Core Impact puts a vise grip on vulnerabilities

28.04.2006

For example, the Microsoft DCOM-RPC exploit (aka Blaster) normally works across port 135. Core Security Technologies' team discovered that it would work across multiple ports (including 80, 137, 139, and 445). Usually, the exploit causes Windows to reboot because the RPC service crashes and its default recovery option is to restart Windows, but Core Impact 's implementation executes custom code that patches memory to make reboots less likely to occur.

Overall, I was very impressed with Core Impact and would recommend it to anyone.