If you ask nice maybe I drop how to make an .exe file that deletes it self while running and continues running after deletion.
-
-
This Tweet is unavailable.
-
Not yet, but someone knows a place where the assumption of a running file mapping to its matching file on disk have security consequences. Maybe something like antivirus, drm, anti cheating, authenticode.... I dont wanna drop stuff that directly could damage stuff.
1 reply 0 retweets 0 likes -
Replying to @jonasLyk @SandboxBear
And one of the next days new methods for Local Service -> SYSTEM will get dropped so...... thats all
1 reply 0 retweets 0 likes -
Replying to @jonasLyk @SandboxBear
or maybe I do....maybe I do. What about a vuln that enables setting acl everyone read on an arb file, only requirement is having writeaccess to it :)
1 reply 0 retweets 0 likes -
Replying to @jonasLyk @SandboxBear
The IP helper service teredo component do unsafe file creation in user writeable directory and set + everyone read on the file. It can be exploited by creating a hardlink from a given file to c:\windows\temp\teredo.txt Then run: netsh interface teredo show state
1 reply 1 retweet 3 likes -
Replying to @jonasLyk @SandboxBear
The hardlinked file will now get the ACL appllied. I just did a sandboxie :)
0 replies 0 retweets 0 likes -
This Tweet is unavailable.
-
why do i suddenly feel crawing for putting on a dress and moving to Canada?
1 reply 0 retweets 0 likes -
This Tweet is unavailable.
If anyone manage to use it for something interesting I salute them and hope they make it public. If a file exist where you have FILE_READ_ATTRIBUTES axx and FILE_WRITE_DATA you can make the hardlink..... Then everyone generic read gets applied.... I
Loading seems to be taking a while.
Twitter may be over capacity or experiencing a momentary hiccup. Try again or visit Twitter Status for more information.