2 ms·
It is untrusted data in the sense of files being read from disk that are not part of the signed kernel driver code.
by kchr 2y ago
It is untrusted data in the sense of files being read from disk that are not part of the signed kernel driver code.
- gruez 2y agoThe files in question reside within C:\windows, which requires admin privileges to write to. If untrusted data can end up there, you're already on the other side of the airtight hatchway[1]. [1] https://devblogs.microsoft.com/oldnewthing/20220907-00/?p=107132 https://devblogs.microsoft.com/oldnewthing/20220907-00/?p=10...