Thu01232020

Robins Global News & Noticias



  • Gaming Chair Review
    Gaming Chair Review
  • Writing Service Review
    Writing Service Review
  • Microsoft Exam
    Microsoft Exam
  • Youtube Marketing Guide
    Youtube Marketing Guide
  • Slot Game Review
    Slot Game Review
  • All Elite Wrestling
    All Elite Wrestling

RobinsPost News Network

+ Larger Font | - Smaller Font
Share

Consumer Daily Reports

Consumer News: Millions of Windows 10 users hit with yet another major system warning

PhotoWindows 10 users are facing another critical warning -- one which could potentially impact millions of users.

As part of a presentation at hacker clambake DEF CON, researchers from technology security firm Eclypsium revealed the issue, saying it applies "to all modern versions of Microsoft Windows.” 

The issue is rather complex, but the basic idea is that system drivers -- computer programs that operate a device attached to a computer (such as a printer) -- can be attacked by hackers and allow them access to a device’s Windows 10 system software.

What’s impacted

The total number of impacted hardware drivers the Eclypsium researchers found added up to 20, and that includes a gamut of drivers responsible for everything from booting up the computer to operating a USB mouse. According to a Forbes investigation of the matter, the drivers are all Microsoft-sanctioned drivers and from trusted vendors such as Intel and Toshiba.

"Bad drivers can be immensely dangerous,” the researchers claimed in their presentation. “Drivers that provide access to system BIOS or system components for the purposes of updating firmware, running diagnostics, or customizing options on the component can allow attackers to turn the very tools used to manage a system into powerful threats that can escalate privileges and persist invisibly on the host."

Help is already on the way

Before you pull the rest of your hair out over the recent parade of Windows 10 gaffes, this one is already being fixed from the vendor level. Mickey Shkatov, Principal Researcher at Eclypsium, told ZDNet that “vendors, like Intel and Huawei, have already issued updates.”

Shkatov blames the issues he discovered on a “common software design anti-pattern” from the developer end, mostly out of a desire to “perform arbitrary actions on behalf of userspace.” 

"It's easier to develop software by structuring drivers and applications this way, but it opens the system up for exploitation,” he said.

In ConsumerAffairs’ check of Microsoft’s support site, we found no update regarding the issue or possible fixes. However, Eclypsium’s presentation included these comments and suggestions from Microsoft, which consumers can employ to further guard themselves:

  • Microsoft has a strong commitment to security and a demonstrated track record of investigating and proactively updating impacted devices as soon as possible. For the best protection, we recommend using Windows 10 and the Microsoft Edge browser.

  • In order to exploit vulnerable drivers, an attacker would need to have already compromised the computer. To help mitigate this class of issues, Microsoft recommends that customers use Windows Defender Application Control to block known vulnerable software and drivers.

  • Customers can further protect themselves by turning on memory integrity for capable devices in Windows Security. 



Posted: 2019-08-12 14:49:22

Get Full News Story On Consumer Affairs


Listen to this article. Speaker link opens in a new window.
Text To Speech BETA Test Version.


Print Friendly and PDF
'
'


Related News Stories From The Web And More

Related Bing News

Consumer News: Millions of Windows 10 users hit with yet another major system warning | Consumer Daily Reports | RobinsPost News Network - Newscast

Citrix Issues New Security Warning: Use This Tool To Check For Compromise Now

Wed, 22 Jan 2020 10:54:00 GMT

Citrix has issued a new security alert to customers relating to the serious vulnerability known as CVE-2019-19781. Here’s what you need to know.

Global Vehicle Surveillance Market 2019 Future Trends and Forecast 2026

Wed, 22 Jan 2020 06:34:00 GMT

A new market research report by Big Market Research on Vehicle Surveillance Market reveals that the market is estimated to grow with a substantial growth rate from 2019-2026. This report is a valuable ...

NSA alerted Microsoft to major Windows 10 security flaw

Thu, 16 Jan 2020 06:37:00 GMT

The National Security Agency recently alerted Microsoft to a major flaw in its Windows operating system that could let hackers pose as legitimate software companies, agency officials said on Tuesday.

The Evil List

Wed, 15 Jan 2020 02:48:00 GMT

Maybe it was fake news ... Most major social media platforms have steered clear of deepfakes, since the technology can be abused to produce revenge porn and disinformation. But not ByteDance: In early ...

Clock Runs Out for Windows 7 Holdouts: Upgrade or Replace?

Tue, 14 Jan 2020 08:48:00 GMT

Microsoft has recommended that Windows 7 users move to Windows 10 prior to the end of support. Those that failed to heed the company's warning will ... Outdated systems are major targets for attackers ...

Related News Story Videos From Youtube

NSA Finds Major Security Flaw In Windows 10, Free Fix Issued


Related Videos On: NSA Finds Major Security Flaw In Windows 10, Free Fix Issued


NSA discovers security flaw in Microsoft Windows operating system


Related Videos On: NSA discovers security flaw in Microsoft Windows operating system


M5.3 Earthquake Puts Early Warning App To The Test


Related Videos On: M5.3 Earthquake Puts Early Warning App To The Test


New App 'MyShake' To Send Earthquake Early Warnings In California


Related Videos On: New App 'MyShake' To Send Earthquake Early Warnings In California


PS4 Hacker WARNING for Console Security!


Related Videos On: PS4 Hacker WARNING for Console Security!







Blow Us A Whistle

Comments (Whistles) Designed By Disqus




Company Information

Official Content Providers











PRIVACY POLICY

We recommend Firefox 3 (and above), Edge, and Chrome for dynamic performance.
© 2008-2020 RobinsPost (The Bird's Eye View Company) All rights are reserved.
RobinsPost provides links to news sites based on their RSS feeds.
All trademarks, copyrights, videos, photos and logos are owned by news sources.
News stories, videos and live streams are from trusted sources:
Bing News, Google News, Faroo News, NewsApi.org and YouTube Search Results.
ROBINSPOST Is Proudly Made In America.
Where Quality, Safety and Service Comes First.