Vipin Kumar and Nitin Kumar: Vboot Kit: Compromising Windows Vista Security

09/01/2006 1h 7min

Listen "Vipin Kumar and Nitin Kumar: Vboot Kit: Compromising Windows Vista Security"

Episode Synopsis

"Vboot kit is first of its kind technology tdemonstrate Windows vista kernel subversion using custom boot sector. Vboot Kit shows how custom boot sector code can be used tcircumvent the whole protection and security mechanisms of Windows Vista.The booting process of windows Vista is substantially different from the earlier versions of Windows.The talk will give you details and know abouts for the Vista booting process.Then, we will be explaining the vboot kit functionality and how it works.We will alshave an insight intthe Windows Vista Kernel.We alsgthrough a sample Ring 0 Shell code(for Vista).The sample shellcode effectively raises the privileges of certain programs tSYSTEM.Also, a live demonstration of vboot kit POC will be done.

Prerequisites :- Knowledge about Windows Internals, and a bit assembly language." Mr. Vipin Kumar is an independent security consultant and analyst. He has experience in system and network security as well as programming and project design. He likes tdevelop specialized software and/or stuffs related twindows kernel. He holds MCSE and Bachelor's of Technology in Computer Science. His latest work involves the development of boot kit (a technique tsubvert Windows 2000/XP/2003 System using custom boot sector). He is currently analyzing windows vista kernel architecture.

More episodes of the podcast Black Hat Briefings, Europe 2007 [Audio] Presentations from the security conference.