4 ms·
Do you also understand the ripple effects of having a known zero day exploit open for a year? Lose/lose situation for the customers and their related networks,
by hackernewds 3y ago
Do you also understand the ripple effects of having a known zero day exploit open for a year? Lose/lose situation for the customers and their related networks, ie almost everyone in the world
- gambiting 3y agoWhat would you do instead, if you were MS?
- rejectfinite 3y agoHe would brick the Windows install and install Arch instead.
- technion 3y agoNot all "zero day" is created equally. The vast majority of home users have never heard of secure boot, which defaults to off. Every corporate network I've walked into I have been the one to push it, as most have never heard of it. Both Microsoft and aws only recently introduced support in the cloud environments, so the majority of cloud hosted environments have not turned it on (which requires replacing the vm). It is far from almost everyone in the world who is even in a position to be impacted by a secure boot bypass.
- NoahKAndrews 3y agoI believe it defaults to on, at least on most systems designed to run Windows
- AraceliHarker 3y agoSecure Boot is required to run Windows 11.
- antiterra 3y agoI think that’s inaccurate. Secure Boot capability is an install ‘requirement,’ but you definitely don’t have to switch it on.
- deleted 3y ago[deleted]
- deleted 3y ago[deleted]
- NoZebra120vClip 3y agoThere is literally no such thing as a "known zero-day". That is a contradiction in terms. Either it is unknown, and exploited as a zero-day, or it is known, and therefore no longer a zero-day at all.
- PhasmaFelis 3y agoThis particular exploit requires either physical or admin access to the target computer, which takes a lot of the edge off.