Latest Entries

Alleged Bugs in Windows Vista ASLR Implementation

Thursday, October 5th, 2006

I’ve had some people ask me about a paper that was recently published detailing alleged bugs in Windows Vista 032.jpgAddress Space Layout Randomization in Windows Vista. It’s great to see people looking at and scrutinizing Windows Vista before we ship.

With that said, it turns out this analysis is incomplete and leads the author to an incorrect assumption. Let me explain.

There are three areas of randomization enabled by default in Windows Vista:

* Image Randomization
* Stack Randomization
* Heap Randomization

The author is looking only at the entropy in the stack randomization. Michael Howard’s Web Log : Alleged Bugs in Windows Vista’s ASLR Implementation

Popular Posts

Comments are closed.


Please read our Disclaimer