Windows Security Function Bypassed By New 0-Day Threat, Microsoft Says

Windows Update Nyheter

Windows Security Function Bypassed By New 0-Day Threat, Microsoft Says
MicrosoftCVE-2024-38217Windows
  • 📰 ForbesTech
  • ⏱ Reading Time:
  • 37 sec. here
  • 11 min. at publisher
  • 📊 Quality Score:
  • News: 49%
  • Publisher: 59%

Davey Winder is a technology journalist who covers cybersecurity news and research. He’s covered everything from the true story behind the hacking of Donald Trump’s nude photos to a record-breaking ransomware payment of $75 million.

Patch Tuesday has passed, and we are now left with what is colloquially known in cybersecurity circles as Exploit Wednesday . This month, that could be more problematic for Windows users than usual as Microsoft confirms four zero-day threats, including, and it’s a bad one. I mean, that should be taken as a given considering it’s classed as a zero-day vulnerability. By Microsoft ’s definition, a zero-day vulnerability is a flaw for which “no official patch or security update has been released.

In the case of CVE-2024-38217, the vulnerability has been both publicly disclosed and active exploitation detected. This makes it a worst-case scenario, only tempered by the fact that the fix is included in the new Patch Tuesday security update rollout. So, what threat does it pose specifically? It’s what is known as a security feature bypass vulnerability because it allows an attacker to get around the protections that Mark of the Web provides for Windows users. “This vulnerability allows an attacker to manipulate the security warnings that typically inform users about the risks of opening files from unknown or untrusted sources,” Saeed Abbasi, manager of vulnerability research at the Qualys Threat Research Unit, said.

Vi har oppsummert denne nyheten slik at du kan lese den raskt. Er du interessert i nyhetene kan du lese hele teksten her. Les mer:

ForbesTech /  🏆 318. in US

Microsoft CVE-2024-38217 Windows Patch Tuesday Exploit Wednesday Zero-Day Hackers Windows Security Windows Security Update

Norge Siste Nytt, Norge Overskrifter

Similar News:Du kan også lese nyheter som ligner på denne som vi har samlet inn fra andre nyhetskilder.

Windows 11 Finally Overtakes Windows 10 On SteamWindows 11 Finally Overtakes Windows 10 On SteamBarry Collins has been a technology writer and editor for more than 20 years. He covers new developments in PCs, Macs, gaming and more, including the CrowdStrike crisis. He was assistant editor of The Sunday Times’ technology section, editor of PC Pro magazine and has written for more than a dozen different publications and websites over the years.
Les mer »

Microsoft to host CrowdStrike and others to discuss Windows security changesMicrosoft to host CrowdStrike and others to discuss Windows security changesMicrosoft is inviting CrowdStrike and other security vendors to its headquarters next month. The security summit aims to improve Windows resiliency.
Les mer »

There’s a scary new way to undo Windows security patchesThere’s a scary new way to undo Windows security patchesA security researcher has released a new tool that can unpatch your Windows computer and expose it to old vulnerabilities.
Les mer »

Microsoft’s latest security update has ruined dual-boot Windows and Linux PCsMicrosoft’s latest security update has ruined dual-boot Windows and Linux PCsMicrosoft has issued a security update that has broken dual-boot Linux and Windows machines. The update wasn’t supposed to reach dual-boot PCs.
Les mer »

Don’t use your Windows PC without using these security settingsDon’t use your Windows PC without using these security settingsKeep your Windows 11 PC safe and sound by tweaking these security settings. In just a few clicks, you’ll have increased your security and peace of mind.
Les mer »

You definitely want to install these 90 Windows security patchesYou definitely want to install these 90 Windows security patchesMicrosoft releases a huge number of fixes to combat a jaw-dropping 90 security flaws that include nine critical bugs.
Les mer »



Render Time: 2025-02-24 12:06:19