Black Hat Briefings, Usa 2007 [audio] Presentations From The Security Conference.

David Leblanc: Practical Sandboxing: Techniques for Isolating Processes



The sandbox created for the Microsoft Office Isolated Converter Environment will be demonstrated in detail. The combination of restricted tokens, job objects, and desktop changes needed to seriously isolate a process will be demonstrated, along with a demonstration of why each layer is needed.