Reply to post: Re: Bore off

Want to get around app whitelists by pretending to be Microsoft? Of course you can...

yoganmahew

Re: Bore off

Unless I'm mistaken (and I probably am, it is not my field), the attack vector is to get admin rights once (e.g. on install), and then build an identify that allows nefarious activities without asking again for admin rights. As everything asks for admin rights on install/update and everyone just clicks it (what else are you supposed to do?), admin rights are easily got at least once. As I say, YMMV...

POST COMMENT House rules

Not a member of The Register? Create a new account here.

  • Enter your comment

  • Add an icon

Anonymous cowards cannot choose their icon

Biting the hand that feeds IT © 1998–2022