Symantec: Vista firewall vulnerability uncovered

By
Follow google news

The firewall in Microsoft Windows Vista can be compromised to perform prohibited functions, according to new research by Symantec.


This is likely to cause embarrassment to Microsoft, which touted Vista as its most secure platform to date and implemented a plethora of new security features, including an improved firewall.

The software giant’s operating system is, by default, configured to block all third party and unknown network communications, unless the user clicks on the unblock button, said Orlando Padilla, from Symantec’s security response team, in a blog on the company’s website.

Padilla, who conducted the study released last week, said the problem concerns the unblock button, which may be accessed by someone with the same privilege level as a standard user. This configuration of privileges creates a vulnerability in the firewall’s policy, which can be exploited by an attacker to code malware, he said in the post.

“[The firewall] poses a great limitation for malicious code looking to back door a host. In effect, malicious code can automate the unblock process by simply sending a message to the firewall pop-up dialog box via the SendMessage API call,” Padilla said in the web entry.

Microsoft could not be reached for comment.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Tags:

Most Read Articles

Attacker embeds Claude Code in mass credential harvesting op

Attacker embeds Claude Code in mass credential harvesting op

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

'Copy Fail' Linux privesc bug lay dormant in kernel since 2017

'Copy Fail' Linux privesc bug lay dormant in kernel since 2017

Medibank reveals attack vector and cost of 2022 security breach

Medibank reveals attack vector and cost of 2022 security breach

Log In

  |  Forgot your password?