4TechViews

📈 Discover trending tech, solutions, and products
4TechViews
  • News
  • Tech events
  • Tech solutions
  • Digital business
  • Professional development
    • IT courses
      • Artificial intelligence
      • Data analysis
      • Others IT courses
    • Digital business courses
    • Career handbook
    • Jobs – Recruitment
    • Good books
  • Forum
  • More
    • Discovery
    • Innovation
    • Trending products
    • Tips and life hacks
    • Knowledge sharing
    • Learning quotes
    • Featured posts
    • Entertainment
  • Account
    • Logout
    • Register
Home
News
Researchers discovered 34 Windows Drivers with security vulnerabilities

Researchers discovered 34 Windows Drivers with security vulnerabilities

Michael Thompson News 06/11/2023 03/10/2025 66

[Hot]   Tìm hiểu về AI & Data Science tại AI4vietnam

[Upcoming]   Tổng hợp các khóa học cho người làm IT

Recently, researchers discovered that some Windows drivers contain vulnerabilities that are vulnerable to attack. Up to 34 Windows Driver Models ( WDM ) and Windows Driver Frameworks ( WDF ) contain vulnerabilities that can be exploited to gain full control of devices and execute arbitrary code on systems.

“By exploiting the driver, an unauthorized attacker can delete/change basic and/or advanced system programming,” said Takahiro Haruyama, threat researcher at VMware Carbon Black. executive ” .

Researchers discover 34 Windows Drivers containing security vulnerabilities - 4TechViews

This research builds on previous studies, such as  ScrewedDrivers  and  POPKORN  that used  symbolic execution  to automatically detect vulnerable drivers. It focuses on drivers that contain firmware access through I/O ports and memory-mapped I/O.

Names of some vulnerable Windows drivers include: AODDriver.sys, ComputerZ.sys, dellbios.sys, GEDevDrv.sys, GtcKmdfBs.sys, IoAccess.sys, kerneld.amd64, ngiodriver.sys, nvoclock.sys, PDFWKRNL .sys (CVE)  -2023-20598 , RadHwMgr.sys, rtif.sys, rtport.sys, stdcdrv64.sys and TdkLib64.sys ( CVE-2023-35841 ),

Of the 34 drivers, 6 allow access to kernel memory that can be abused to defeat security solutions. The 12 drivers can be exploited to  circumvent security mechanisms  such as kernel address space layout randomization ( KASLR ).

7 drivers, including Intel’s stdcdrv64.sys, can be used to erase artifacts in  SPI flash memory , rendering the system unbootable. Currently, Intel has released a fix for this issue.

VMware said it also identified WDF drivers such as WDTKernel.sys and H2OFFT64.sys that are not vulnerable to permissions exploits, but can be exploited in the usual way to perform BYOVD  – Bring Your Own attacks  Vulnerable Driver. ( The attacker will send the victim a valid driver but containing security holes, usually via malicious email or phishing scams, for them to install themselves. From there, it will disable the programs security is installed on the victim’s device and runs with system privileges ).

This technique has been used by various adversaries, including the   North Korea-linked Lazarus Group , as a way to gain elevated privileges and disable security software running on devices compromised terminal to avoid detection.

“The current scope of APIs/instructions targeted by the IDAPython script  for automating static code analysis of x64 vulnerable drivers is very narrow and limited to access permissions,” said Haruyama. base program”.

“However, this scope is open to extending code execution through other attack vectors (e.g., terminating arbitrary processes).”

VMware Carbon Black’s research shows that there are a significant number of Windows Drivers that are vulnerable to exploitation and can be abused to gain full control of the device.

Researchers recommend users update their drivers to the latest version to minimize the risk of attacks.

The short URL of the present article is: https://4techviews.net/0p98
OnePlus 13 Midnight Ocean 16 GB RAM + 512 GB Storage (1)
OnePlus 13 Midnight Ocean 16 GB RAM + 512 GB Storage (1)
OnePlus Watch 3 Obsidian Titanium46mmBluetooth/WiFi
OnePlus Watch 3 Obsidian Titanium46mmBluetooth/WiFi
Tweet

Recent Posts

  • Mac Mini M5 redefines desktop power with new AI-focused chip
    Mac Mini M5 redefines desktop power with new AI-focused chip
    13/11/2025 0
  • Japan’s new osmotic power plant turns saltwater into clean energy
    Japan’s new osmotic power plant turns saltwater into clean energy
    10/11/2025 0
  • Meta AI layoffs: Alexandr Wang explains the 600 job cuts
    Meta’s Alexandr Wang explains why 600 AI staff were laid off
    23/10/2025 0
  • Apple M5 chip powers faster MacBook Pro and iPad Pro
    Apple refreshes MacBook Pro, iPad Pro and Vision Pro with faster M5 chip
    16/10/2025 0

Related posts

  • Poe AI: Create your own Chatbots with the power of OpenAI and Claude AI
    Poe AI: Create your own Chatbots with the power of OpenAI and Claude AI
    08/08/2023 0
  • 17 authors jointly accuse ChatGPT of large-scale intellectual property theft
    17 authors jointly accuse ChatGPT of large-scale intellectual property theft
    24/09/2023 0
  • Runway Gen-2: Powerful and Free Text-to-Video Tool for Everyone
    Runway Gen-2: Powerful and Free Text-to-Video Tool for Everyone
    30/07/2023 0
  • The fate of TikTok in the U.S. may soon change thanks to Trump
    The fate of TikTok in the U.S. may soon change thanks to Trump
    25/12/2024 0

Search

Share the post

DMCA.com Protection Status

Most viewed posts

  • China builds an underwater data center with a capacity of 6 million PCs
    China builds an underwater data center with a capacity of 6 million PCs
  • Landing AI launches custom LVM Models specifically for businesses
    Landing AI launches custom LVM Models specifically for businesses
  • Google officially launches Gemini, will the new AI overshadow ChatGPT?
    Google officially launches Gemini, will the new AI overshadow ChatGPT?
  • Meta ra mắt Imagine with Meta và Make-A-Video, cạnh tranh với Google AI - 4TechViews
    Meta introduced Imagine with Meta and Make-A-Video, competing with Google AI
  • Microsoft is under investigation related to its $10 billion investment in OpenAI
    Microsoft is under investigation related to its $10 billion investment in OpenAI

Social links

  • Facebook
  • Tiktok
  • Youtube
  • Linkedin
  • X-Twitter
  • Reddit
  • Pinterest


Facebook fanpage

4TechViews

About Us

Introduction - Contact - Privacy Policy

Links

Partners

4TechViews
Copyright © 2025
  • Tiếng Việt