Recent findings reveal that elite hackers have found a method to bypass Windows Defender Application Control (WDAC), designed to protect devices from malware by allowing only trusted software to run. IBM X-Force Red operator Bobby Cooke confirmed that certain applications, like Microsoft Teams, can serve as viable WDAC bypass methods, highlighting serious security risks for Windows users. This vulnerability follows other alarming security incidents targeting Windows, including zero-day exploits and ransomware attacks, emphasizing an urgent need for improved security measures.
Bobby Cooke from IBM X-Force Red confirmed that the Microsoft Teams application was 'a viable WDAC bypass,' demonstrating significant security vulnerabilities in Windows Defender.
Windows Defender Application Control is designed to protect against untrusted software, but recent findings have revealed a method for elite hackers to bypass these protections.
Collection
[
|
...
]