Researchers Uncover OS Downgrade Vulnerability Targeting Microsoft Windows Kernel

Operating system (OS) downgrade assaults could result from a novel attack method that circumvents Microsoft’s Driver Signature Enforcement (DSE) on fully patched Windows computers.

According to a study published with The Hacker News, SafeBreach researcher Alon Leviev stated that this workaround permits the loading of unsigned kernel drivers, which allows attackers to create custom rootkits that can deactivate security restrictions, conceal processes and network activities, preserve stealth, and much more.

The most recent results are an extension of a previous investigation that found two privilege escalation vulnerabilities in the Windows update process (CVE-2024-21302 and CVE-2024-38202) that might be used as a weapon to revert an updated version of Windows software to one with unpatched security problems read more about Researchers Uncover OS Downgrade Vulnerability Targeting Microsoft Windows Kernel.

Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with our thorough coverage of the dangers, breaches, and solutions.

Leave a Reply

Your email address will not be published. Required fields are marked *