Reply to post: Wake Up Call

WinShock PoC clocked: But DON'T PANIC... It's no Heartbleed

InfoSecLuke

Wake Up Call

It was only a matter of time before the patch was reverse engineered and an exploit found for the vulnerability.

Thankfully the industry had a little more lead time on this one in terms of patching systems before the PoC emerged. Well, at least compared to Heartbleed and Shellshock.

No doubt however we'll still be finding this vulnerability in penetration test for years to come. I mean I still regularly find ms08-067 at some client sites.

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon