Windows 10 Exploit Could Let Malware In


An article review.


The User Account Control bug allowed for malicious code to run with the highest privileges


ServIcons_ITAudit_01

While Windows 10 promises to be the most secure version of the operating system yet, it’s not entirely free from bugs as security researchers pointed out recently.

The new exploit targets the Disk Cleanup and Silent Cleanup functions of the operating system, both of which are granted administrator-level access by Windows’ User Account Control function. In a worst case scenario, malicious code could be inserted into the programs, which would then run at the highest privilege levels on the target system.

While the researchers offer a solution, it involves altering internal Windows settings and can cause other problems with regular operation, leading them to conclude Microsoft should change the privilege level of the applications involved instead. For their part Microsoft is not treating this as a security bug, claiming that User Account Control is not a security measure.


Original article by Henry T. Casey writing for Laptop Magazine.


same_strip_012513


 

To see more content like this in your inbox, sign up for our newsletter here!

Related Posts

The Magnificent Seven 2023

Seven Trends . . . …that small bank Information Security Officers face in 2023 Another one of those Dan’s New Leaf Posts, meant to inspire thought about IT Governance . . . . Welcome t...

“2026 Cybersecurity Awareness Month” – Awareness Poster

Another awareness poster for YOUR customers (and users). Now that we have our own employees aware, maybe it’s time to start posting content for our customers!Check out posters.infotex.com for th...