Active Stocks
Fri Apr 19 2024 09:15:47
  1. Tata Steel share price
  2. 159.35 -0.41%
  1. Infosys share price
  2. 1,399.30 -1.50%
  1. Tata Motors share price
  2. 957.05 -1.48%
  1. NTPC share price
  2. 347.00 -1.25%
  1. Power Grid Corporation Of India share price
  2. 277.75 -0.87%
Business News/ Technology / News/  Microsoft Windows users alert! New flaw lets hackers take over system operations. Here's what to do
BackBack

Microsoft Windows users alert! New flaw lets hackers take over system operations. Here's what to do

Microsoft has confirmed that all versions of Windows contain the vulnerable code and are vulnerable

FILE PHOTO: With the use of this vulnerability in the Windows operating system, cybercriminals could run arbitrary code with System privileges (REUTERS)Premium
FILE PHOTO: With the use of this vulnerability in the Windows operating system, cybercriminals could run arbitrary code with System privileges (REUTERS)

Microsoft has discovered a new vulnerability in the Windows operating system's Print Spooler service. This new vulnerability can be misused by cybercriminals in order to take control of one's system operations.

In a recent statement, the company stated, "Microsoft is aware of and investigating a remote code execution vulnerability that affects Windows Print Spooler and has assigned CVE-2021-34527 to this vulnerability. This is an evolving situation and we will update the CVE as more information is available."

Microsoft claims that a remote code execution vulnerability exists when the Windows Print Spooler service improperly performs privileged file operations.

With the use of this vulnerability in the Windows operating system, cybercriminals could run arbitrary code with System privileges. An attacker could then install programs; view, change, or delete data; or create new accounts with full user rights.

Microsoft has confirmed that all versions of Windows contain the vulnerable code and are vulnerable. However, there are certain conditions that need to be met on the system to enable exploitation.

Here's what Microsoft suggests you do to avoid misuse of the vulnerability

In order to prevent your system from being victim to cybercriminals who plan to use this new vulnerability, Microsoft claims users should apply the security updates released on June 8, 2021.

Further, to work around the vulnerability, users can disable Print Spooler. However, disabling the Print Spooler service disables the ability to print both locally and remotely.

The second option is to disable inbound remote printing through Group Policy. This can be done by going to Computer Configuration / Administrative Templates / Printers and then disable the “Allow Print Spooler to accept client connections:" policy to block remote attacks.

This policy will block the remote attack vector by preventing inbound remote printing operations. The system will no longer function as a print server, but local printing to a directly attached device will still be possible.

Unlock a world of Benefits! From insightful newsletters to real-time stock tracking, breaking news and a personalized newsfeed – it's all here, just a click away! Login Now!

Catch all the Technology News and Updates on Live Mint. Download The Mint News App to get Daily Market Updates & Live Business News.
More Less
Published: 03 Jul 2021, 04:30 PM IST
Next Story footLogo
Recommended For You
Switch to the Mint app for fast and personalized news - Get App