{"id":237,"date":"2014-11-14T14:09:01","date_gmt":"2014-11-14T22:09:01","guid":{"rendered":"http:\/\/kmtechblog.com\/?p=237"},"modified":"2014-11-14T14:09:01","modified_gmt":"2014-11-14T22:09:01","slug":"microsoft-finally-patches-19-year-old-windows-security-flaw","status":"publish","type":"post","link":"https:\/\/kmtech.blog\/?p=237","title":{"rendered":"Microsoft Finally Patches 19-Year Old Windows Security Flaw"},"content":{"rendered":"<p>Microsoft on Wednesday is officially patching a bug that existed in its Windows operating system for 19 years, according to a new report from IBM\u2019s Security Intelligence arm. The security flaw had been present in every single version of Windows since Windows 95 was released, IBM said, noting that the bug was complex and rare.<\/p>\n<p>\u201cThe bug can be used by an attacker for drive-by attacks to reliably run code remotely and take over the user\u2019s machine \u2014 even sidestepping the Enhanced Protected Mode (EPM) sandbox in IE 11 as well as the highly regarded Enhanced Mitigation Experience Toolkit (EMET) anti-exploitation tool Microsoft offers for free,\u201d the security team explained in a recent blog post.\u00a0\u201dTypically, attackers use remote code execution to install malware, which may have any number of malicious actions, such as keylogging, screen-grabbing and remote access,\u201d the researchers said.<\/p>\n<p>IBM said that this just shows that small bugs can exist for years and years, in this case for more than a decade, before they\u2019re actually detected by anyone, and that the flaw in Windows potentially left an open hole for remote exploitation for the last 18 years, though the \u201cbuggy code\u201d that enabled it has existed for 19 years.<em><br \/>\n<\/em><\/p>\n<p>IBM said it first discovered the bug in May 2014 and that, had it been found by someone else, it could have \u201c\u00a0fetched six figures on the gray market,\u201d among hackers who might have used it to cause serious harm to computer systems. The researchers explain the ins-and-outs of how it works very technically, so hit the source for a deeper understanding.<\/p>\n<div class=\"sourcevia-wrapper\">\n<div class=\"sourcevia fCaps fLS0\"><span class=\"label fLS1\">SOURCE<\/span> <a href=\"http:\/\/securityintelligence.com\/ibm-x-force-researcher-finds-significant-vulnerability-in-microsoft-windows#.VGODLfl4rUV\" target=\"_blank\" rel=\"noopener\">IBM<\/a><\/div>\n<\/div>\n","protected":false},"excerpt":{"rendered":"<p>Microsoft on Wednesday is officially patching a bug that existed in its Windows operating system for 19 years, according to a new report from IBM\u2019s Security Intelligence arm. The security flaw had been present in every single version of Windows since Windows 95 was released, IBM said, noting that the bug was complex and rare. [&hellip;]<\/p>\n","protected":false},"author":2,"featured_media":0,"comment_status":"closed","ping_status":"open","sticky":false,"template":"","format":"standard","meta":{"_et_pb_use_builder":"","_et_pb_old_content":"","_et_gb_content_width":"","footnotes":""},"categories":[4,25],"tags":[55],"class_list":["post-237","post","type-post","status-publish","format-standard","hentry","category-business","category-software","tag-microsoft","et-doesnt-have-format-content","et_post_format-et-post-format-standard"],"_links":{"self":[{"href":"https:\/\/kmtech.blog\/index.php?rest_route=\/wp\/v2\/posts\/237","targetHints":{"allow":["GET"]}}],"collection":[{"href":"https:\/\/kmtech.blog\/index.php?rest_route=\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/kmtech.blog\/index.php?rest_route=\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/kmtech.blog\/index.php?rest_route=\/wp\/v2\/users\/2"}],"replies":[{"embeddable":true,"href":"https:\/\/kmtech.blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcomments&post=237"}],"version-history":[{"count":0,"href":"https:\/\/kmtech.blog\/index.php?rest_route=\/wp\/v2\/posts\/237\/revisions"}],"wp:attachment":[{"href":"https:\/\/kmtech.blog\/index.php?rest_route=%2Fwp%2Fv2%2Fmedia&parent=237"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/kmtech.blog\/index.php?rest_route=%2Fwp%2Fv2%2Fcategories&post=237"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/kmtech.blog\/index.php?rest_route=%2Fwp%2Fv2%2Ftags&post=237"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}