Google: insecure the most secure Microsoft operating system

Google He discovered a security vulnerability in Windows 10 S, the version of Windows 10 that Microsoft cites as the most secure because it restricts users from using Win32 apps. The security loophole allows arbitrariness κώδικα σε συσκευές με ενεργοποιημένη τη λειτουργία Device Guard,  αλλά σύμφωνα με μια δημοσίευση από το Neowin, μια επιτυχή εκμετάλλευση απαιτεί πρόσβαση στο .google Windows 10 S

The vulnerability was discovered by the program which gives stakeholders a 90-day deadline to address bugs in their software. But Microsoft appears to have requested an extension to the deadline after previously releasing an update for the vulnerability in January.

The company then prepared a fix for April, but apparently could not finish it, asking for a deadline by May. However, Google refused to postpone another postponement of the vulnerability, and from now on all the details are released online.

The Windows 10 S bug is particularly difficult to exploit, but if the "safest Windows system" manages to do so, go for a walk.
Windows 10 S does not allow it Win32 software and Microsoft allows upgrading to directly through the operating system. However, the availability of Windows 10 S as autonomous functional will soon stop and will be integrated into Windows 10 as "S Mode".

So although Microsoft has promised a patch on May 3rd Patch, it's not sure it will be released as the plan is to integrate the operating as a function into the main OS of the company, namely Windows 10.

If you are interested in more technical details and want the PoC vulnerability you will find it on its announcement page Project Zero of Google.

iGuRu.gr The Best Technology Site in Greecefgns

every publication, directly to your inbox

Join the 2.087 registrants.

Written by giorgos

George still wonders what he's doing here ...

Leave a reply

Your email address is not published. Required fields are mentioned with *

Your message will not be published if:
1. Contains insulting, defamatory, racist, offensive or inappropriate comments.
2. Causes harm to minors.
3. It interferes with the privacy and individual and social rights of other users.
4. Advertises products or services or websites.
5. Contains personal information (address, phone, etc.).