Security News > 2017 > June > GhostHook Attack Bypasses Windows 10 PatchGuard (Threatpost)
2017-06-22 15:25
Researchers at CyberArk have developed a bypass for Windows PatchGuard that leverages Intel's Processor Trace (Intel PT) technology to execute code at the kernel.
News URL
http://threatpost.com/ghosthook-attack-bypasses-windows-10-patchguard/126462/
Related news
- Microsoft says it broke some Windows 10 patching – as it fixes flaws under attack (source)
- Windows Update downgrade attack "unpatches" fully-updated systems (source)
- “Perfect” Windows downgrade attack turns fixed vulnerabilities into zero-days (source)
- Windows Downgrade Attack Risks Exposing Patched Systems to Old Vulnerabilities (source)
- Windows 10 KB5041580 update released with 14 fixes, security updates (source)
- PEAKLIGHT Downloader Deployed in Attacks Targeting Windows with Malicious Movie Downloads (source)
- New Windows 10 22H2 beta fixes memory leaks and crashes (source)
- Windows 10 KB5041582 update released with 5 changes and fixes (source)
- Novel attack on Windows spotted in phishing campaign run from and targeting China (source)
- Windows 10 KB5043064 update released with 6 fixes, security updates (source)