FacebookInstagramTwitterContact

 

National Speech Contest           >>           Beta-Alanine Supplementation May Improve Power Output During Leg Exercises           >>           HIDDEN DANGER: Beware Of Arsenic Contamination In Rice           >>           Boysenberries Found To Improve Cholesterol, Help Prevent Heart Disease           >>           Girl Said She Heard ‘Monsters’ In Her Bedroom Wall – It Turned Out To Be Something Much Worse           >>           People Are Going Crazy For This Mayor’s Little Toes           >>           Jersey Shore's Pauly D Shares Rare Update On Life With 10-Year-Old Daughter Amabella           >>           Colleen Hoover's Verity Book Becoming A Movie After It Ends With Us           >>           Asteroid Ryugu Holds Secrets Of Our Solar System's Past, Present And Future           >>           US will require all new cars to have advanced automatic braking systems by 2029           >>          

 

SHARE THIS ARTICLE




REACH US


GENERAL INQUIRY

[email protected]

 

ADVERTISING

[email protected]

 

PRESS RELEASE

[email protected]

 

HOTLINE

+673 222-0178 [Office Hour]

+673 223-6740 [Fax]

 



Upcoming Events





Prayer Times


The prayer times for Brunei-Muara and Temburong districts. For Tutong add 1 minute and for Belait add 3 minutes.


Imsak

: 05:01 AM

Subuh

: 05:11 AM

Syuruk

: 06:29 AM

Doha

: 06:51 AM

Zohor

: 12:32 PM

Asar

: 03:44 PM

Maghrib

: 06:32 PM

Isyak

: 07:42 PM

 



The Business Directory


 

 



Security & Privacy


  Home > Security & Privacy


Razer Is Fixing A Serious Windows Security Flaw Caused By Its Mice


Razer

 


 August 25th, 2021  |  11:45 AM  |   781 views

CALIFORNIA, UNITED STATES

 

You shouldn't be able to get admin rights by plugging in a mouse.

 

A rather unusual vulnerability in Razer mice has been identified and the company is currently working on a fix. Over the weekend, security researcher Jon Hat posted on Twitter that after plugging in a Razer mouse or dongle, Windows Update will download the Razer installer executable and run it with SYSTEM privileges. It also lets you access the Windows file explorer and Powershell with "elevated" privileges — which essentially means someone with physical access to the computer could install harmful software.

 

Since this vulnerability requires direct, physical access to a computer, it's not nearly as dangerous as a security issue that can be carried out remotely, but it's still a troubling find. Hat said on Twitter that Razer eventually reached out and told him that the company's security team was working on a fix.

 

Razer provided us with the following statement:

 

"We were made aware of a situation in which our software, in a very specific use case, provides a user with broader access to their machine during the installation process.

 

We have investigated the issue, are currently making changes to the installation application to limit this use case, and will release an updated version shortly. The use of our software (including the installation application) does not provide unauthorized third-party access to the machine.

 

We are committed to ensuring the digital safety and security of all our systems and services, and should you come across any potential lapses, we encourage you to report them through our bug bounty service, Inspectiv: https://app.inspectiv.com/#/sign-up."

 

Update, 2PM ET: Added a statement from Razer.

 


 

Source:
courtesy of ENGADGET

by Nathan Ingraham

 

If you have any stories or news that you would like to share with the global online community, please feel free to share it with us by contacting us directly at [email protected]

 

Related News


Lahad Datu Murder: Remand Of 13 Students Extende

 2024-03-30 07:57:54

'Close Enough To See Their Faces': Chased Down By China In South China Sea

 2024-05-02 00:57:36

Tesla Staff Say Firm's Entire Supercharger Team Fired

 2024-05-02 00:12:47