Hacker highlights gaping Vista security hole

  • Email a Friend
  • Print Page
Hacker highlights gaping Vista security hole
Feb 19, 2007 9:52 AM
Tags: hacker | highlights | gaping | vista | security | hole

Microsoft tries to play it down.

White hat hacker Joanna Rutkowska claims to have discovered a gaping hole in the User Account Control (UAC) security functionality of Windows Vista.

Microsoft admitted that many users ran Windows XP constantly using the admin account, which provides unfettered access to all parts of the system.

To help mitigate the security risks, Vista runs in a normal user account by default and provides pop-up confirmation dialogues when it needs to perform admin functions, such as modifying system files.

Rutkowska discovered that when Vista detects that the user is running an installation file it kicks into full admin mode.

If a user wishes to install a new program they are presented with the option either to allow the installer complete system privileges or not to run the program at all.

Rutkowska wrote on her Invisible Things blog: "That means that if you downloaded some freeware Tetris game, you will have to run its installer as administrator, giving it full access to all your file system and registry, and allowing it to load kernel drivers! Why should a Tetris installer be allowed to load kernel drivers?

"I would like to be offered a choice whether to fully trust a given installer executable [and run it as full administrator] or just allow it to add a folder in C:\Program Files and some keys under HKLM\Software and do nothing more.

"I could do that under Windows XP, but apparently I can't under Vista, which is a bit disturbing."

A few days after her posting there was a lengthy and detailed response from Mark Russinovich, a Technical Fellow at Microsoft.

Russinovich essentially admitted that, while the problem exists, it was a design choice that stemmed from the balance between security and usability.

"Because elevations and integrity levels do not define a security boundary, potential avenues of attack, regardless of ease or scope, are not security bugs, " he said.

In light of the huge security campaign surrounding Windows Vista in 2006, Rutkowska said in a follow up posting that this explanation simply is not good enough and that Microsoft should attempt to solve the problem rather than try and dismiss the issue.

Copyright © 2009 v3.co.uk


 
Comments

Be the first to comment on this article.
Thoughts on this article? Add a comment below.
Comment:
Want to participate in the discussion?
Or log in now to comment
 
 
 
Top Stories
TIO website hit by malware
Weekend malware runs one new process per target machine.
 
Microsoft announces Azure launch date
Australia in second wave of country releases.
 
CBA embarks on "database-as-a-service"
Analysis: How the bank intends to save megabucks.
 

Spotlightthe topics we're following

Latest Comments

"With Optus supposedly boosting this service sounds great, record profits on mobile business ..."
by Johnnnny Feb 10, 2010 9:58 AM
 
"The Howard government used to provide free net-nanny software that parents could download & ..."
by Ace Feb 10, 2010 9:56 AM
 
"Digger and JL - the two biggest back-flippers in history. (Or are they they same person ?) Now ..."
by marklara Feb 10, 2010 9:56 AM
 
"Once we get past cloud computing, it will be full speed ahead to blue sky computing - although ..."
by Ace Feb 10, 2010 9:52 AM
 
"Maxxi if your reading this I am pretty sure the opinion of Google far outweighs the minority ..."
by Mark D Feb 10, 2010 9:46 AM
1) HTC Magic16 plans 2%
2) Nokia N9743 plans 9%
3) Nokia E7149 plans 1%
4) Apple iPhone 3GS 16GB30 plans 11%
5) Apple iPhone 8GB42 plans 5%
1) iiNet32 plans 5%
2) Netspace36 plans 11%
3) TPG Internet19 plans 14%
4) Optus33 plans 1%
5) Telstra BigPond30 plans 2%

Mobiles | Broadband | Credit Cards

iTnews

Polls

What is the sweet spot for Apple's entry 16GB Wi-Fi iPad?




   |   View results
$549
  77%
 
$579
  11%
 
$619
  4%
 
$649
  3%
 
$699
  5%
TOTAL VOTES: 384

Vote