• Latest
  • Trending

New bug in Microsoft Windows could allow hackers to easily install a rootkit – The Hacker News

23.09.2021
Cate Blanchett rocks neon orange hair as she films film adaptation of Borderlands video game

Cate Blanchett rocks neon orange hair as she films film adaptation of Borderlands video game

26.01.2023
Kolo Toure is sacked as Wigan manager after just 59 days in charge of the Championship wrestlers, with ex-Latics man Shaun Maloney vying to take over

Kolo Toure is sacked as Wigan manager after just 59 days in charge of the Championship wrestlers, with ex-Latics man Shaun Maloney vying to take over

26.01.2023
Ashley Graham the pin-up in a bikini!  Vogue model shows off her slim belly

Ashley Graham the pin-up in a bikini! Vogue model shows off her slim belly

26.01.2023
Porsche 911 GT3 Drag Races Itself in Manual Duel Against PDK

F1 driver Carlos Sainz takes delivery of the customized 812 Competizione

26.01.2023

Global Commercial Printing Market Report 2022: Industry to reach $574.12 billion by 2030 at a CAGR of 2.4%

26.01.2023
Oxford v Arsenal: Bet £10 Get £50 Free Bets with bet365

Man Utd v Reading: Bet £10 and get £50 free bet with bet365

26.01.2023

Markel announces date and time for conference call

26.01.2023
Pregnant Ashley James cradles her growing baby in a white jumpsuit

Pregnant Ashley James cradles her growing baby in a white jumpsuit

26.01.2023
Emmerdale fans confused as Leyla flees locked bedroom from outside

Emmerdale fans confused as Leyla flees locked bedroom from outside

26.01.2023

Cincinnati Bancorp, Inc. Announces Voluntary SEC Delisting and Nasdaq Delisting

26.01.2023
‘Grow up’ – Simon Jordan sends message to ‘shaken’ Jesse Marsch after Leeds manager’s x-rated rant in English media

Accrington Stanley v Leeds LIVE commentary: Jesse Marsch determined to avoid getting upset as League One side seek to break FA Cup curse – kick-off time, team news and talkSPORT cover

26.01.2023
Rupert Grint Will Return As Ron Weasley In More Harry Potter Projects On One Condition

Rupert Grint Will Return As Ron Weasley In More Harry Potter Projects On One Condition

26.01.2023
Thursday, January 26, 2023
  • World
  • Economics
  • Sport
    • Basketball
    • Football
    • Nfl
    • Golf
    • F1
    • UFC
  • Technology
  • Culture
    • Arts
  • Media
    • Film
    • Celebs
    • TV
  • LifeStyle
    • Auto
  • Travel
OLTNEWS
  • World
  • Economics
  • Sport
    • Basketball
    • Football
    • Nfl
    • Golf
    • F1
    • UFC
  • Technology
  • Culture
    • Arts
  • Media
    • Film
    • Celebs
    • TV
  • LifeStyle
    • Auto
  • Travel
OLTNEWS
No Result
View All Result

Home » Technology » New bug in Microsoft Windows could allow hackers to easily install a rootkit – The Hacker News

New bug in Microsoft Windows could allow hackers to easily install a rootkit – The Hacker News

23/09/2021 14:08:06
in Technology
0
0
SHARES
Share on WhatsappShare on Facebook

Related posts

Global Commercial Printing Market Report 2022: Industry to reach $574.12 billion by 2030 at a CAGR of 2.4%

26.01.2023

Markel announces date and time for conference call

26.01.2023

Security researchers have revealed an uncorrected weakness in Microsoft Windows Platform Binary Table (WPBT) affecting all Windows-based devices since Windows 8 that could potentially be exploited to install a rootkit and compromise device integrity.

“These flaws make every Windows system vulnerable to easily designed attacks that install fraudulent vendor-specific tables,” Eclypsium researchers said in a report released Monday. “These tables can be exploited by attackers with direct physical access, with remote access, or through manufacturer supply chains. More importantly, these motherboard flaws can prevent initiatives like Secured-core. due to the ubiquitous use of ACPI. [Advanced Configuration and Power Interface] and WPBT. “

WPBT, introduced with Windows 8 in 2012, is a feature that allows “boot firmware to provide Windows with a binary platform that the operating system can run.”

In other words, it allows PC manufacturers to point to signed portable executables or other vendor-specific drivers that are part of the UEFI firmware ROM image so that it can be loaded into the physical memory during Windows initialization and before executing any operating system code.

The main goal of WPBT is to allow critical features like anti-theft software to persist even in scenarios where the operating system has been modified, formatted or reinstalled. But given the feature’s ability to have such software “stay on the device indefinitely,” Microsoft has warned of potential security risks that could arise from improper use of WPBT, including the possibility to deploy rootkits on Windows machines.

“Because this feature provides the ability to persistently run system software in the context of Windows, it becomes essential that WPBT-based solutions are as secure as possible and do not expose Windows users to exploitable conditions. “, notes the manufacturer of Windows in its documentation. “In particular, WPBT solutions must not include malware (that is, malware or unwanted software installed without adequate user consent).”

The vulnerability discovered by the enterprise firmware security company is rooted in the fact that the WPBT mechanism can accept a signed binary with a revoked or expired certificate to completely bypass the integrity check, thus allowing an attacker to sign a malicious binary with a file already available. expired certificate and run arbitrary code with kernel privileges on device startup.

Corporate password management

In response to the results, Microsoft recommended using a Windows Defender Application Control (WDAC) policy to tightly control which binaries can be allowed to run on devices.

The latest disclosure follows a separate set of findings in June 2021, which involved a set of four vulnerabilities – collectively known as BIOS Disconnect – that could be militarized to obtain remote execution in a device’s firmware during an upgrade. BIOS update, further highlighting the complexity and challenges involved in securing the boot process.

“This weakness can potentially be exploited through multiple vectors (eg, physical, remote, and supply chain access) and by multiple techniques (eg, malicious boot loader, DMA, etc.),” the researchers said. “Organizations will need to consider these vectors and use a layered security approach to ensure that all available fixes are applied and identify any potential compromises on devices. “



Related

Previous Post

Will the Carolina Panthers go undefeated? Plus, front office drama for the Timberwolves

Next Post

Kate Ritchie and her seven-year-old daughter Mae have a great time at the beach with their puppy

Related Posts

Technology

Global Commercial Printing Market Report 2022: Industry to reach $574.12 billion by 2030 at a CAGR of 2.4%

26.01.2023
0

DUBLIN, January 26, 2023 /PRNewswire/ -- The "Commercial Printing Market" report has been added to from ResearchAndMarkets.com offer. The global...

Read more

Markel announces date and time for conference call

26.01.2023

Cincinnati Bancorp, Inc. Announces Voluntary SEC Delisting and Nasdaq Delisting

26.01.2023

Apple always offers security updates for devices that are almost 10… – MUO – MakeUseOf

26.01.2023

Global Antimicrobial Resistance Diagnostics Market Report 2023-2028 – Multiple Diagnostics Technologies Create New Global Race

26.01.2023

Concentric Energy Advisors Announces Team Promotions

26.01.2023
Load More
Next Post

Kate Ritchie and her seven-year-old daughter Mae have a great time at the beach with their puppy

Recent Posts

  • Cate Blanchett rocks neon orange hair as she films film adaptation of Borderlands video game
  • Kolo Toure is sacked as Wigan manager after just 59 days in charge of the Championship wrestlers, with ex-Latics man Shaun Maloney vying to take over
  • Ashley Graham the pin-up in a bikini! Vogue model shows off her slim belly
  • F1 driver Carlos Sainz takes delivery of the customized 812 Competizione
  • Global Commercial Printing Market Report 2022: Industry to reach $574.12 billion by 2030 at a CAGR of 2.4%

Archives

  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • EN

© 2020

No Result
View All Result
  • World
  • Economics
  • Sport
    • Basketball
    • Football
    • Nfl
    • Golf
    • F1
    • UFC
  • Technology
  • Culture
    • Arts
  • Media
    • Film
    • Celebs
    • TV
  • LifeStyle
    • Auto
  • Travel

© 2020

This website uses cookies. By continuing to use this website you are giving consent to cookies being used. Visit our Privacy and Cookie Policy.