Researchers Uncover OS Downgrade Vulnerability Targeting Microsoft Windows Kernel

[correlate]

Level 18
Thread author
Verified
Top Poster
Well-known
Forum Veteran
May 4, 2019
800
9,634
1,670
New York
A new attack technique can be used to bypass Microsoft's Driver Signing Application (DSE) on fully patched Windows systems, leading to operating system (OS) downgrade attacks.

“This bypass allows unsigned kernel drivers to be loaded, allowing attackers to deploy custom rootkits that can neutralize security controls, hide processes and network activity, maintain stealth, and much more,” SafeBreach researcher Alon Leviev said in a report shared with The Hacker News.