win7+ie8才1万美刀_袁哥的技术天地_百度空间

win7+ie8才1万美刀,太便宜了点,一点没吸引力.所以说方向要搞内核提权的,几百万美刀哦.:)太他妈搞笑了.

这方面还是海信有魄力点,敢50万叫板.更高的LSD的100万美刀那次好象没有xx.

辽宁有次政府防火墙选型,1万加黑客高手称号,打发小孩子.4家防火墙厂家保护的IP全部WEBDAV轻易的就能进去,当时在绿盟,大家都是同行没有公布他们的日志文件等.

The TippingPoint (ZDI) is proud to announce that the annual Pwn2Own contest is back again this year at the security conference held in Vancouver, BC on March 24th 2010. As the contest name implies, if you successfully exploit a target you get to keep it along with a ZDI cash prize and . This is our 4th year running and to commemorate we have increased the total cash prize amount to $100,000 USD. If you're unfamiliar with the past history of this competition check out the archived and blog entries.

This year the competition will have two main technology targets. In keeping with tradition the first portion of the event will attempt to bring to light the current security posture of market-leading web browser and operating system pairings. The multifaceted web browser continues to occupy a critical presence on the client-side attack surface. As Adobe, Google, and an estimated 30 other companies affected in the Aurora incident can attest to, the security posture of these products merits a yearly public evaluation by the research community at large.

The second portion of Pwn2Own 2010 offers bounties for vulnerabilities affecting mobile phones. The increased presence and capabilities of smart phones has brought with it the same security issues and attention traditionally reserved for non hand-held platforms. Vulnerabilities in parsing media, dynamic web content, e-mail, and other client-side issues have been in the past. Additionally, many of the communication protocols that mobile phones implement are the focus of a burgeoning field of security research (ex: , , ). The data stored and communicated across these devices is increasing in value to attackers.

Pwn2Own will be held over the course of three days starting on March 24th with the browser and the mobile contests running concurrently. To register for the competition, send us an e-mail at ZDI@tippingpoint.com. Competitors will be assigned a random half hour time slot.

This blog entry will be updated frequently and serve as the main point of information dissemination. Additionally, you can get real-time updates and provide real-time feedback via our ZDI Twitter account .

Please direct all press inquiries to: Jennifer Lake <jlake@tippingpoint.com>

$40,000 of the total $100,000 cash prize pool is allotted to the web browser portion of the contest, each target is worth $10,000. The browser targets this year will include the latest versions of Microsoft Internet Explorer, Mozilla Firefox, Google Chrome and Apple Safari.

To highlight the efficacy of operating system level protections we have structured the ZDI bonus point amounts to reflect the difficulty of exploitation. Once a target has been successfully compromised it will be removed from the competition. Thus, a successful day one attack on a specific browser must overcome the latest and greatest flagship operating system with all exploit mitigations activated in their default state.

Day 1

The target pairings for day one are:
  • Microsoft Internet Explorer 8 on Windows 7
  • Mozilla Firefox 3 on Windows 7
  • Google Chrome 4 on Windows 7
  • Apple Safari 4 on MacOS X Snow Leopard
In addition to the underlying laptop and $10,000 USD cash prize, successful competitors on day one receive 20,000 ZDI which immediately qualifies them for Silver standing. Benefits of ZDI Silver standing include a one-time $5,000 USD cash payment, 15% monetary bonus on all ZDI submissions in 2011, 25% reward point bonus on all ZDI submissions in 2011 and paid travel and registration to attend the DEFCON Conference in Las Vegas.

Day 2

The target pairings for day two are:
  • Microsoft Internet Explorer 7 on Windows Vista
  • Mozilla Firefox 3 on Windows Vista
  • Google Chrome 4 on Windows Vista
  • Apple Safari 4 on MacOS X Snow Leopard
In addition to the underlying laptop and $10,000 USD cash prize, successful competitors on day two receive 15,000 ZDI which immediately qualifies them for Bronze standing. Benefits of ZDI Bronze standing include a one-time $1,000 USD cash payment and a 10% monetary bonus on all ZDI submissions in 2011.

Day 3

The target pairings for day three are:
  • Microsoft Internet Explorer 7 on Windows XP
  • Mozilla Firefox 3 on Windows XP
  • Google Chrome 4 on Windows XP
  • Apple Safari 4 on MacOS X Snow Leopard
In addition to the underlying laptop and $10,000 USD cash prize, successful competitors on day three receive 9,999 ZDI which puts them just one ZDI submission away from Bronze standing for the year ;-)

$60,000 of the total $100,000 cash prize pool is allotted to the mobile phone portion of the contest, each target is worth $15,000. A successful hack on these targets must result in code execution with little to no user-interaction. Expect updates on the rules as the contest approaches. The current target list is as follows:
  • Apple iPhone 3GS
  • RIM Blackberry Bold 9700
  • A Nokia device running Symbian S60 (likely the E62)
  • A Motorola phone running Android (likely the Droid)
In addition to the mobile device and $15,000 USD cash prize, successful competitors will receive 20,000 ZDI which immediately qualifies them for Silver standing. Benefits of ZDI Silver standing include a one-time $5,000 USD cash payment, 15% monetary bonus on all ZDI submissions in 2011, 25% reward point bonus on all ZDI submissions in 2011 and paid travel and registration to attend the DEFCON Conference in Las Vegas.

Any non remote code execution entries accepted by the judges reduces the point giveaway to 9,999 ZDI which puts the competitor just one ZDI submission away from Bronze standing for the year ;-)

Happy hunting


郑重声明:资讯 【win7+ie8才1万美刀_袁哥的技术天地_百度空间】由 发布,版权归原作者及其所在单位,其原创性以及文中陈述文字和内容未经(企业库qiyeku.com)证实,请读者仅作参考,并请自行核实相关内容。若本文有侵犯到您的版权, 请你提供相关证明及申请并与我们联系(qiyeku # qq.com)或【在线投诉】,我们审核后将会尽快处理。
—— 相关资讯 ——