On 14/12/05, Fletch <[EMAIL PROTECTED]> wrote: > Isn't this a mute point. I mean, unless you are surfing the web as > root, any remote browser exploit would only effect the user and a logoff > and login again would sort out *most* problems associated with remote > exploits.
Once a remote attacker has access to your machine just think of all those lovely local exploits he can now run to bump up his privileges. I could say that *all* remote exploits are root exploits, but that sounds very sensationalist so I won't. > Bareing in mind, that most remote browser exploits require > you to be running windows as it is the windows / browser intergration > which contains bugs. Not AFAIK. Remove a piece of shit from a turd and you're still left with a heap of shit.