Hacker News new | ask | show | jobs
by tiraniddo 2241 days ago
Basically my PoC works exactly the same from Chrome GPU as FF Content Level 5 [1] there was no additional hardening. It was also easier to test as FF doesn't enable the Microsoft DLL signing mitigation should I could just do a direct CreateRemoteThread -> LoadLibrary without messing with KnownDlls.

[1] https://wiki.mozilla.org/Security/Sandbox