The Sony story just keeps getting worse

Ed Felten says Don’t Use Sony’s Web-based XCP Uninstaller:

Alex Halderman and I have confirmed that Sony’s Web-based XCP uninstallation utility exposes users to serious security risk. Under at least some circumstances, running Sony’s Web-based uninstaller opens a huge security hole on your computer. We have a working demonstration exploit.

We are working furiously to nail down the details and will report our results here as soon as we can.

In the meantime, we recommend strongly against downloading or running Sony’s Web-based XCP uninstaller.

Oy.

Comments are closed. If you have a question or correction, please contact me on Twitter.

Hosted by A2

A2 Hosting does PHP5, MySQL5, PostgreSQL 8, cPanel, Ruby on Rails, and SSH/Shell.
I use them because I like dealing with responsive, friendly human beings.
Plans from $2.95/month.