A number of weeks in the past, safety researcher Alon Leviev revealed a daunting Home windows vulnerability that enables attackers to “downgrade” a safe Home windows system and unpatch safety flaws, making the hacked system open to every kind of assaults.
Nicely, the hypothetical simply turned actuality as Leviev created a downgrade instrument and made it freely accessible on the internet.
Home windows Downdate involves life
The instrument, which is written in Python, is called “Home windows Downdate” and will be downloaded through this GitHub web page. It presently works with Home windows 10, Home windows 11, and Home windows Server.
Utilizing Home windows Downdate, attackers can revert essential Home windows parts akin to DLLs, drivers, system kernels, Hyper-V hypervisor, and different system parts to older variations that also comprise safety vulnerabilities that have been later fastened through updates.
Because the Home windows consumer, you received’t discover this occurring within the background and also you’ll doubtless go on together with your on a regular basis duties believing that your Home windows system remains to be updated and safe with the most recent patches. In actuality, your Home windows laptop is silently made prone.
The safety researcher knowledgeable customers through X/Twitter that he made his instrument accessible to obtain freed from cost:
The 2 vulnerabilities exploited by the instrument are described in these two paperwork: CVE-2024-38202 and CVE-2024-21302. Microsoft has already closed the latter, however stays conscious of the previous and remains to be working to deal with that one as effectively.
shield your self
Now, to be truthful, Home windows Downdate is supposed for use for researching and testing numerous vulnerabilities. And it’s not like you should utilize to willy-nilly assault anybody you need — Alon Leviev actually wouldn’t have revealed this instrument if hackers may use it to assault others.
Relaxation assured that Home windows Downdate should be launched by the Home windows consumer themself so as to downgrade their Home windows PC. It can’t be used to execute a downgrade remotely.
However that doesn’t imply hackers received’t strive. They may attempt to adapt the instrument right into a malicious executable, then ship it to folks in hopes that they’ll unknowingly run it and compromise their very own programs.
Associated: Easy actions that maintain you a lot safer on-line
Which implies retaining your self secure from this specific downgrade instrument entails paying particular consideration to emails and hyperlinks from unknown senders who need you to obtain unsolicited information. Moreover, by no means obtain information from any web site that you just don’t belief 100%.
So long as you by no means run Home windows Downdate by yourself PC, you’re secure. You must also at all times use up-to-date virus scanners, which may acknowledge and warn you about malicious information.
Additional studying: The most effective antivirus apps for Home windows PCs
This text initially appeared on our sister publication PC-WELT and was translated and localized from German.