$hell on Earth: From Browser to System Compromise
Common Information
Type | Value |
---|---|
UUID | 6be9baac-6f4f-4e7a-b653-165727875109 |
Fingerprint | b17ce564275084a3102d5410742a9ac16b2b912217ce04155bfd4e09440adb0a |
Analysis status | DONE |
Considered CTI value | 2 |
Text language | |
Published | Aug. 3, 2016, 5:36 p.m. |
Added to db | April 14, 2024, 10:11 a.m. |
Last updated | Aug. 30, 2024, 10:40 p.m. |
Headline | $hell on Earth: From Browser to System Compromise |
Title | $hell on Earth: From Browser to System Compromise |
Detected Hints/Tags/Attributes | 107/1/44 |
Source URLs
Redirection | Url | |
---|---|---|
Details | Source | http://documents.trendmicro.com/assets/pdf/shell-on-earth.pdf |
URL Provider
Attributes
Details | Type | #Events | CTI | Value |
---|---|---|---|---|
Details | CVE | 1 | cve-2016-1859 |
|
Details | CVE | 3 | cve-2016-1804 |
|
Details | CVE | 2 | cve-2016-1857 |
|
Details | CVE | 1 | cve-2016-1815 |
|
Details | CVE | 2 | cve-2016-1856 |
|
Details | CVE | 1 | cve-2016-1796 |
|
Details | CVE | 1 | cve-2016-1797 |
|
Details | CVE | 2 | cve-2016-1806 |
|
Details | CVE | 2 | cve-2016-1016 |
|
Details | CVE | 2 | cve-2016-1017 |
|
Details | CVE | 3 | cve-2016-0173 |
|
Details | CVE | 2 | cve-2016-1015 |
|
Details | CVE | 3 | cve-2016-0196 |
|
Details | CVE | 1 | cve-2016-1018 |
|
Details | CVE | 1 | cve-2015-0350 |
|
Details | CVE | 3 | cve-2016-0174 |
|
Details | CVE | 3 | cve-2016-0175 |
|
Details | CVE | 3 | cve-2016-0191 |
|
Details | CVE | 2 | cve-2016-3231 |
|
Details | CVE | 2 | cve-2016-0193 |
|
Details | CVE | 4 | cve-2016-0176 |
|
Details | Domain | 359 | com.apple |
|
Details | Domain | 1 | fontd.internal.sb |
|
Details | Domain | 1 | mc.watch |
|
Details | Domain | 1 | decode.call |
|
Details | Domain | 1 | xml.firstchild.attributes.aaa |
|
Details | Domain | 1 | nc.connect.call |
|
Details | Domain | 175 | www.zdnet.com |
|
Details | Domain | 18 | speakerdeck.com |
|
Details | Domain | 604 | www.trendmicro.com |
|
Details | File | 19 | afd.sys |
|
Details | File | 1 | diagnosticmessageshistory.pl |
|
Details | File | 2 | chrome_child.dll |
|
Details | File | 748 | kernel32.dll |
|
Details | File | 1 | flash.geo |
|
Details | File | 15 | win32kfull.sys |
|
Details | File | 55 | dwm.exe |
|
Details | File | 12 | win32kbase.sys |
|
Details | File | 2 | javascriptarray.cpp |
|
Details | File | 11 | dxgkrnl.sys |
|
Details | IPv4 | 1441 | 127.0.0.1 |
|
Details | IPv4 | 1 | 9.4.5.9 |
|
Details | Url | 1 | http://www.zdnet.com/article/pwn2own-2015-the-year-every-browser-went-down/. |
|
Details | Url | 1 | https://speakerdeck.com/flankerhqd/shooting-the-osx-el-capitan-kernel-like-a-sniper. |