Microsoft will make available a new Kinect sensor for Windows in 2014, officials said on May 23.The new Kinect for Windows sensor will include many of the technologies that Microsoft showed off in... read more
Microsoft adds BlueHat finalist's work in security update
Submitted by l33tdawg on Thu, 2012-07-26 03:52
In June, Microsoft announced that it had picked the three finalists in its first annual BlueHat security program competition. One of them will be named as the winner of the contest and will receive the top prize of $200,000. That prize will be handed out tomorrow evening at the company’s Researcher Appreciation Party.
Today Microsoft announced that the work from one of the three BlueHat finalists has already been incorporated into one of the company's security programs. In a press release today, Microsoft said that the Return Oriented Programming (ROP) defenses, first created by BlueHat Prize finalist Ivan Fratric, have been put into the newly released. Enhanced Mitigation Experience Toolkit (EMET) 3.5 Technology Preview.
The press release states:
Fratric, who earned a Ph.D. in computer science and is a researcher at the University of Zagreb located in Zagreb, Croatia, submitted a unique solution called ROPGuard, which hinders attacks that leverage ROP. ROP is an advanced technique that attackers use to combine short pieces of benign code, already present in a system, for a malicious purpose. ROPGuard defines a set of checks that can be used to detect when certain functions are being called in the context of malicious ROP code and can help protect against attacks exploiting memory safety vulnerabilities.