Submission + - VMWare Escape Publicized at SANSfire 2007 (foolmoon.net)
FoolMoon writes: "Anyone in the know on VMware security knows that Ed Skoudis, Tom Liston and "crew" from Intelguardians (and some close researchers) have been researching VMware escapes for the last couple years for an US government customer. At SANSfire 2006, they presented some of this research to include how malware might detect the fact it was running under virtualization and hinted that there were possible exploits. Tonight at SANSfire 2007 some of these were revealed and the world saw the first public display of this capability. My blog represents my takeaway from this presentation given. As the presentation is not expected to be made publicly available, my notes may be of interest to anyone not in attendance. Any errors and misstatements in this are my own. — Monty McDougal
For the complete blog entry visit http://www.foolmoon.net/cgi-bin/blog/index.cgi?mod e=viewone&blog=1185593255"