|
|
|
|
|
by tiraniddo
2241 days ago
|
|
Basically my PoC works exactly the same from Chrome GPU as FF Content Level 5 [1] there was no additional hardening. It was also easier to test as FF doesn't enable the Microsoft DLL signing mitigation should I could just do a direct CreateRemoteThread -> LoadLibrary without messing with KnownDlls. [1] https://wiki.mozilla.org/Security/Sandbox |
|