<?xml version="1.0" encoding="UTF-8"?>
<rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>gHacks technology news &#187; vista security</title>
	<atom:link href="http://www.ghacks.net/tag/vista-security/feed/" rel="self" type="application/rss+xml" />
	<link>http://www.ghacks.net</link>
	<description>A technology blog covering software, mobile phones, gadgets, security, the Internet and other relevant areas.</description>
	<lastBuildDate>Tue, 24 Nov 2009 16:29:26 +0000</lastBuildDate>
	<generator>http://wordpress.org/?v=2.8.6</generator>
	<language>en</language>
	<sy:updatePeriod>hourly</sy:updatePeriod>
	<sy:updateFrequency>1</sy:updateFrequency>
			<item>
		<title>Game Over For Windows Vista&#8217;s Security?</title>
		<link>http://www.ghacks.net/2008/08/08/game-over-for-windows-vistas-security/</link>
		<comments>http://www.ghacks.net/2008/08/08/game-over-for-windows-vistas-security/#comments</comments>
		<pubDate>Fri, 08 Aug 2008 12:44:57 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[security vulnerability]]></category>
		<category><![CDATA[vista security]]></category>
		<category><![CDATA[windows-vista]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=5968</guid>
		<description><![CDATA[I picked up an interesting story over at Neowin entitled &#8220;Vista&#8217;s Security Rendered Completely Useless by New Exploit&#8221; which reports on a new technique hat can &#8220;bypass all memory protection safeguards that Microsoft built into Windows Vista.&#8221;
The researchers were able to load whatever content they wanted into any location they wished on a user&#8217;s machine [...]]]></description>
			<content:encoded><![CDATA[<p>I picked up an interesting story over at <a href="http://www.neowin.net/news/main/08/08/08/vista39s-security-rendered-completely-useless-by-new-exploit">Neowin</a> entitled &#8220;Vista&#8217;s Security Rendered Completely Useless by New Exploit&#8221; which reports on a new technique hat can &#8220;bypass <strong>all</strong> memory protection safeguards that Microsoft built into Windows Vista.&#8221;</p>
<p><strong>The researchers were able to load whatever content they wanted into any location they wished on a user&#8217;s machine using a variety of scripting languages, such as Java, ActiveX and even .NET objects. This feat was achieved by taking advantage of the way that <a href="http://www.ghacks.net/tag/internet-explorer/">Internet Explorer</a> (and other browsers) handle active scripting in the Operating System.</strong></p>
<p>Instead of exploiting a security vulnerability the researchers Mark Dowd of IBM Internet Security Systems (ISS) and Alexander Sotirov, of VMware Inc. of the architecture of Windows Vista. Another researcher described the technique as &#8220;completely game over.&#8221;</p>
<p><span id="more-5968"></span>It&#8217;s currently not known if other operating systems are vulnerable as well but it is very likely. The best against this attack would be an add-on like NoScript that would most likely prevent it completely.</p>

	Tags: <a href="http://www.ghacks.net/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a href="http://www.ghacks.net/tag/security/" title="Security" rel="tag">Security</a>, <a href="http://www.ghacks.net/tag/security-vulnerability/" title="security vulnerability" rel="tag">security vulnerability</a>, <a href="http://www.ghacks.net/tag/vista-security/" title="vista security" rel="tag">vista security</a>, <a href="http://www.ghacks.net/tag/windows-vista/" title="windows-vista" rel="tag">windows-vista</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/03/30/windows-integrity-levels/" title="Windows Integrity Levels for extra security in Windows Vista (March 30, 2008)">Windows Integrity Levels for extra security in Windows Vista</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/04/23/yuck-new-windows-vista-ultimate-extras/" title="Yuck new Windows Vista Ultimate Extras (April 23, 2008)">Yuck new Windows Vista Ultimate Extras</a> (20)</li>
	<li><a href="http://www.ghacks.net/2008/05/07/xp-sp3-and-vista-sp-1-available-through-windows-update/" title="XP SP3 and Vista SP 1 available through Windows Update (May 7, 2008)">XP SP3 and Vista SP 1 available through Windows Update</a> (6)</li>
	<li><a href="http://www.ghacks.net/2008/08/26/windows-xp-wga-to-mimic-that-of-windows-vista/" title="Windows XP WGA To Mimic That Of Windows Vista (August 26, 2008)">Windows XP WGA To Mimic That Of Windows Vista</a> (18)</li>
	<li><a href="http://www.ghacks.net/2006/05/19/windows-vista-upgrade-advisor/" title="Windows Vista Upgrade Advisor (May 19, 2006)">Windows Vista Upgrade Advisor</a> (0)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/08/08/game-over-for-windows-vistas-security/feed/</wfw:commentRss>
		<slash:comments>12</slash:comments>
		</item>
		<item>
		<title>Windows Integrity Levels for extra security in Windows Vista</title>
		<link>http://www.ghacks.net/2008/03/30/windows-integrity-levels/</link>
		<comments>http://www.ghacks.net/2008/03/30/windows-integrity-levels/#comments</comments>
		<pubDate>Sun, 30 Mar 2008 15:43:03 +0000</pubDate>
		<dc:creator>Martin</dc:creator>
				<category><![CDATA[Operating Systems]]></category>
		<category><![CDATA[Security]]></category>
		<category><![CDATA[Windows]]></category>
		<category><![CDATA[elevated]]></category>
		<category><![CDATA[file permissions]]></category>
		<category><![CDATA[microsoft]]></category>
		<category><![CDATA[vista security]]></category>
		<category><![CDATA[windows integrity level]]></category>
		<category><![CDATA[windows-vista]]></category>

		<guid isPermaLink="false">http://www.ghacks.net/?p=3661</guid>
		<description><![CDATA[Microsoft build in a system called Windows Integrity Controls into Windows Vista which is basically a label for files with that identify its trustworthiness. What makes them interesting is the fact that they override the visible permissions of a file or folder. Six levels of trust can be assigned to files of the same or a lower permission level. Meaning that a normal user is not able to change the integrity level of a file that he has no permission for.]]></description>
			<content:encoded><![CDATA[<p>Microsoft build in a system called Windows Integrity Controls into Windows Vista which is basically a label for files with that identify its trustworthiness. What makes them interesting is the fact that they override the visible permissions of a file or folder. Six levels of trust can be assigned to files of the same or a lower permission level. Meaning that a normal user is not able to change the integrity level of a file that he has no permission for.</p>
<p>The six integrity levels are Trusted Installer, System (operating system processes), High (administrators), Medium, (non-administrators), Low (temporary Internet files) and Untrusted. As you can see even an administrator is not able to change the integrity level of files and folders that belong to Trusted Installers or System.</p>
<p>A command line tool is available that makes it quite easy to change the integrity level of files and folders. It is called CHML and available at a website <a href="http://www.minasi.com/vista/chml.htm">that</a> explains the process in detail.</p>
<p><span id="more-3661"></span>The command &#8220;chml filename&#8221; displays the integrity level of that file. Modifying files and folders is only possible if changes are made in the Group Policy Editor:</p>
<ul>
<li>Open gpedit.msc</li>
<li>Navigate to Computer Configuration / Windows Settings / Local Policies / User Rights Assignment</li>
<li>In the right-hand pane, you&#8217;ll see an entry &#8220;Modify an object label;&#8221; open it</li>
<li>By default, there are no user accounts listing with this privilege.  Add your user account.</li>
<li>Close the Group Policy Editor</li>
<li>Log off, then back on to finish getting the new privilege on your logon token</li>
</ul>
<p>The basic command to change the integrity level of files or folders in Windows Vista is chml -i:u, l, m, h, or s. Only one letter is obviously selected which stand for Untrusted, Low, Medium, High, or System. </p>
<p>Three additional options are available. The -nr, -nw and -nx options deny read, write and execute rights. </p>
<p>I did find the reference to Windows Integrity Levels at the <a href="http://www.donationcoder.com/Forums/bb/index.php?topic=12838.msg107731#msg107731">Donation Coder forum</a> where Skrommel was kind enough to create an Autohotkey Script that would add the functionality to the right-click menu.</p>

	Tags: <a href="http://www.ghacks.net/tag/elevated/" title="elevated" rel="tag">elevated</a>, <a href="http://www.ghacks.net/tag/file-permissions/" title="file permissions" rel="tag">file permissions</a>, <a href="http://www.ghacks.net/tag/microsoft/" title="microsoft" rel="tag">microsoft</a>, <a href="http://www.ghacks.net/tag/vista-security/" title="vista security" rel="tag">vista security</a>, <a href="http://www.ghacks.net/tag/windows/" title="Windows" rel="tag">Windows</a>, <a href="http://www.ghacks.net/tag/windows-integrity-level/" title="windows integrity level" rel="tag">windows integrity level</a>, <a href="http://www.ghacks.net/tag/windows-vista/" title="windows-vista" rel="tag">windows-vista</a><br />

	<h4>Related posts</h4>
	<ul class="st-related-posts">
	<li><a href="http://www.ghacks.net/2008/05/07/xp-sp3-and-vista-sp-1-available-through-windows-update/" title="XP SP3 and Vista SP 1 available through Windows Update (May 7, 2008)">XP SP3 and Vista SP 1 available through Windows Update</a> (6)</li>
	<li><a href="http://www.ghacks.net/2006/05/19/windows-vista-upgrade-advisor/" title="Windows Vista Upgrade Advisor (May 19, 2006)">Windows Vista Upgrade Advisor</a> (0)</li>
	<li><a href="http://www.ghacks.net/2008/01/25/windows-vista-sp1-refresh-2-is-out/" title="Windows Vista SP1 Refresh 2 is out (January 25, 2008)">Windows Vista SP1 Refresh 2 is out</a> (2)</li>
	<li><a href="http://www.ghacks.net/2008/03/18/windows-vista-sp1-download/" title="Windows Vista SP1 Download (March 18, 2008)">Windows Vista SP1 Download</a> (12)</li>
	<li><a href="http://www.ghacks.net/2008/02/22/windows-vista-sp1-breaks-applications/" title="Windows Vista SP1 breaks applications (February 22, 2008)">Windows Vista SP1 breaks applications</a> (2)</li>
</ul>

]]></content:encoded>
			<wfw:commentRss>http://www.ghacks.net/2008/03/30/windows-integrity-levels/feed/</wfw:commentRss>
		<slash:comments>0</slash:comments>
		</item>
	</channel>
</rss>
