The researchers found that more than 40 Windows device drivers vulnerable

Security company Eclypsium researchers in hardware and firmware security study found that at least 20 suppliers of more than 40 Windows device drivers with high-risk vulnerabilities , allowed to bypass or privilege escalation. These vendors including Asus, Toshiba, Nvidia and Huawei. These device drivers are widely used, and access to Microsoft's digital signature, allow an attacker to more easily penetrate the secrets of the target network.

Device drivers generally have very high authority, including permission to modify, allow an attacker to get a permanent foothold in the system. Eclypsium has notified Microsoft, NVIDIA has released a repaired drive.

 

Guess you like

Origin www.linuxidc.com/Linux/2019-08/160002.htm