Didier Stevens

HeapLocker Tool Protects Against Heap-Spray Attacks

As attackers have focused more and more of their energies on exploiting bugs in Web applications, and specifically memory-corruption vulnerabilities, researchers have followed along, trying to find new ways to protect users from these attacks. One of the newer entrants in this field is a tool called HeapLocker, designed to prevent heap-spray attacks.

Didier Stevens on PDF Hacking and Security

Dennis Fisher talks with Didier Stevens, the security researcher who developed the innovative method for using the /launch command in PDF readers to execute code on remote machines. Stevens discusses the ramifications of the discovery, the security of PDFs in general and the user behavior that makes these attacks more effective.

Subscribe to our newsletter, Threatpost Today!

Get the latest breaking news delivered daily to your inbox.