Windows 8 Forums


Results 1 to 3 of 3
  1. #1
    A Guy's Avatar

    Righteous Dude



    Join Date : Jun 2010
    Bay Area
    Posts : 6,768
    Windows 7 Home Premium x64
    USA us california

    New Version of Stoned Bootkit Said to Bypass Windows 8 Secure Boot


    A security researcher who has in the past has created low-level rootkits capable of staying resident on an infected machine after reboots, said he has now accomplished the same feat on Windows 8, which hasn't even hit the shelves yet. Peter Kleissner said he has created a new version of his Stoned bootkit that defeats the pre-boot security checks included in the forthcoming OS and survives reboots.

    Kleissner is known in the security community for his creation of the Stoned bootkit, a sophisticated form of rootkit that is designed to load from the master boot record and stay resident in memory throughout the boot process. The previous version of the bootkit was designed to work on Windows XP through Windows 7, but the new one that Kleissner has written also works on Windows 8. He said in a message on Twitter Thursday that Stoned Lite is a small footprint bootkit that can be loaded from either a USB stick or a CD.

    He said he may also add some other functionality to the software in the near future.
    Source

    A Guy
      My System SpecsSystem Spec

  2. #2
    Jav's Avatar
    Jav

    ...

    Array
    Join Date : Nov 2009
    Posts : 78
    Tetris


    Live Demo of the Bootkit in Windows 8 DP by Peter Kleissner.

    Windows 8 Bootkit Live Demonstration

    This shows how to use Stoned Lite to get SYSTEM rights on Windows 8 through the cmd privilege escalation (done by a driver loaded by the bootkit). The infector is just 14 KB of size and bypasses the UAC.
      My System SpecsSystem Spec

  3. #3
    vrosa's Avatar

    Senior Member


    Join Date : Jan 2011
    Belo Horizonte City
    Posts : 2,466
    Windows 7 SP1 x64, Windows 8 CP x64, Windows 8 Server CP
    Brazil au west australia 2


    Very interesting
      My System SpecsSystem Spec