Flash Player's Heap Isolation mitigation. A well-known company popular for buying and selling zero-day vulnerabilities is now offering up to $100,000 for providing a working zero-day exploit for bypassing the





Few months back, Adobe deployed Heap Isolation in Flash version 18.0.0209 with an aim at making the Use-After-Free (UAF) vulnerabilities more difficult for cybercriminals to exploit.





Zerodium is a startup by the infamous French-based company Vupen that Buys and Sells zero-day exploits and vulnerabilities.





the premium zero-day acquisition platform," recently Zerodium, which describes itself as "," recently paid $1 Million bounty to a hacker for submitting a remote browser-based iOS 9.1/9.2b Jailbreak (untethered) Exploit.





What is "Isolated Heap" Mitigation Technique?





The use-after-free vulnerability is a type of memory corruption flaw that can be exploited by Hackers to execute arbitrary code or even allows full remote code execution capabilities.





Isolated Heap mitigation mechanism is designed to solve the usage issue of Use-After-Free (UAF) exploitation.





This Mitigation technique allocates a dedicated heap for selected critical objects to use, which is separate from other heaps that a user can directly access.





Isolated Heap prevents precise control of the data, thus eliminates the hacker's ability to corrupt memory in this way.





Here's The Target to Win $100,000





Today, Zerodium posted a tweet announcing that the company is offering:

$100,000 this month for an exploit that bypasses heap isolation of Flash Player with a sandbox escape .

. $65,000 for an exploit that bypasses heap isolation of Flash Player without a sandbox escape.