Windows Defender Policies Bypassed Using WinDbg Preview via Microsoft Store

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

Windows Defender Policies Bypassed Using WinDbg Preview via Microsoft Store

Post by Shane1145 »

A significant vulnerability in Windows Defender Application Control (WDAC) implementations, demonstrating how attackers can circumvent strict security policies through Microsoft’s own debugging tool.

The exploit leverages WinDbg Preview, available through the Microsoft Store, to inject malicious code into legitimate processes, effectively bypassing security controls designed to prevent unauthorized code execution.


https://cybersecuritynews.com/windows-d ... -bypassed/
Post Reply