Symantec: Vista firewall vulnerability uncovered

By
Follow google news

The firewall in Microsoft Windows Vista can be compromised to perform prohibited functions, according to new research by Symantec.


This is likely to cause embarrassment to Microsoft, which touted Vista as its most secure platform to date and implemented a plethora of new security features, including an improved firewall.

The software giant’s operating system is, by default, configured to block all third party and unknown network communications, unless the user clicks on the unblock button, said Orlando Padilla, from Symantec’s security response team, in a blog on the company’s website.

Padilla, who conducted the study released last week, said the problem concerns the unblock button, which may be accessed by someone with the same privilege level as a standard user. This configuration of privileges creates a vulnerability in the firewall’s policy, which can be exploited by an attacker to code malware, he said in the post.

“[The firewall] poses a great limitation for malicious code looking to back door a host. In effect, malicious code can automate the unblock process by simply sending a message to the firewall pop-up dialog box via the SendMessage API call,” Padilla said in the web entry.

Microsoft could not be reached for comment.
Got a news tip for our journalists? Share it with us anonymously here.
Tags:

Most Read Articles

Tasmanian gov agencies impacted by cyber attack

Tasmanian gov agencies impacted by cyber attack

Euro cops take down cybercrime network with 49 million fake accounts

Euro cops take down cybercrime network with 49 million fake accounts

Australian chief at US defence contractor L3Harris sold exploits to Russia

Australian chief at US defence contractor L3Harris sold exploits to Russia

Home Affairs streamlines risk vetting for gov tech suppliers

Home Affairs streamlines risk vetting for gov tech suppliers

Log In

  |  Forgot your password?