[SC-L] Dark Reading - Application and Perimeter Security - Hacking the Vista Kernel - Security News Analysis

SC-L Subscriber Dave Aronson secureCoding2dave at davearonson.com
Tue Jul 25 16:15:46 EDT 2006


Pete Shanahan [mailto:petesh at indigo.ie] writes:

 > I'm just wondering how flawed the implementation of the windows
 > paging model is that it would allow for this kind of breach. The
 > standard model I'm familiar with would simply flush the page from
 > memory, and would not keep a copy in the external page-file,
 > instead relying on the copy that already exists on the disk.

Perhaps the code in question is stored compressed, so that there is no verbatim copy already on disk.  (I have no clue if Windows does this.)

-Dave




More information about the SC-L mailing list