Windows Vista ISV Security Paper Available

Matt Thomlinson and I wrote a document explaining how to take advantage of some of the buffer overrun defenses in Windows Vista. The document is now available here.

Enjoy 🙂

  1. Martin says:

    Very useful. Thanks. I’ve one small question about the heap corruption detection. The MSDN doc about HeapSetInformation does not mention that NULL can be passed as heap handle. Does it the obvious, i.e. apply the settings to all heaps the application uses? What happens with heaps created after that call? Will they have the detection enabled, too?

  2. Mondrim says:

    thanks ,it was a part of it.there’s an article that I think it will be useful :