Security News “Open Sesame” Vulnerability That Let Users Hack Windows 10 Was Demonstrated at Black Hat Conference

LASER_oneXM

Level 37
Thread author
Verified
Top Poster
Well-known
Feb 4, 2016
2,520
The flaw originates in Cortana, the digital assistant, according to a group of security experts. The info was presented at the Black Hat USA conference held in Las Vegas, NV. The researchers also discovered that any individual could gain the rights to access files containing sensitive data, download and run files that have been infected, connect to malicious sites, and also get prominent privileges on a computer that has been locked.

All of this is possible because the Windows 10 UI lets apps continue to run in the background. Also, tasks can still be run by Cortana even while the machine is locked for keyboard and mouse utilization.

A ThreatPost report stated that this flaw was uncovered and reported to Microsoft in April of this year by a group of security researchers. These experts were Yuval Ron and Ron Marcovich from the Israel Institute of Technology and Tal Be’ery and Amichai Shulma from Kzen Networks.

The flaw has been documented under CVE-2018-8140. Microsoft has made it known that no exploit was uncovered in the wild. An important security rating was assigned to it.
 

About us

  • MalwareTips is a community-driven platform providing the latest information and resources on malware and cyber threats. Our team of experienced professionals and passionate volunteers work to keep the internet safe and secure. We provide accurate, up-to-date information and strive to build a strong and supportive community dedicated to cybersecurity.

User Menu

Follow us

Follow us on Facebook or Twitter to know first about the latest cybersecurity incidents and malware threats.

Top