<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	xmlns:media="http://search.yahoo.com/mrss/"
>

<channel>
	<title>windows 10 Archives - Bizznerd</title>
	<atom:link href="https://bizznerd.com/tag/windows-10/feed/" rel="self" type="application/rss+xml" />
	<link>https://bizznerd.com/tag/windows-10/</link>
	<description>Place Where Technology Meets Business</description>
	<lastBuildDate>Fri, 23 Aug 2019 09:37:00 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	

<image>
	<url>https://bizznerd.com/wp-content/uploads/2019/01/cropped-favicon-1-32x32.png</url>
	<title>windows 10 Archives - Bizznerd</title>
	<link>https://bizznerd.com/tag/windows-10/</link>
	<width>32</width>
	<height>32</height>
</image> 
	<item>
		<title>Windows Signed drivers – Exploited</title>
		<link>https://bizznerd.com/windows-signed-drivers-exploited/</link>
		
		<dc:creator><![CDATA[Bizz Nerd]]></dc:creator>
		<pubDate>Fri, 23 Aug 2019 09:32:10 +0000</pubDate>
				<category><![CDATA[Apps]]></category>
		<category><![CDATA[Tech]]></category>
		<category><![CDATA[DEF CON 2019]]></category>
		<category><![CDATA[device driver flaw]]></category>
		<category><![CDATA[protect data]]></category>
		<category><![CDATA[windows 10]]></category>
		<category><![CDATA[windows security breach]]></category>
		<category><![CDATA[windows signed drivers exploited]]></category>
		<guid isPermaLink="false">https://bizznerd.com/?p=14291</guid>

					<description><![CDATA[<p>Do you think your PC and your data is safe? You should think again! A recent study shows that there is a flaw wich allows malware to gain access to critical parts of windows kernel. Drivers that provide access to system BIOS or system components for the purposes of updating firmware, running diagnostics, or customizing &#8230;</p>
<p>The post <a href="https://bizznerd.com/windows-signed-drivers-exploited/">Windows Signed drivers – Exploited</a> appeared first on <a href="https://bizznerd.com">Bizznerd</a>.</p>
]]></description>
										<content:encoded><![CDATA[<p>Do you think your PC and your data is <strong>safe</strong>? You should think again!</p>
<p>A<a href="https://eclypsium.com/2019/08/10/screwed-drivers-signed-sealed-delivered/" target="_blank" rel="noopener nofollow noreferrer"> recent study</a> shows that there is a flaw wich allows malware to gain access to critical parts of windows kernel. Drivers that provide access to system BIOS or system components for the purposes of updating firmware, running diagnostics, or customizing options on the component can allow attackers to turn the very tools used to manage a system into powerful threats that can escalate privileges and persist invisibly on the host.</p>
<p>As shown at DEF CON , a vulnerable driver installed on machine could allow an application running  with user privileges to escalate to kernel privileges and abuse the functionality of the driver. In a simpler words, attacker can gain full control over the system using signed driver.</p>
<p><a href="https://bizznerd.com/wp-content/uploads/2019/08/baddrivers.jpg"><img decoding="async" class="size-full wp-image-14292 aligncenter" src="https://bizznerd.com/wp-content/uploads/2019/08/baddrivers.jpg" alt="" width="600" height="451" srcset="https://bizznerd.com/wp-content/uploads/2019/08/baddrivers.jpg 600w, https://bizznerd.com/wp-content/uploads/2019/08/baddrivers-300x226.jpg 300w" sizes="(max-width: 600px) 100vw, 600px" /></a></p>
<h3><strong>Signed and Certified doesn&#8217;t mean SAFE</strong></h3>
<p>All the drivers that are affected are signed by valid Certificate Authorities, and trusted  by Microsoft. These issues apply to all modern versions of Microsoft Windows and there is no universal mechanism just yet to keep a Windows machine from loading one of these known bad drivers</p>
<p>This is the list of affected vendors :</p>
<ul>
<li>ASRock</li>
<li>ASUSTeK Computer</li>
<li>ATI Technologies (AMD)</li>
<li>Biostar</li>
<li>EVGA</li>
<li>Getac</li>
<li>GIGABYTE</li>
<li>Huawei</li>
<li>Insyde</li>
<li>Intel</li>
<li>Micro-Star International (MSI)</li>
<li>NVIDIA</li>
<li>Phoenix Technologies</li>
<li>Realtek Semiconductor</li>
<li>SuperMicro</li>
<li>Toshiba</li>
</ul>
<h3><strong>How to protect your data?</strong></h3>
<p>I would strongly suggest of installing professional antivirus, like Kaspersky or ESET to your system, and maybe setup group policy that can be implemented for business and prevent installation of those corrupted drivers with it.</p>
<p>There is no other alternative. We need to wait for yet another windows update release.</p>
<p>The post <a href="https://bizznerd.com/windows-signed-drivers-exploited/">Windows Signed drivers – Exploited</a> appeared first on <a href="https://bizznerd.com">Bizznerd</a>.</p>
]]></content:encoded>
					
		
		
			<media:content url="https://bizznerd.com/wp-content/uploads/2019/08/hackers-protect-data-windows10-1024x576.jpeg" medium="image" />
	</item>
	</channel>
</rss>
