Home · Compatibility Lists · Support Forums · FAQ · News Archive · Articles · Submit News/Upcoming News
NT Compatible
advertisement


Source Code to Windows 7 UAC Injection Flaw Released
Posted by Philipp on: 2009-06-23 18:06:37 [ Print | Permalink ]

OSNews reports that the source code to the UAC injection flaw in Windows 7 has been released

"In a nutshell, since we've already discussed this a few times, the flaw works like this: a lot of people got all whiny over the UAC prompts in Windows Vista. As a result, Microsoft wanted to fix this in Windows 7. The logical, thorough, and proper method would've been to fix components of Windows so that they no longer require elevated privileges. Instead, Microsoft did an epic cop-out, reminiscent of the early days of Windows XP, and created a list of processes which possess auto-elevation capabilities. In other words, Microsoft allows its own processes to silently elevate in Windows 7 as to avoid having to actually fix their code.

As always, you can fix this by setting the UAC slider in Windows 7 to its topmost position. It's also important to note that this flaw does not work if you are running as a standard user - however, since the first user created is still an administrator, that point is moot."

>> Source Code to Windows 7 UAC Injection Flaw Released



Digg it! Slashdot Del.icio.us Technorati Fark it! Binklist Furl Newsvine Windows Live Netscape Google Bookmarks Reddit! LinkaGoGo Tailrank Wink Dzone Simpy Spurl Yahoo! MyWeb NetVouz RawSugar Smarking Scuttle Magnolia BlogMarks Nowpublic FeedMeLinks Wists Onlywire Connotia Shadows Co.mments
News Source: Email

Related Threads RSS

- News Item: Open-Xchange and SugarCRM Partner to Combine Open Source Collaboration/CRM Efforts (10/20/2009 05:56 pm)
- News Item: Open Source Changing Face of Content Management Market Says Report from Basex; Choosing the Right Platform is More Critical than Ever (09/30/2009 07:28 pm)
- Clever Coding releases 3D Globe Source Code for iPhone - Goes on Sale (09/11/2009 03:07 pm)
- News Item: Likewise Software Named Founding Member of Open Source Channel Alliance (04/14/2009 09:07 pm)
- News Item: Zenoss Joins Industry Leaders in the Open Source Channel Alliance (04/14/2009 04:42 pm)
- News Item: Cloudera Announces New Distribution for Hadoop to Bring the Data Processing Power of Facebook, Google, and Yahoo! to Enterprises and a Bigger Open Source Community (03/16/2009 06:00 pm)
- An OpenSource Caucho’s Quercus PHP Java solution (11/03/2008 10:34 pm)
- AIX Disaster Recovery: Resolving Resource Conflict (09/29/2008 08:57 pm)
- News Item: OPENLOGIC CERTIFIED LIBRARY NOW INCLUDES 400 CERTIFIED OPEN SOURCE PACKAGES, ADDS OPEN SOURCE COMPARISONS (04/28/2008 08:14 pm)
- News Item: GLOBAL OPEN SOURCE CENSUS LAUNCHES TO COUNT ENTERPRISE USE OF OPEN SOURCE SOFTWARE (04/16/2008 04:21 pm)
- Microsoft--forced to expose source code...BOO! (12/09/2001 07:37 am)
- SB Live resource conflict and greyed out Use auto settings b (03/14/2000 05:31 am)
- Weird Diamond Viper 550 resource clash (02/24/2000 10:18 am)
- Setting Resource Configs Manually (12/08/1999 06:27 pm)
- source CD download redhat 8.0 don't work ! (10/07/2002 09:12 pm)

Post New Comment


All products mentioned are registered trademarks or trademarks of their respective owners.
© 1998-2009 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Website powered by Esselbach Storyteller CMS System