NT released since 27-Jul-1993 are believed to
be affected, including but not limited to the following actively supported
versions:

- Windows 2000
- Windows XP
- Windows Server 2003
- Windows Vista
- Windows Server 2008
- Windows 7
- etc.

Source:



Code:
http://www.opensc.ws/trojan-malware-releases/9454-0-day-exploit-all-windows-versions-gain-kernel-priv.html




Code:
http://packetstormsecurity.org/1001-exploits/mswinnt-pwn.txt
Download:



Code:
http://www.speedyshare.com/files/20598414/POC_-_EXPLOIT_KiTrap0D.zip
__________________
Just focus...

Reply With Quote
  #2  
Old 29th January 2010, 10:34
MaXe's Avatar
Studying shellcode..
 
Join Date: Jun 2008
Location: Sweden - Ljusdal
Posts: 3,405
Blog Entries: 36
Rep Power: 10
Reputation: 198
MaXe has made his way up the systemMaXe has made his way up the system
Re: 0-day exploit for all Windows versions, gain kernel priv

/Approved.

This exploit is the very debated vulnerability in Windows which has existed for over 10 years.

I believe there is or will be a Metasploit module for this very soon.
__________________

Quote:
Originally Posted by Norph
MaXe, I really doubt that you are able to browse ANY site more than 2 minutes before you start pwning it xD
Reply With Quote
  #3  
Old 29th January 2010, 11:00
 
Join Date: Sep 2009
Posts: 84
Rep Power: 4
Reputation: 1
ccoder is an unknown memory address at this point
Re: 0-day exploit for all Windows versions, gain kernel priv

MaXe i think 16 years , from windows 3.1
__________________
I love InterN0T
Reply With Quote
  #4  
Old 2nd February 2010, 16:59
MaXe's Avatar
Studying shellcode..
 
Join Date: Jun 2008
Location: Sweden - Ljusdal
Posts: 3,405
Blog Entries: 36
Rep Power: 10
Reputation: 198
MaXe has made his way up the systemMaXe has made his way up the system
Re: 0-day exploit for all Windows versions, gain kernel priv

Quote:
Originally Posted by ccoder
MaXe i think 16 years , from windows 3.1

Quote:
Originally Posted by MaXe View Post
... which has existed for over 10 years.
I said over 10 years Over == Above "where" (16 > 10) == (16 is above 10).
__________________

Quote:
Originally Posted by Norph
MaXe, I really doubt that you are able to browse ANY site more than 2 minutes before you start pwning it xD
Reply With Quote
  #5  
Old 2nd February 2010, 19:37
 
Join Date: Sep 2009
Posts: 84
Rep Power: 4
Reputation: 1
ccoder is an unknown memory address at this point
Re: 0-day exploit for all Windows versions, gain kernel priv

anyone testedthis exploit ? i have tested it on winxp sp2 when run the exe file the system crashed and restart :D
__________________
I love InterN0T
Reply With Quote
  #6  
Old 3rd February 2010, 10:49
MaXe's Avatar
Studying shellcode..
 
Join Date: Jun 2008
Location: Sweden - Ljusdal
Posts: 3,405
Blog Entries: 36
Rep Power: 10
Reputation: 198
MaXe has made his way up the systemMaXe has made his way up the system
Re: 0-day exploit for all Windows versions, gain kernel priv

Quote:
Originally Posted by ccoder View Post
anyone testedthis exploit ? i have tested it on winxp sp2 when run the exe file the system crashed and restart :D
Did you look for a Metasploit module for this?
__________________

Quote:
Originally Posted by Norph
MaXe, I really doubt that you are able to browse ANY site more than 2 minutes before you start pwning it xD
Reply With Quote
  #7  
Old 3rd February 2010, 14:10
 
Join Date: Sep 2009
Posts: 84
Rep Power: 4
Reputation: 1
ccoder is an unknown memory address at this point
Re: 0-day exploit for all Windows versions, gain kernel priv

i have read about it before but why using msf ? i have uploaded this exploit in a server and want to get system privilege.
Code:
http://carnal0wnage.blogspot.com/2010/01/kitrap0d-now-in-metasploit.html
__________________
I love InterN0T

Last edited by ccoder; 3rd February 2010 at 14:20.
Reply With Quote
  #8  
Old 5th February 2010, 10:49
MaXe's Avatar
Studying shellcode..
 
Join Date: Jun 2008
Location: Sweden - Ljusdal
Posts: 3,405
Blog Entries: 36
Rep Power: 10
Reputation: 198
MaXe has made his way up the systemMaXe has made his way up the system
Re: 0-day exploit for all Windows versions, gain kernel priv

@ccoder: Because Metasploit is easy to use and some PoC's on the Internet contains bugs (against script kiddies).
__________________

Quote:
Originally Posted by Norph
MaXe, I really doubt that you are able to browse ANY site more than 2 minutes before you start pwning it xD
Reply With Quote
  #9  
Old 13th May 2010, 22:01
 
Join Date: May 2010
Posts: 3
Rep Power: 2
Reputation: 1
ubuntuhacker is an unknown memory address at this point
Re: 0-day exploit for all Windows versions, gain kernel priv

Does anyone tested this ?
Reply With Quote
  #10  
Old 14th May 2010, 12:19
s3my0n's Avatar
InterN0T Crew
 
Join Date: Sep 2009
Location: /home/s3my0n/
Posts: 373
Blog Entries: 3
Rep Power: 8
Reputation: 227
s3my0n has made his way up the systems3my0n has made his way up the systems3my0n has made his way up the system
Re: 0-day exploit for all Windows versions, gain kernel priv

Quote:
Originally Posted by ubuntuhacker View Post
Does anyone tested this ?
I've tested this on Windows XP Proffessional as a normal user and administrator and it works for both.

When I tested this on Windows 7 Home, in administrator account, it crashed, so it didn't work there, but might work for normal user.
__________________
Quote:
Computers are incredibly fast, accurate, and stupid; humans are incredibly slow, inaccurate and brilliant; together they are powerful beyond imagination.
-Albert Einstein
Reply With Quote
Reply

Bookmarks

Thread Tools
Display Modes

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are On


Similar Threads
Thread Thread Starter Forum Replies Last Post
Pwn2Own 2010 Windows 7 Internet Explorer 8 Exploit Erratum Security Tutorials and Guides 2 27th March 2010 15:41
Windows 7 & 2008 R2 - Remote Kernel Crash (DoS) MaXe Exploits, Vulnerabilities & PoCs 2 18th November 2009 23:50
Gain better Signal ccoder General Hacking Discussions 6 18th October 2009 00:05
Linux Kernel 2.6 local root hestas Exploits, Vulnerabilities & PoCs 0 7th November 2008 09:03
Linux Kernel 2.4/2.6 x86-64 System Call Emulation Exploit hestas Exploits, Vulnerabilities & PoCs 1 5th July 2008 21:39


All times are GMT +2. The time now is 14:00.
Copyright ©2007 - Forever, InterN0T & Teh Unkwon

Hosted by 1and1