logo

Researchers Uncover Windows Flaws Granting Hackers Rootkit-Like Powers

ID: 22cbce94-d324-5c10-9943-dabbf8fabee5

STIX ID: report--22cbce94-d324-5c10-9943-dabbf8fabee5

Feed Name: The Hacker News

Threat Score
70/100

Date Published: 2024-04-22

Date Updated: 2026-05-05

Author: [email protected] (The Hacker News)

...
...

New research into Windows' DOS-to-NT path conversion ("MagicDot" paths) shows unprivileged attackers can obtain rootkit-like capabilities — hiding/impersonating files, processes, and affecting tools like Process Explorer — and has produced multiple security issues (EoP deletion/write, RCE CVE-2023-36396, DoS CVE-2023-42757); Microsoft has addressed three of the identified shortcomings and one fix is pending.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.