Microsoft Windows is no longer secure: A new bug can enable hackers to install Rootkit in your device

Sep 25, 2021 | Shaoni Ghosh

Microsoft Windows is no longer secure: A new bug can enable hackers to install Rootkit in your device title banner

The Findings

 

Researchers discovered an unfixed vulnerability in Microsoft's Windows Platform Binary Table (WPBT), which impacts all Windows-based devices since Windows 8, and may be used to install a rootkit and compromise device integrity.

 

Every OS is vulnerable to attacks that install fake vendor-specific tables due to loopholes in Windows. Because of the widespread use of ACPI and WPBT, these motherboard-level vulnerabilities may render projects like Secured-core obsolete.Experts claim that attackers with physical access or remote access can misuse these tables.

 

WPBT is a feature that was first introduced in Windows 8 in 2012 and allows boot firmware to supply Windows with a platform binary that the OS may process.

 

PC makers can use UEFI to point to certified portable executables or other vendor-specific drivers that are included in the UEFI firmware ROM image and can be loaded into physical memory during Windows boot-up. To put it another way, it enables users to pre-load any OS code before running it on a device.

 

WPBT is built to keep important functions like anti-theft software running even if the operating system is changed, formatted, or reinstalled.

 

(Recommended Blog: Security Analytics)

 

Misuse of the technology, according to Microsoft, might pose a security risk. It also allows the installation of rootkits on computers.

 

(Must Check: 7 Best Data Security Practices)

 

WPBT-based solutions must be as safe as feasible, with no vulnerable circumstances for Windows users. Microsoft warns that the Malware (malicious software or undesirable software) must not be deployed without the agreement of the user in WPBT solutions.

 

(Related Reading: Malware- one of the types of Cyber Threats)

 

According to TheHackerNews, the WPBT method can accept a signed binary with a revoked or expired certificate to entirely circumvent the integrity check, allowing an attacker to sign a malicious binary with an already accessible expired certificate and run arbitrary code with kernel privileges when the device starts up.

 

Microsoft has advised applying a Windows Defender Application Limit (WDAC) policy to strictly control what binaries can be allowed to execute on devices in response to the results.Researchers have discovered a second set of flaws in the boot process of devices that may be exploited to achieve remote execution. 

 

The current revelation comes after a different series of findings in June 2021 involving a group of four vulnerabilities known as BIOS Disconnects.

Tags #Technology
Advertisement

jeffreaganakedb2107cd96f45c8

Jul 16, 2024

RESTORING PERISHED, HIJACKED OR STOLEN BITCOINS. CONTACT THE HACK ANGELS NOW:  THE HACK ANGEL is an expert that can assist you in retrieving all of the money you've lost to online crooks. It recently worked for me, and I now have piece of mind after successfully recovering all of my lost monies. If you have been the victim of an online fraud, THE HACK ANGELS can help. I know little about other individuals, but I have seen their work. I will suggest you to reach out to them NOW with the information below. WHatsAP: +1 203,309,3359 Email: hackangel@cyberdude.com Web: https://thehackangels.com

jeffreaganakedb2107cd96f45c8

Jul 16, 2024

RESTORING PERISHED, HIJACKED OR STOLEN BITCOINS. CONTACT THE HACK ANGELS NOW:  THE HACK ANGEL is an expert that can assist you in retrieving all of the money you've lost to online crooks. It recently worked for me, and I now have piece of mind after successfully recovering all of my lost monies. If you have been the victim of an online fraud, THE HACK ANGELS can help. I know little about other individuals, but I have seen their work. I will suggest you to reach out to them NOW with the information below. WHatsAP: +1 203,309,3359 Email: hackangel@cyberdude.com Web: https://thehackangels.com

jeffreaganakedb2107cd96f45c8

Jul 16, 2024

RESTORING PERISHED, HIJACKED OR STOLEN BITCOINS. CONTACT THE HACK ANGELS NOW:  THE HACK ANGEL is an expert that can assist you in retrieving all of the money you've lost to online crooks. It recently worked for me, and I now have piece of mind after successfully recovering all of my lost monies. If you have been the victim of an online fraud, THE HACK ANGELS can help. I know little about other individuals, but I have seen their work. I will suggest you to reach out to them NOW with the information below. WHatsAP: +1 203,309,3359 Email: hackangel@cyberdude.com Web: https://thehackangels.com

jeffreaganakedb2107cd96f45c8

Jul 16, 2024

RESTORING PERISHED, HIJACKED OR STOLEN BITCOINS. CONTACT THE HACK ANGELS NOW:  THE HACK ANGEL is an expert that can assist you in retrieving all of the money you've lost to online crooks. It recently worked for me, and I now have piece of mind after successfully recovering all of my lost monies. If you have been the victim of an online fraud, THE HACK ANGELS can help. I know little about other individuals, but I have seen their work. I will suggest you to reach out to them NOW with the information below. WHatsAP: +1 203,309,3359 Email: hackangel@cyberdude.com Web: https://thehackangels.com

jeffreaganakedb2107cd96f45c8

Jul 16, 2024

RESTORING PERISHED, HIJACKED OR STOLEN BITCOINS. CONTACT THE HACK ANGELS NOW:  THE HACK ANGEL is an expert that can assist you in retrieving all of the money you've lost to online crooks. It recently worked for me, and I now have piece of mind after successfully recovering all of my lost monies. If you have been the victim of an online fraud, THE HACK ANGELS can help. I know little about other individuals, but I have seen their work. I will suggest you to reach out to them NOW with the information below. WHatsAP: +1 203,309,3359 Email: hackangel@cyberdude.com Web: https://thehackangels.com

miller7tiffany5d5b8775cdb7435f

Jul 17, 2024

Crypto Recovery Expert | Recover Stolen Cryptocurrency "I cannot thank Captain WebGenesis enough for helping me recover my money from a crypto scam. I was devastated when I realized I had fallen victim to a fraudulent investment Website, but thanks to Captain WebGenesis's services, I was able to get my hard-earned money back. Their group of experienced experts put forth a lot of effort to work on my case and they successfully traced and recovered my lost funds. Without the help of Captain WebGenesis, I don't know where I would be today. I appreciate Captain WebGenesis for offering this crucial and worthwhile service." Contact Information; Website; Captainwebgenesis .c om Email; Captainwebgenesis@hackermail .c o m Whatsapp; +1 (501, 436 (93 62

miller7tiffany5d5b8775cdb7435f

Jul 17, 2024

Crypto Recovery Expert | Recover Stolen Cryptocurrency "I cannot thank Captain WebGenesis enough for helping me recover my money from a crypto scam. I was devastated when I realized I had fallen victim to a fraudulent investment Website, but thanks to Captain WebGenesis's services, I was able to get my hard-earned money back. Their group of experienced experts put forth a lot of effort to work on my case and they successfully traced and recovered my lost funds. Without the help of Captain WebGenesis, I don't know where I would be today. I appreciate Captain WebGenesis for offering this crucial and worthwhile service." Contact Information; Website; Captainwebgenesis .c om Email; Captainwebgenesis@hackermail .c o m Whatsapp; +1 (501, 436 (93 62

sarahquann1f3e4f21a19994e12

Jul 17, 2024

I lost $303,450 with a fake crypto investor. I am Kenneth Brown and here is my story. Of course, they advise us to do a good background check before deciding where and when to invest. But they entirely forget that the scammers have a "clean" background record. So you will find all the good reviews and ads about them when you research. Mine was no different. They looked legit, and I made my deposits, plus more deposits when chasing my withdrawals. I reached my limit and knew I had to get my money back no matter what. I did some deep searching and finally decided to try out SWIFT SPY ASSETS RECOVERY. And guess who had their total investment money back in approximately 20 hours? The good thing about this hacker is that they only require the transaction information and the hacker's address, and everything else is on them until the money is fully back. Reach them by email: (swiftrecoveryservice006 @gmail .com) or WhatsApp number: +1 (786) 684‑0501. Or Telegram: @SWIFT_HACKING. Visit their website at https://swiftspyassetsrecovery.com to get the help you need with finances and crypto.

edwardscaroline950471f7c1117da4a62

Jul 21, 2024

How I Recovered My scammed Cryptocurrency with Captain WebGenesis "Being a victim of a Cryptocurrency fraud, I had given up on ever getting my hard-earned money back. Having Lost a significant amount of my portfolio through the scam, I was completely depleted and on the verge of losing everything. That is until I came across Captain WebGenesis, a group of experienced Cryptocurrency recovery experts. Their group was really beneficial and effective in assisting me in getting my money back from the con artists. They went above and beyond to guide me through the process, and I'm glad to report that with their help, I was able to get my money back. I appreciate Captain WebGenesis' commitment to aiding victims such as myself." Send a complaint to Email: Captainwebgenesis@ hackermail. c om Text/ Call; +1 (501) 436,9362. Learn More; Captainwebgenesis. com

edwardscaroline950471f7c1117da4a62

Jul 21, 2024

How I Recovered My scammed Cryptocurrency with Captain WebGenesis "Being a victim of a Cryptocurrency fraud, I had given up on ever getting my hard-earned money back. Having Lost a significant amount of my portfolio through the scam, I was completely depleted and on the verge of losing everything. That is until I came across Captain WebGenesis, a group of experienced Cryptocurrency recovery experts. Their group was really beneficial and effective in assisting me in getting my money back from the con artists. They went above and beyond to guide me through the process, and I'm glad to report that with their help, I was able to get my money back. I appreciate Captain WebGenesis' commitment to aiding victims such as myself." Send a complaint to Email: Captainwebgenesis@ hackermail. c om Text/ Call; +1 (501) 436,9362. Learn More; Captainwebgenesis. com