What Is Remote Binary Planting Exploit

The term Remote Binary Planting is becoming a hot keyword trends. Remote Binary Planting has been coined by computer security researchers of a exploit of planting malicious binary on a targeted computer.

The vulnerabilities of the "remote binary planting" is where the malicious binary is loaded from the current working directory, allowing for a remote, even Internet-based attack.

This vulnerability allows a remote attacker (hacker) to place a (preferably hidden) malicious DLL on a network shared folder alongside a media file and when users open this media file, the DLL will get silently loaded and executed by the operating system.

There also has been cases whereby the operating system was tricked to load the DLL without verifying it full installed path.

Why is it called Remote Binary Planting? This is because the same problem affects not only the libraries but also executables such as .EXE and .COM files.

More info at: ACROS SECURITY - Binary Planting


If you like this informative post, then please subscribe to my full RSS Feed.