| ▲ | rolph 5 hours ago | ||||||||||||||||||||||
there are active forks, and active mitigations for redsun undefend and bluehammer. so far as i can tell yellowkey is problematic, as the exploit takes advantage of a backdoor that ms needs, to "manage" your computer. only recently has a OOB mitigation been offered https://www.techspot.com/news/112410-security-researcher-mic... | |||||||||||||||||||||||
| ▲ | mittensc 4 hours ago | parent | next [-] | ||||||||||||||||||||||
> so far as i can tell yellowkey is problematic, as the exploit takes advantage of a backdoor that ms needs, to "manage" your computer. It does look like an intentional backdoor. The way ms is responding to it is even more suspicious. Pretty funny since this defeats security on most corporate laptops, so impact is huge. You'd expect them to treat the reporter better and fix the issue fast... I'm curious why they put it in, I'm not sure I understand the 'to "manage" your computer' note. Microsoft should have no reason to put something like this in. So either they were forced or they had some engineers that did this on their own without any oversight. | |||||||||||||||||||||||
| |||||||||||||||||||||||
| ▲ | ranger_danger 4 hours ago | parent | prev [-] | ||||||||||||||||||||||
> backdoor that ms needs source: | |||||||||||||||||||||||