Windows Vista Security
信息来源:邪恶八进制信息安全团队(
www.eviloctal.com)
User Mode Security
User Account Protection (UAP)
Mandatory Integrity Control(MIC)
UI Privlilege Isolation (UIPI)
Restricted Process
Unrestricted Process (Elevation)
Standard methods
The Legacy Shell Trick
Consent Prompts and Admin Brokers
Service Isolation
File and Registry Virtualization
Registry Virtualization
File Virtualization
Low Rights IE Virtualization
Possible Attacks
Kernel Mode Security
Booting Vista
Driver Signing
Patch Guard
Secure Bootup
Restricted user-mode access to \Device\PhysicalMemory