New tool checks differences, could lead to 0-day bonanza
[…] Researcher Moti Joseph (@gamepe) – formerly of Websense – speculated Microsoft had not applied fixes to Win 7 to save money.
„Why is it that Microsoft inserted a safe function into Windows 8 [but not] Windows 7? The answer is money – Microsoft does not want to waste development time on older operating systems … and they want people to move to higher operating systems,“ Joseph said in a presentation at the Troopers14 conference. […]
In a demonstration of DiffRay, the researchers found four missing safe functions in Windows 7 that were present in 8.
„If we get one zero-day from this project, it’s worth it,“ Joseph said.