News

“Ransomware-Proof” Windows 10 S Hacked

Last month, Microsoft launched Windows 10 S, a security-focused iteration of its ubiquitous operating system. “Known ransomware” cannot infect Windows 10 S, says Microsoft. A hubristic claim, to be sure. Of course, that claim is now demonstrably false. Taking Microsoft’s boast as a challenge, ZDNet tried – and succeeded – to compromise Windows 10 S. The process took a matter of hours.

Windows 10 S Ransomware – “Surprisingly Easy”

ZDNet engaged Matthew Hickey to crack Microsoft’s supposedly invulnerable OS. Hickey, a security researcher and co-founder of Hacker House, cracked Windows 10 S within three hours. Hickey told ZDNet:

“I’m honestly surprised it was this easy. When I looked at the branding and the marketing for the new operating system, I thought they had further enhanced it. I would’ve wanted more restrictions on trying to run privileged processes instead of it being such a short process.”

So, how did Hickey compromise Windows 10 S? Through Microsoft Word.

Macro-Based Ransomware Attack

ZDNet explains how Hickey compromised Windows 10 S:

“Hickey created a malicious, macro-based Word document on his own computer that when opened would allow him to carry out a reflective DLL injection attack, allowing him to bypass the app store restrictions by injecting code into an existing, authorized process. In this case, Word was opened with administrative privileges through Windows’ Task Manager, a straightforward process given the offline user account by default has administrative privileges.”

Hickey bypassed Word’s “protected view” by uploading the document to a “safe” network share location.As a consequence, the macro grants him access to administrative privileges via a shell. He adds he could automate the process, given enough time.

Microsoft Remains Defiant

Microsoft has denied its Windows 10 S security claims are erroneous. Its argument, though, is a matter of semantics. The Redmond company counters that this particular attack was “new”. Therefore, its claim that Windows 10 S is not vulnerable to “known ransomware” is true. A Microsoft spokesperson said:

“In early June we stated that Windows 10 S was not vulnerable to any known ransomware, and based on the information we received from ZDNet that statement holds true. We recognize that new attacks and malware emerge continually, which is why [we] are committed to monitoring the threat landscape and working with responsible researchers to ensure that Windows 10 continues to provide the most secure experience possible for our customers.”

Is Microsoft just being pedantic? It wouldn’t have to if it didn’t make such conceited statements.

Ashley Allen

Disqus Comments Loading...

Recent Posts

Intel Core i7-14700K (Raptor Lake-S) Socket LGA1700 Processor

Intel is driving next level performance with Raptor Lake- Increased processor core count - Up…

12 hours ago

BenQ MOBIUZ EX2710Q 27″ QHD 165Hz 1ms, FreeSync Premium Pro, HDRi IPS Gaming Monitor

BenQ EX2710Q 27" inch IPS Monitor Eye Care 165Hz FreeSync HDR400 BI+ (HDMI, DP, 2560x1440,…

12 hours ago

MSI 27″ Modern MD272QXPW 2560×1440 IPS 75Hz Business Productivity Monitor

MSI 27" Modern MD272QXPW WQHD 1440P Business and Productivity Monitor View your applications, spreadsheets and…

12 hours ago

ASUS Rog Swift 49″ PG49WCD 5120×1440 QD-OLED 144Hz 0.03ms FreeSync Gaming Monitor

ROG Swift OLED PG49WCD gaming monitor ― 49-inch (5120x1440) curved QD-OLED panel, 144 Hz, 0.03…

12 hours ago

Zotac GeForce RTX 4060Ti Twin Edge 8GB GDDR6 PCI-Express Graphics Card

ColourPrimary ColourBlackSecondary ColourGreyDimensionsLength225.5 mmWidth123.2 mmHeight40.1 mmLightingLightingYesLighting ColourRGBClock SpeedsMax. GPU Clock (Base)2310 MHzMax. Memory Clock18000 MHzMax.…

12 hours ago

Kingston FURY Beast EXPO 32GB (2x16GB) DDR5 PC5-48000C36 6000MHz Dual Channel Kit

Kingston FURY™ Beast DDR5 memory brings the latest cutting-edge technology for next-gen gaming platforms. Taking…

12 hours ago