Technology Microsoft's outdated driver list left Windows PCs open to...

Microsoft’s outdated driver list left Windows PCs open to malware attacks for years

-

Microsoft has failed to properly protect Windows PCs from malicious drivers for nearly three years a report of Ars Technica. Although Microsoft says its Windows updates add new malicious drivers to a block list downloaded by devices, Ars Technica found that these updates never really crashed.

This coverage gap left users vulnerable to a certain type of attack called BYOVD, or bring your own vulnerable driver. Drivers are the files your computer’s operating system uses to communicate with external devices and hardware, such as a printer, graphics card, or webcam. Because drivers access the core of a device’s operating system, or kernel, Microsoft requires all drivers to be digitally signed, demonstrating that they can be used safely. But if an existing digitally signed driver has a vulnerability, hackers can exploit it and gain direct access to Windows.

As noted by Ars TechnicaMicrosoft uses something called hypervisor-protected code integrity (HVCI) that should protect against malicious drivers, which company says it is enabled standard on select Windows devices. However, both Ars Technica and Will Dormann, a senior vulnerability analyst at cybersecurity firm Analygence, found that this feature does not provide adequate protection against malicious drivers.

In a thread posted on twitter in September, Dormann explains that he managed to download a malicious driver onto an HVCI device, even though the driver was on Microsoft’s block list. He later found that Microsoft’s block list hasn’t been updated since 2019, and that Microsoft’s ASR (Attack Surface Reduction) capabilities also don’t protect against malicious drivers. This means that all devices with HVCI enabled have not been protected from bad drivers for about three years.

Microsoft only commented on Dormann’s findings earlier this month. “We’ve updated the online docs and added a download with instructions to apply the binary directly,” Microsoft Project Manager Jeffery Sutherland said in a reply to Dormann’s tweets. “We’re also resolving issues with our maintenance process that prevented devices from receiving policy updates.” Microsoft has since provided instructions on how to update the block list manually with the vulnerable drivers missing for years, but it’s still not clear when Microsoft will automatically add new drivers to the list through Windows updates.

“The list of vulnerable drivers is regularly updated, but we have received feedback that there is a gap in synchronization between OS versions,” a Microsoft spokesperson said in a statement. Ars Technica. “We have corrected this and it will be maintained in upcoming and future Windows updates. The documentation page will be updated as new updates are released.” Microsoft did not immediately respond to The edge‘s request for comment.


Shreya Christinahttp://ukbusinessupdates.com
Shreya has been with ukbusinessupdates.com for 3 years, writing copy for client websites, blog posts, EDMs and other mediums to engage readers and encourage action. By collaborating with clients, our SEO manager and the wider ukbusinessupdates.com team, Shreya seeks to understand an audience before creating memorable, persuasive copy.

Latest news

1xbet App ᐉ Скачать 1xbet Mobile 1xbet Apk Android & Ios ᐉ My 1xbet Co

1xbet App ᐉ Скачать 1xbet Mobile 1xbet Apk Android & Ios ᐉ My 1xbet Com1xbet Официальное Приложение Скачать и...

Вулкан Вегас официальному Сайт: Автоматы в Деньги В Vulkan Vega

Вулкан Вегас официальному Сайт: Автоматы в Деньги В Vulkan VegasЛучшие Сайты Онлайн-слотов В 2024 году Игры На Игровые Автоматы...

Comment jouer au RDR2 Poker Un guide pour gagner au RDR2 Poker

Fort heureusement, vous pouvez sauvegarder entre chaque parties gagnées et quitter la table en cours de partie dans modifier...

comment ouvrir un casino 653756

Elle garantit que le casino opère selon des normes établies pour protéger les joueurs, garantir des jeux équitables et...

Royal Ace Casino Review Updated for April 2024

Nous sommes un annuaire indépendant et un réviseur de casinos en ligne, un forum sur les casinos et un...

Red Dead Redemption 2, comment tricher au poker

Lorsque vous jouez contre des joueurs expérimentés, cela les empêche d'apprendre votre style et de prédire vos décisions. Une...

Must read

You might also likeRELATED
Recommended to you