Poll
Should software vendors reward independent researchers for finding vulnerabilities in their software?
Proactive Security Challenge
- Introduction
- Results and comments
- Testing levels
- List of products
- Archive of results
- My leaks
- Frequently asked questions
Testing levels
Contents:
Level 10
The product has to score at least 100% in the tests on this level to pass it.
Tests
BSODhook
Test type: Other
Scoring: Failure (any of the tested functions causes the system crash or seriously damage the system) – 0%; Success – 100%.
Description: BSODhook
is not a part of SSTS, it is a stand-alone tool
that checks the implementation of a special kind of the tested product's kernel hooks. BSODhook test in the challenge probes hooked native SSDT functions.
ShadowHook
Test type: Other
Scoring: Failure (any of the tested functions causes the system crash or seriously damage the system) – 0%; Success – 100%.
Description: ShadowHook is a codename for the second version of BSODhook that added support for GDI SSDT functions. ShadowHook test probes hooked GDI SSDT functions.
Result table
In the following table
represents the 100% result and
represents the 0% result. Other values are displayed as rounded whole numbers. The last two columns summarize the product's
score on this level and whether it passed this level or not.
| Product | – – | Score | Result | ||
|---|---|---|---|---|---|
| II. ShadowHook | |||||
| III. BSODhook | |||||
| III. | II. | - | |||
| Comodo IS | 100 | 100 | – | 100% | PASSED |
| Jetico v2 | 100 | 100 | – | 100% | PASSED |
| KIS | 100 | 100 | – | 100% | PASSED |
| Malware Defender | 100 | 100 | – | 100% | PASSED |
| OA Free | 100 | 100 | – | 100% | PASSED |
| OA Premium | 100 | 100 | – | 100% | PASSED |
| Outpost Free | 100 | 100 | – | 100% | PASSED |
| PC Tools | 100 | 100 | – | 100% | PASSED |
| Privatefirewall | 100 | 100 | – | 100% | PASSED |
Levels
- Level 1 – Autorun1, Autorun3, Breakout2, Coat, ECHOtest, FileDel2, Kill1, Kill2, Leaktest, Tooleaky, Wallbreaker1, Yalta
- Level 2 – Autorun12, Autorun2, Autorun20, Autorun30, AWFT1, DNStest, FileMov2, Ghost, HostsBlock, Jumper, Kill3, Kill3b, Kill6, RegDel1, Wallbreaker3, Wallbreaker4
- Level 3 – Autorun16, Autorun24, Autorun31, Autorun4, AWFT3, AWFT4, DNStester, FileRep1, Kernel1, Kill3f, Kill4, Kill7, RegSet1, SSS2, Suspend1, Thermite, Wallbreaker2
- Level 4 – Autorun14, Autorun17, Autorun26, Autorun36, Autorun37, Autorun6, Autorun9, CopyCat, CPIL, CPILSuite1, FileRep2, Inject2, Inject3, Kernel1b, Keylog1, Kill3e, Kill8, Kill9, SSS, Suspend2
- Level 5 – Autorun15, Autorun18, Autorun21, Autorun28, Autorun5, Breakout1, CPILSuite2, Crash1, Crash2, Crash3, Crash4, FileWri1, Kernel2, Kernel3, Keylog2, Kill3c, Kill3d, RegDel2, Svckill, VBStest
- Level 6 – Autorun22, Autorun25, Autorun27, Autorun29, Autorun32, Autorun7, CPILSuite3, Crash5, Crash6, DDEtest, ECHOtest2, FileWri2, FireHole, Flank, Kernel4, Keylog3, Keylog4, Kill10, Kill11, Runner
- Level 7 – Autorun10, Autorun19, Autorun33, Autorun35, Autorun8, BITStest, Crash4b, FileDel1, FileMov1, FileWri3, FireHole2, Inject1, Keylog5, Keylog6, Kill12, OSfwbypass, RegAcc1, Runner2, Schedtest, SSS3
- Level 8 – Autorun11, Autorun13, Autorun23, Autorun34, FileDel3, FileOpn1, FileOpn2, Kernel4b, Kernel5, Kernel5b, Keylog7, Kill5, NewClass, Schedtest2, SockSnif, SSS4
- Level 9 – Crash7, Driver Verifier, FileAcc1, FileCtl1, FileWri4
- Level 10 – BSODhook, ShadowHook