IMO this is kind of evilly brilliant: Windows Update Flaws Allow Undetectable Downgrade Attacks
Posted by
JD (aka Jason Dean)
Aug 8 '24, 08:33
|
Leviev showed how he was able to take over the Windows Update process to craft custom downgrades on critical OS components, elevate privileges, and bypass security features.
“I was able to make a fully patched Windows machine susceptible to thousands of past vulnerabilities, turning fixed vulnerabilities into zero-days,” Leviev said.
|