Back to list
New paper by Amit Klein (Trusteer): "Detecting virtualization over the web with IE9 (platform preview) and Semi-permanent computer fingerprinting and user tracking in IE9 (platform preview)"
Dec 02 2010 07:25PM
Amit Klein (amit klein trusteer com)
Interestingly enough, this technique also provides some information regarding the client hardware (namely clock source and possibly CPU clock speed), and may be used to detect virtualized machines "over the web".
Additionally, the Math.random implementation is flawed in such way that it returns non-uniform values (this holds for IE9 beta as well).
For full details, please read:
Amit Klein, CTO, Trusteer
[ reply ]
Copyright 2010, SecurityFocus