CanSecWest has claimed its second victim. After last week's pwnage of a MacBook Air, there were two notebook computers left to win by hacking them: one running Widows Vista and one running Ubuntu Linux. The Linux box remained uncracked, but hacker Shane Macaulay successfully compromised a fully patched Vista system using a Flash exploit.
According to The Register, the attack took a good deal longer than Charlie Miller's two-minute subjugation of the MacBook Air. Macaulay's attack was initially neutralized by Windows Vista Service Pack One, but after some more work he and his accomplice Alex Sotirov managed to route around it with a little javascript.
The perpetrators get to keep the Fujitsu U810 and $5,000 as a prize. Might we suggest that the first things they do is to wipe the Windows install and load it up with Hardy Heron.
Only Ubuntu left standing, as Flash vuln fells Vista in Pwn2Own hacking contest [The Register]





