Phying News
Curated security research, vulnerabilities, advisories and tools for practitioners.

Bypassing Mitigations by Attacking JIT Server in Microsoft Edge

Summary

With Windows 10 Creators Update, Microsoft introduced a new security mitigation in Microsoft Edge: Arbitrary Code Guard (ACG). When ACG is applied to a Microsoft Edge Content Process, it makes it impossible to allocate new executable memory within a process or modify existing executable memory. The goal of this is to make it more difficult for an attacker who already gained some capabilities in the browser’s Content Process to execute arbitrary code.
Published
Collected

original ↗