April 3, 2009
2:27 am | Last updated: April 3, 2009 at: 2:28 am

!exploitable Crash Analyzer (pronounced “bang exploitable”) is a Windows debugging extension (Windbg) that provides automated crash analysis and security risk assessment. The tool first creates hashes to determine the uniqueness of a crash and then assigns an exploitability rating to the crash: Exploitable, Probably Exploitable, Probably Not Exploitable, or Unknown. The tool performs two functions: it groups similar crashes together in order to cut down on looking at duplicates; and it assigns an exploitability classification of “Exploitable,” “Probably Exploitable,” “Probably Not Exploitable,” or “Unknown.” This tool runs as an extension within the Windows Debugger (WinDbg.exe), called MSEC.dll. To run the tool while in the debugger, just type !exploitable,” revealed Jason Shirk.

More infoDownload | Detailed info (.pptx)

Loading

Contextual Related Posts:

No followup yet

Leave a Response

Comment Preview
« Microsoft comments on Patent Reform Act of 2009Microsoft ASP.NET MVC 1.0 released under open source (Ms-PL) »
Feed Icon

Subscribe via RSS or email: