HT TECH wants to start sending you push notifications. Click allow to subscribe

This dangerous Windows Defender security flaw went unnoticed for 12 years, here's how to protect your PC today

In an ironic twist, the bug would allow an attacker to re-infect your PC after Microsoft Defender removed another virus, but there's an easy fix.  

By: HT TECH
Updated on: Aug 21 2022, 15:02 IST
When Microsoft Defender identifies a piece of malware, it usually puts a harmless one in its place while the clean up occurs. (Microsoft)

Microsoft Defender is one of the most reliable antivirus solutions available today if you use a PC with Windows 10, but that doesn’t mean that the software is without flaws. The company recently patched a serious bug in its software that was completely undetected for 12 years, according to a new report.

When Microsoft Defender identifies a piece of malware, it usually puts a harmless one in its place while the clean up occurs. This is presumably to stop any programs from crashing. The security vulnerability was discovered by a security firm called SentinelOne, which found that the bug was located in a driver file the antivirus uses to get rid of malware installed on the PC, according to a report from Ars Technica.

You may be interested in

Mobiles Tablets Laptops
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹156,900
Check details
28% OFF
Samsung Galaxy S23 Ultra 5G
  • Green
  • 12 GB RAM
  • 256 GB Storage
₹107,999₹149,999
Buy now
Google Pixel 8 Pro
  • Obsidian
  • 12 GB RAM
  • 128 GB Storage
₹106,998
Check details
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹87,900
Check details
Microsoft Surface Studio A1Y 00022
  • Platinum Silver
  • 16 GB LPDDR4X RAM
  • 512 GB SSD
₹209,990
Check details
7% OFF
Microsoft Surface Pro 8 8PV 00029
  • Graphite Black
  • 16 GB DDR4 RAM
  • 256 GB SSD
₹139,999₹149,999
Buy now
47% OFF
Microsoft Surface 4 5UI 00049
  • Platinum Silver
  • 8 GB DDR4 RAM
  • 256 GB SSD
₹98,000₹186,500
Buy now
Microsoft Surface Pro 7 M1866 VDH 00013
  • Platinum
  • 4 GB LPDDR4X RAM
  • 128 GB SSD
₹69,890
Check details
35% OFF
Xiaomi Pad 6
  • Mist Blue
  • 6 GB RAM
  • 128 GB Storage
₹25,999₹39,999
Buy now
55% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹20,999₹47,000
Buy now
32% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹19,668₹28,999
Buy now
Honor Pad X9
  • Gray
  • 4 GB RAM
  • 128 GB Storage
₹16,998
Check details

Also read: Microsoft to remove Edge Legacy desktop app with April’s Windows 10 Tuesday release

The bug stems from the method in which that file is replaced - Windows Defender didn’t check whether the file it placed there was the right one, leaving the door wide open for misuse by another software to manipulate what file was placed. Once in, an attacker could use regular software that runs on a lower level (like a notepad service) to simply bypass all the administrator blocks set in place by Windows and edit the filesystem at a system level.

It is sort of ironic that an antivirus program might end up being the tool used to reinfect a PC after cleaning up one virus. Microsoft has fixed the bug, thankfully, because the software ships with every Windows computer by default. Every single PC that was not protected by some other antivirus would thus be vulnerable to being exploited. SentinelOne reported the issue in November and the company then worked on a fix for the bug.

Read more: Microsoft teams up with chipmakers to boost PC security

According to the report, however, not everyone can access the vulnerability to exploit it. An attacker would still need remote or local access to the computer they wanted to target and they would still need to compromise the Windows PC first. Nevertheless, it is good that Windows has patched the issue already - the company says that anyone who has already updated to the February 9 patch update is already protected. If you haven’t yet, now would be a good time to hit the update button, or better still, enable automatic updates instead.

Catch all the Latest Tech News, Mobile News, Laptop News, Gaming news, Wearables News , How To News, also keep up with us on ,Twitter, Facebook, , and Instagram. For our latest videos, subscribe to our YouTube channel.

First Published Date: 14 Feb, 13:52 IST

Sale

Mobiles Tablets Laptops
7% OFF
Apple iPhone 15 Pro Max
  • Black Titanium
  • 8 GB RAM
  • 256 GB Storage
₹148,900₹159,900
Buy now
13% OFF
Xiaomi 14
  • Matte Black
  • 12 GB RAM
  • 512 GB Storage
₹69,999₹79,999
Buy now
11% OFF
Apple iPhone 15 Plus
  • Black
  • 6 GB RAM
  • 128 GB Storage
₹79,800₹89,900
Buy now
3% OFF
Samsung Galaxy Z Fold5
  • Icy Blue
  • 12 GB RAM
  • 256 GB Storage
₹154,999₹159,999
Buy now
57% OFF
Lenovo Tab M10 5G
  • Abyss Blue
  • 6 GB RAM
  • 128 GB Storage
₹19,999₹47,000
Buy now
28% OFF
Realme Pad 2
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹17,999₹24,999
Buy now
20% OFF
Samsung Galaxy Tab S9 5G 256GB
  • Graphite
  • 8 GB RAM
  • 256 GB Storage
₹86,999₹108,699
Buy now
28% OFF
realme Pad 2 WiFi
  • Imagination Grey
  • 6 GB RAM
  • 128 GB Storage
₹17,999₹24,999
Buy now
23% OFF
Infinix INBook X1 Neo XL22 Laptop Intel Celeron Quad Core 8 GB 256 GB SSD Windows 11
  • Blue
  • 4 GB RAM
  • 128 GB SSD
₹22,990₹29,990
Buy now
22% OFF
Asus ROG Strix G15 G512LI HN331TS Laptop
  • Electro Punk
  • 8 GB RAM
  • 1 TB SSD
₹70,990₹90,990
Buy now
18% OFF
Asus ROG Strix G15 G513RW HQ137WS Laptop
  • Eclipse Gray
  • 16 GB RAM
  • 1 TB SSD
₹82,990₹101,000
Buy now
28% OFF
Asus ROG Strix G15 G513RM HQ271WS Laptop
  • Eclipse Gray
  • 16 GB RAM
  • 1 TB SSD
₹81,990₹113,990
Buy now
NEXT ARTICLE BEGINS