Get a Pentest and security assessment of your IT network.

News

Will Microsoft ever fix ‘token kidnapping’ flaw?

One-year-old Windows token kidnapping vulnerability remains unpatched and is now being exploited in malicious hacker attacks. This is one of those Microsoft-really-should-know-better moments, especially since they knew about the severity of the issue and the public release of proof-of-concept code that provided a roadmap for exploiting the flaw. In all, Nvidia patched flaws tied to 16 CVEs across its graphics drivers and vGPU software, in its first security update of 2021. Despite being a mostly run-of themill ransomware strain, Babuk Locker s encryption mechanisms and abuse of Windows Restart Manager sets it apart.

Source: https://threatpost.com/will-microsoft-ever-fix-token-kidnapping-flaw-031609/72413/

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Vulnerabilities In Alibaba threatens security of million users

News

Russian cybercriminal Roman Seleznev gets another prison sentence