Submit a Story!
Malware can turn off UAC in Windows 7; “By design” says Microsoft
Malware can turn off UAC in Windows 7; “By design” says Microsoft
MSFT buzz-phrases: By design and Won't Fix. New to Windows 7 is the ability to fine tune User Account Control (UAC), the infamously chatty feature introduced in Windows Vista to improve security. As the Windows operating system cannot differentiate between a user clicking a button and a ...
Our Next Engineering Milestone
blogs.msdn.com — Many posts start with a thank you and I want to start this post with an extra... special thank you on behalf of the entire Windows team for all the installs and usage we are seeing of teh Windows 7 Beta. We’ve had millions of installations of Windows 7 ... (more) Our Next Engineering Milestone
Microsoft unveils Windows 7 SKU lineup
Microsoft unveils Windows 7 SKU lineup
geekzone.co.nz — News : Windows , posted 4-FEB-2009 04:00 Microsoft unveils Windows 7 SKU lineup Microsoft is annoucing the... Windows 7 SKU lineup with different Windows 7 editions for specific market requirements. Each SKU is a superset of the previous SKU. This means ... (more) Microsoft unveils Windows 7 SKU lineup
Windows 7 SKUs announced: your worst nightmare has come to pass
Windows 7 SKUs announced: your worst nightmare has come to pass
engadget.com — Remember that screenshot we saw of all those different Windows 7 versions (pictured above)? Well guess what?... It's worse than you could have possibly imagined. The following will be the actual new SKUs for the OS: Windows 7 Starter  ... (more) Windows 7 SKUs announced: your worst nightmare has come ...
Comments
Blog Reactions

Microsoft confirm, UAC security flaw in Windows 7
D' Technology Weblog — ... To demonstrate how easy it is to automate the disabling of UAC, Rafael wrote a VBScript. An obvious fix for this “issue” would be to force the adjustment of UAC parameters to be confirmed by a human. Until Microsoft addresses this “issue”, you can set UAC to its highest mode to kill any concerns you may have. ...

Microsoft neuters UAC in Windows 7
Hardware 2.0 — ... , we came up with a fully functional proof-of-concept in VBScript (would be just as easy in C++ EXE) to do that - emulate a few keyboard inputs - without prompting UAC. You can download and try it out for yourself here , but bear in mind it actually does disable UAC. Fortunately, there’s a simple workaround: Until when Microsoft decides to fix this, if they do at all, beta users of Windows 7 can also apply a simple fix. Changing the UAC policy to “Always Notify” will force Windows 7 to notify you even if UAC settings change. Annoying, but safe. What’s also annoying is that ...

Windows 7 beta UAC completely vulnerable to malware
TG Daily - All News — ... As a result, using only keystroke commands issued by a malware program, in Windows 7 beta it can activate the UAC, move the slider bar to the "disable messages" position, close the dialog and then proceed through the system doing whatever it wants to in the background without the user ever knowing that their system's been compromised - because they don't see any popups as their UAC setting should've indicated. The discoverer wrote some simple code (which can be downloaded from his page ) and also notes that this is apparently a Microsoft-purposed design feature of Windows 7, ...

Windows 7's UAC is now insecure 'by design'
TechBlog — ... I had to think "bad thoughts" to come up with a way to disable UAC without the user's interaction. The solution was trivial, you could complete the whole process with just keyboard shortcuts so why not make an application that emulates a sequence of keyboard inputs. Zheng and a friend came up with a simple VBScript routine that disables UAC completely. Malicious software could then be installed onto the Windows 7 computer without the user knowing it had been done. You can download it from Rafael Rivera Jr.'s blog . And yes, it really does completely disable the UAC in Windows ...

The oldest trick in the book, literally, defeats UAC in Windows 7
Betanews — ... problems (we should know). So it's to any researcher's credit that a potentially threatening problem be brought into the open prior to Microsoft finalizing the code for everyday use. That said, it's an little embarrassing to discover that a dumbfoundingly simple method for forcing Windows to accept keypresses from a script as though they'd been pressed by a human being, is the focus of a proof-of-concept macro capable of disengaging User Account Control in Windows 7. The macro was published this morning by developer Rafael Rivera , and then kicked into the public spotlight ...

Microsoft agrees to make Windows 7’s UAC more secure
TechBlog — Ring ring ring ring . . . Mozilla Phone! | Main February 05, 2009 Microsoft agrees to make Windows 7 s UAC more secure win7_3 Never let it be said that Microsoft doesn't listen to its customers. Sometimes, though, those customers have to speak VERY, VERY LOUDLY before the company takes action. Tonight, in an Engineering Window 7 blog post , Microsoft honchos Steve Sinofsky and Jon DeVaan said a security issue pointed out by bloggers Long Zheng and Rafael Rivera will be fixed. As I wrote last week , the issue involves the ability ...

Related Content
Is UAC broken in Windows 7 beta?
blogs.zdnet.com 2/4/2009 — Is the UAC (User Account Control) mechanism built into Windows 7 beta broken?
Microsoft Bows to Critics, Will Change Windows 7 UAC
technologizer.com 2/6/2009 — Yesterday I wrote about the Windows 7 dust-up that involved a couple of security bloggers’ concern that malware could silently turn User Account Control off , and Microsoft’s seeming unwillingness to talk much about the issue other than ...
Microsoft agrees to make Windows 7’s UAC more secure
blogs.chron.com 2/6/2009 — Never let it be said that Microsoft doesn't listen to its customers. Sometimes, though, those customers have to speak VERY, VERY LOUDLY before the company takes action. Tonight, in an Engineering Window 7 blog post, Microsoft honchos Steve Sinofsky and...
More proof that Microsoft wants Windows 7 out in 2009
arstechnica.com 2/1/2009 — On the Engineering Windows 7 blog this week, Microsoft again noted that it was planning to give the public a Release Candidate of Windows 7 before the final version is ready. In other words, there is not going to be a "Beta 2," and the ...
Why Microsoft Should Give Windows 7 Away [Windows 7]
i.gizmodo.com 1/29/2009 — Windows 7 is shaping to be an awesome OS. It's everything people wanted Vista to be and more. Which is exactly why Microsoft should give it away—or offer it dirt cheap—to Vista users. Windows 7 is the solution to Microsoft's Vista ...
Windows 7 - Who Leaked Windows 7?
microsoft-watch.com 1/3/2009 — December 30, 2008 8:50 PM Who Leaked Windows 7? I sure as hell think so. It's certainly what I would do if I worked at Microsoft on Windows evangelism. The timing is perfect, from a marketing perspective. The leaked build hit BitTorrent sometime on ...
Microsoft says business clients helped shape Windows 7
blog.seattlepi.com 3/4/2009 — Microsoft wants businesses to know that it took their views into account in building Windows 7, the next version of its operating system.
Can Microsoft do what it's never done before: Make a new Windows version run better on old/low-end hardware than its predecessor?
community.winsupersite.com 1/14/2009 — I broached this topic in a previous blog post , but Saul Hansell at the NYT Bits Blog examines Microsoft's efforts to de-bloat Windows 7 so it runs well on netbook computers. You know, unlike Vista. The biggest question facing Windows 7 is whether ...
feedback Resources
updates.zdnet.com 2/19/2009 — ZDNet Resources What do Windows 7 beta testers really want? Windows beta testing ain't what it used to be. Over the past couple of days, this reality seems to be setting in among some Windows 7 testers. by Mary Jo Foley Tags : Team , Microsoft Windows ...
How to Get Your Windows 7 Beta 1 on Friday
blog.wired.com 1/8/2009 — Microsoft will make the first public beta of Windows 7, the next version of its desktop operating system, available as a free download on Friday . There are several limitations, however, so even if you're excited and commited to trying out Windows ...
Microsoft warns that Vista, XP upgrade blockers set to expireLatest from Computerworld
Microsoft is telling customers that tools that block automatic upgrades to the newest service packs of Windows Vista and Windows XP will expire in the coming months.
Microsoft: Next step for Windows 7 is a release candidateLatest from Computerworld
The head of Microsoft's Windows development said today that Windows 7 will take the unusual path of moving straight from a single beta to a release candidate.
Time to cut the Windows version division, MicrosoftThe Register
Windows 7 netbook plus for all When it comes to Windows 7 Microsoft should resist succumbing to its usual inner demons.… Free Download - CRM: Fast Return on Investment
Microsoft: No plans for second Windows 7 betaCNET News.com
The next step will be a release candidate version, Windows engineering chief Steven Sinofsky said in a blog post on Friday.
Report: Georgetown University bans use of Windows 7 betaCNET News - Business Tech
Georgetown University is banning the use of the Windows 7 beta , informing students and faculty it will not support the trial version of Microsoft's latest operating system, according to a report in InformationWeek The university's ...