The Windows Registry Adventure #7: Attack surface analysis
ID: 8f8d6585-6f44-530c-bc8d-744f74f6e34a
STIX ID: report--8f8d6585-6f44-530c-bc8d-744f74f6e34a
Feed Name: Google Project Zero
Threat Score
This Project Zero blog post provides a comprehensive technical review of the Windows Registry as an attack surface: its history, internal implementation, classes of vulnerabilities (hive memory corruption, pool corruption, race conditions, logic bugs, infoleaks), 53 CVEs found and fixed, entry points (app hives, user hives, logs, transactions, virtualization, layered keys), exploitation primitives, and practical fuzzing recommendations and mitigations.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
