Category: Microsoft|Oct 31, 2020 | Author: Admin

Windows 7 to 10 have holes exploited by hackers

Share on

No bug fix before November 10th.

Google is now warning of a Windows hole that is being actively exploited by hackers.

Two-step attack opens Windows for dangerous attacks
There are no bug fixes from Microsoft yet, it is not expected until November 10 (at least the Chrome bug), so so far the hole is still possible to abuse.

There are two holes discovered, one in Windows (CVE-2020-17087) and another hole that can be used in combination with the former and found in Chrome (CVE-2020-15999).

It is not yet known who has exploited the holes
The Chrome hole allows code to run inside Chrome, while the Windows bug is the second part and allows hackers to break away from Chrome's security stacks and run code in Windows.

Google notified Microsoft next week and gave them seven days. Microsoft failed to resolve the issue, so google published the details.

Sponsored Ads:

Comments:


AMD hides Taiwan branding on Ryzen CPU packaging as it preps new chips for China market release

Category: IT|Sep 15, 2024 | Author: Admin

Contabo downtime analysis

Category: IT|Sep 14, 2024 | Author: Admin

Netflix will no longer provide support for iPhones and iPads running iOS 16

Category: IT|Sep 13, 2024 | Author: Admin

Google searches now link to the Internet Archive

Category: General|Sep 12, 2024 | Author: Admin

Apple ordered to pay back its illegal $14.4 billion Irish tax break

Category: Apple|Sep 11, 2024 | Author: Admin

Microsoft to start force-upgrading Windows 22H2 systems next month

Category: Microsoft|Sep 10, 2024 | Author: Admin

Mozilla extends Firefox support on unsupported Windows versions to March 2025

Category: IT|Sep 9, 2024 | Author: Admin

Apache fixes critical OFBiz remote code execution vulnerability

Category: IT|Sep 8, 2024 | Author: Admin

SonicWall SSLVPN access control flaw is now exploited in attacks

Category: IT|Sep 7, 2024 | Author: Admin

Microsoft Office 2024 to disable ActiveX controls by default

Category: Microsoft|Sep 6, 2024 | Author: Admin

LiteSpeed Cache bug exposes 6 million WordPress sites to takeover attacks

Category: IT|Sep 5, 2024 | Author: Admin

Cisco warns of backdoor admin account in Smart Licensing Utility

Category: IT|Sep 4, 2024 | Author: Admin

D-Link says it is not fixing four RCE flaws in DIR-846W routers

Category: IT|Sep 3, 2024 | Author: Admin

The Google Play Store can finally update multiple apps at the same time

Category: Google|Sep 2, 2024 | Author: Admin

Now the iPhone buttons don't work

Category: Apple|Sep 1, 2024 | Author: Admin
more