NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home / News / Microsoft

Microsoft


A Windows Vista Zero-Day Exploit Costs $50,000

On the Internet underground marketplace

By Marius Oiaga, Technology News Editor

18th of December 2006, 16:14 GMT

Adjust text size:


$50,000 for a Windows Vista zero-day exploit. The 0-day exploits have not been released in the wild but are, instead, made an integer part of the underground Internet commerce. The Proof
of Concept code for an exploit affecting Microsoft's latest operating system can cost as much as $50.000.

As far, neither the exploit nor the PoC for Windows Vista have been submitted to an independent evaluation process. In this context, the authenticity of the Windows Vista 0-day exploit has not been confirmed from any sources aside from its creators. Microsoft has, as yet, failed to issue an official comment.

Trend Micro's chief technology officer, Raimund Genes confirmed to eWEEK that Trend Micro was able to verify that the 0-day Vista exploit was indeed available for sale on an auctioning marketplace online. The consistent amount for which the 0-day exploit is being auctioned is an indication of the fact that the vulnerability at its basis allows for remote code execution.

Prices for similar code execution vulnerabilities that have not been patched by the developers range from $20,000 to $30,000. As a general rule, the more popular the software, the higher the price. Raimund Genes revealed that bots and Trojan downloaders targeting the Windows operating system have an estimated price of $5,000.

This kind of underground commerce mirrors the fact that the malware environment has geared from a destructive, viral aspect, to a lucrative market. "I think the malware industry is making more money than the anti-malware industry," Genes commented.
Read by 3,635 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
Good (3.6/5) 10 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2009 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


Will Symantec's Security FOR Vista Work WITH Vista?

F-Secure Client Security 7 for Vista

Vista-Compatible Security from Symantec

Vista PatchGuard = Foul Play?

Symantec's Host Security Metasystem

Microsoft's "Very Limited, Targeted Attacks"

Attack Vectors in Windows Vista

Symantec and McAfee Build Their Security Solutions on Shortcuts

Preview of the Vista Media Center Remote

Installing Vista RTM on Virtual PC 2007 Beta

Cracked Windows Vista RTM MDSN Available for Download

Who Stands to Benefit From Vista PatchGuard?

Host Intrusion Prevention System for Windows Vista

Microsoft Confirms That Vista Is Affected by Malware from 2004

McAfee Delivers Support for Windows Vista

Vista Secrets for Tablet PCs and Laptops Part 1

Microsoft to Scrap 32-bit Products

Windows Vista Wireless Networking Security Protocols

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM