NT Compatible
  • News
    • Channels
    • Archive
    • Search
    • Submit
  • Articles
    • Categories
  • Knowledgebase
  • Compatibility
    • Search
  • Links
  • Forums
  • Twitter
Advertisement

Latest News
[ Windows | Linux | Apple ]

· Linux Mint 12 Lisa KDE - I don't know what to think
· Microsoft Outlook Configuration Analyzer Tool
· Update Rollup 1 for Exchange Server 2010 Service Pack 2 (KB2645995)
· DSA 2408-1: php5 security update
· British network preemptively warns Apple again not to use 'iTV' name
· All-in-One Performance Monitoring Tool for Linux - Nmom
· Mozilla plans Metro-specific Firefox for Windows 8
· Three alleged 'iPad 3' parts assembled, including possible Retina Display
· Office 15 Public Beta Due This Summer
· Microsoft redesigns its logo for Windows 8

Upcoming News
· A Futurelooks News Flash - GIGABYTE H61M-S2P-B3 LGA1155 Sandy Bridge mATX Motherboard Review
· Ubuntu Weekly Newsletter Issue 252
· [RHSA-2012:0127-01] Moderate: mysql security update
· [RHSA-2012:0125-01] Moderate: glibc security and bug fix update
· [RHSA-2012:0128-01] Moderate: httpd security update
· [RHSA-2012:0126-01] Moderate: glibc security update
· AMD FX-8150 3.60 GHz with Windows Patches @ techPowerUp
· Thermaltake Toughpower Cable Management 1350W Power Supply Review
· Sapphire Radeon HD 7950 OC 3GB Overclocked Further @ eTeknix.com
· Thermal Compound Roundup - February 2012 @ Hardware Secrets

Windows Compatibility
· Realtek High Definition Audio for 2K/XP/03
· Advanced SystemCare Free 5.1.0.196 Final
· Win7x64 Components
· IObit Malware Fighter
· Microsoft Windows 7 USB/DVD Download Tool
· Preferred Filter Tweaker for Windows 7 (Win7DSFilterTweaker)
· Fraps (Old Free Version)
· Microsoft Games for Windows - LIVE
· Emsisoft Anti-Malware
· Win7codecs x64

New Forum Topics
· Itunes Won't Let Me Burn Cd's
by: danleff
on: 2012-02-12 11:20
1 replies, 181 views

· Bejeweled 2 Delux Problem
by: gomamma
on: 2012-02-10 19:53
0 replies, 166 views

· Directx
by: Rajoo
on: 2012-02-06 21:29
0 replies, 273 views

· Code: Bad EIP Value
by: megatouchguy
on: 2012-01-28 06:27
0 replies, 519 views

· XP Pro crashes on start up
by: javien
on: 2012-01-17 12:38
6 replies, 2188 views

News Channels
· Drivers
· Guides
· Reviews
· Security
· Software
· Press Release
· Windows XP
· Microsoft
· Updates
· Interviews
· Windows Server 2003
· General
· Windows Vista
· Webcasts
· Windows Server 2008
· Windows Home Server
· Windows 7
· Windows 8
· Windows Phone 7

What's New
Login to see an overview of all news stories since your last visit.

Affiliates

Welcome to our website

To take full advantage of all features you need to login or register. Registration is completely free and takes only a few seconds.

NT Compatible » News » June 2009 » Source Code to Windows 7 UAC Injection Flaw Released

Source Code to Windows 7 UAC Injection Flaw Released

Posted by Philipp Esselbach on: 06/23/2009 05:06 PM [ Print | 0 comment(s) ]

OSNews reports that the source code to the UAC injection flaw in Windows 7 has been released




In a nutshell, since we've already discussed this a few times, the flaw works like this: a lot of people got all whiny over the UAC prompts in Windows Vista. As a result, Microsoft wanted to fix this in Windows 7. The logical, thorough, and proper method would've been to fix components of Windows so that they no longer require elevated privileges. Instead, Microsoft did an epic cop-out, reminiscent of the early days of Windows XP, and created a list of processes which possess auto-elevation capabilities. In other words, Microsoft allows its own processes to silently elevate in Windows 7 as to avoid having to actually fix their code.

As always, you can fix this by setting the UAC slider in Windows 7 to its topmost position. It's also important to note that this flaw does not work if you are running as a standard user - however, since the first user created is still an administrator, that point is moot.

Source Code to Windows 7 UAC Injection Flaw Released


Bookmark and Share

Related Threads

03/14/2000 05:31 AM: SB Live resource conflict and greyed out Use auto settings b (0) by chris719
02/24/2000 10:18 AM: Weird Diamond Viper 550 resource clash (5) by Jerry -
12/08/1999 06:27 PM: Setting Resource Configs Manually (0) by ThC 129

« Report details Apple's unusual veil of secrecy · New York Times Reports on Apple's Obsession With Secrecy »

NT Compatible » News » June 2009 » Source Code to Windows 7 UAC Injection Flaw Released
All products mentioned are registered trademarks or trademarks of their respective owners.
© 1998-2011 Esselbach Internet Solutions - All Rights Reserved. Terms and privacy policy
Powered by Contentteller® Business Edition