Microsoft

A Windows Defender vulnerability lurked undetected for 12 years

EnlargeDrew Angerer | Getty Images reader comments 33 with 27 posters participating Share this story Share on Facebook Share on Twitter Share on Reddit Just because a vulnerability is old doesn’t mean it’s not useful. Whether it’s Adobe Flash hacking or the EternalBlue exploit for Windows, some methods are just too good for attackers to…

Shadowy figures stand beneath a Microsoft logo on a faux wood wall.
Enlarge
Drew Angerer | Getty Images

reader comments

33 with 27 posters participating

Just because a vulnerability is old doesn’t mean it’s not useful. Whether it’s Adobe Flash hacking or the EternalBlue exploit for Windows, some methods are just too good for attackers to abandon, even if they’re years past their prime. But a critical 12-year-old bug in Microsoft’s ubiquitous Windows Defender antivirus was seemingly overlooked by attackers and defenders alike until recently. Now that Microsoft has finally patched it, the key is to make sure hackers don’t try to make up for lost time.

The flaw, discovered by researchers at the security firm SentinelOne, showed up in a driver that Windows Defender—renamed Microsoft Defender last year—uses to delete the invasive files and infrastructure that malware can create. When the driver removes a malicious file, it replaces it with a new, benign one as a sort of placeholder during remediation. But the researchers discovered that the system doesn’t specifically verify that new file. As a result, an attacker could insert strategic system links that direct the driver to overwrite the wrong file or even run malicious code.

Windows Defender would be endlessly useful to attackers for such a manipulation, because it ships with Windows by default and is therefore present in hundreds of millions of computers and servers around the world. The antivirus program is also highly trusted within the operating sy

!–>

Read More

Be the first to write a comment.

Leave a Reply

Your email address will not be published. Required fields are marked *

Microsoft

Crypto Miners Surge on US$17.4B Microsoft–Nebius AI Chip Deal

Shares of cryptocurrency mining firms rose sharply on Tuesday following news of a major deal between Nebius Group and Microsoft, valued at US$17.4 billion (AU$26.36 billion). The agreement, running through 2031, will see the Netherlands-based Nebius provide dedicated GPU capacity to Microsoft’s artificial intelligence operations, with the option for expansion up to US$19.4 billion (AU$29.37

Shares of cryptocurrency mining firms rose sharply on Tuesday following news of a major deal between Nebius Group and Microsoft, valued at US$17.4 billion (AU$26.36 billion). The agreement, running through 2031, will see the Netherlands-based Nebius provide dedicated GPU capacity to Microsoft’s artificial intelligence operations, with the option for expansion up to US$19.4 billion (AU$29.37 […]
The post Crypto Miners Surge on US$17.4B Microsoft–Nebius AI Chip Deal appeared first on Crypto News Australia…
Read More

Continue Reading
Microsoft

Google, Microsoft, TikTok Closes 13.6 Million Accounts Over ‘Offensive Content’

ABUJA, Nigeria — The Federal Government of Nigeria has disclosed that 13,597,057 social media accounts were shut down in 2024 for violations ranging from offensive content to breaches of the Code of Practice for Internet platforms. The announcement came in the Code of Practice 2024 Compliance Report…

ABUJA, Nigeria — The Federal Government of Nigeria has disclosed that 13,597,057 social media accounts were shut down in 2024 for violations ranging from offensive content to breaches of the Code of Practice for Internet platforms. The announcement came in the Code of Practice 2024 Compliance Report…
Read More

Continue Reading
Microsoft

ASUS Teases Another ‘Extraordinary’ Xbox Reveal For Gamescom 2025

From material to a new form of power.”.We already know that ASUS and Microsoft will be having a lot more to say about the ROG Xbox Ally handheld as part of the Gamescom festivities next week, but apparently we’re also getting another major Xbox reveal from ASUS!This has been teased as part of a short

From material to a new form of power.”.We already know that ASUS and Microsoft will be having a lot more to say about the ROG Xbox Ally handheld as part of the Gamescom festivities next week, but apparently we’re also getting another major Xbox reveal from ASUS!This has been teased as part of a short social media video today…
Read More

Continue Reading
Microsoft

Talking Point: Is Forza Horizon About To Become Xbox’s Main Forza Franchise?

The future of Motorsport is in doubt.Last week, some of the Xbox community started taking note of how quiet Forza Motorsport had been on social media since Microsoft’s recent layoffs, which the Xbox developer swiftly responded to with reassurances that both Forza Motorsport and Forza Horizon 5 are still being supported by the team…

The future of Motorsport is in doubt.Last week, some of the Xbox community started taking note of how quiet Forza Motorsport had been on social media since Microsoft’s recent layoffs, which the Xbox developer swiftly responded to with reassurances that both Forza Motorsport and Forza Horizon 5 are still being supported by the team…
Read More

Continue Reading