Results 1 to 3 of 3
  1. #1
    Righteous Dude
    Overall activity: 46.0%

    Join Date
    Aug 2009
    Location
    Bay Area, California
    Posts
    1,901
    Liked
    784 times
    Points
    25,865

    Reigning Pwn2Own champion: "The main thing is not to install Flash!"

    With the Pwn2Own hacking contest coming up at Vancouver's CanSecWest security conference later this month, Italian computer security blog OneITSecurity took some time to interview Charlie Miller. Miller, in case you're not familiar, is a security expert who has won Pwn2Own two years running by hacking Apple's Safari browser with incredible speed. Safari isn't the only target -- this year, all major browsers and a selection of mobile operating systems will serve as Pwn2Own challenges - but it's fair to say that Miller knows a thing or two about keeping your browser secure.

    Here are the highlights from Miller's interview:
    He thinks Windows 7 will prove more secure than OS X Snow Leopard this year, in part because it doesn't have Java and Flash enabled by default. Windows' full ASLR (address space layout randomization) also gives it a security advantage.

    When asked what he thought would make the safest OS and browser combo, he opted for Chrome or IE8 on Windows 7, with no Flash installed, although "there probably isn't enough difference between the browsers to get worked up about."

    For my money, the juiciest quote from the interview was "The main thing is not to install Flash!"

    On the mobile side, Miller guessed that the iPhone 3GS would be more easily exploitable than the Motorola Droid, mainly because the iPhone's been around longer, and has been subjected to more extensive security research.

    You can check out Miller's full answers (in English or Italian!) at

    http://www.oneitsecurity.it/01/03/2010/interview-with-charlie-miller-pwn2own/

    http://www.downloadsquad.com/2010/03/02/reigning-pwn2own-champion-the-main-thing-is-not-to-install-fla/

    A Guy

  2. #2
    Modern-day Romeo
    Overall activity: 0%

    Join Date
    Jul 2009
    Location
    Singapore, the "Little Red Dot" on the map
    Posts
    6,159
    Liked
    476 times
    Points
    61,007
    Amazing to hear this from a ''hacker''....but honestly who in the world will use a browser with Flash not installed...it's becoming a sort of necessity for most...
    They call me the mysterious one...
    my motto is...when it's hot, chill baby

  3. #3
    Moderator
    Overall activity: 73.0%

    Join Date
    Dec 2008
    Location
    Italy
    Posts
    6,895
    Liked
    1067 times
    Points
    71,755
    who the hell translated into italian that webpage? LOL
    It is simply an horrible italian.
    I think I'll get in touch soon with that italian blogger, I'm pretty sure he used google translate,

    Well, there are people who are used to disable Flash Player, that's one of the options of JavaCool SpywareBlaster or some firefox add ons.

    Thanks for heads up

 

 

Similar Threads

  1. Replies: 0
    Last Post: 12-16-2011, 09:23 PM
  2. Replies: 1
    Last Post: 06-05-2011, 11:12 AM
  3. Replies: 8
    Last Post: 04-27-2011, 12:26 PM
  4. Replies: 3
    Last Post: 01-02-2010, 09:43 PM
  5. Replies: 10
    Last Post: 12-13-2009, 06:20 PM
All times are GMT +8. The time now is 08:53 AM.