176 karma · joined December 8, 2014
Does modern ASLR increase costs (time, difficulty, money, skill, etc.) necessary for exploitation and decrease benefits (privs, chances of success, etc.)? If yes, then it's a protection. Any security engineer will tell you unequivocally ASLR is a protection. And one of the most successful ones to date.
I also didn't check for executable heaps at the time but given that all heaps are non executable (which they really shouldn't be executable in VLC) again I don't see how RCE is possible. Maybe there is some way to validate and therefore brute force addresses? I don't know. But there was no VLC POC and I'm sure they would have made one if they could have.
Use VLC it's the most secure media player I've seen.
The danger is letting companies influence sections that are believed to be objective and honest. One example of this is Michael Arrington the founder and former editor-in-chief of TechCrunch who is famous for investing in start-ups that his blogs would then cover. Not only that but he was partner in two investment funds during his tenure and now has his own fund, CrunchFund. All this to say that he has special interests in dozens of companies at any one time. When AOL bought TechCrunch they eventually let him go because in part of his conflicts of interest.
For example, I wish someone told me to stay away from php when I began learning. My motivation was to become as effective as quickly as possible not just a casual learner or hobbyist. I wanted to hear the harsh criticisms and realities as quickly as possible because that's where the growth is. Of course feedback should not "denigrate" the beginner as the title says but giving the complicated, multifaceted truth early on may be desired rather than compartmentalizing and simplifying the reality.
See work on "expertise" by Ericsson and Hoffman (and others) for support of my argument.