Windows "inetpub" security fix can be abused to block future updates
ID: f50da41e-8db3-5650-bdf0-375deba0e00c
STIX ID: report--f50da41e-8db3-5650-bdf0-375deba0e00c
Feed Name: Bleeping Computer
A recent Microsoft Patch Tuesday update creates a SYSTEM-owned C:\inetpub folder; a researcher demonstrated non-admin users can create a junction from C:\inetpub to a file (e.g., C:\Windows\system32\notepad.exe) which causes Windows updates to fail with error 0x800F081F, effectively blocking future security updates. Microsoft confirmed the folder creation is intentional and warned not to delete it, rated the reported issue as Moderate, and has not issued an immediate remediation.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
