윈도우 11에서 USB 자동 설치 기능을 악용해 시스템 전체를 장악할 수 있는 방법이 발견됐다.
연구자들은 Windows의 Plug and Play 기능을 악용해 서명된 공급업체 소프트웨어를 불러오고 이를 통해 전체 시스템 권한을 장악하는 방법을 찾아냈다. 이 과정은 원격 데스크톱을 통해서도 실행할 수 있으며, 물리적 하드웨어가 필요하지 않다. Microsoft는 이 문제가 발견된 사실을 인정하였다.
Researchers discovered a way to abuse USB auto-install on Windows 11 for full system takeover.
Researchers have found a method to abuse the Plug and Play feature in Windows to fetch signed vendor software, enabling full SYSTEM access. This attack can be executed remotely via Remote Desktop, without needing physical hardware when specific configurations are enabled. Microsoft has acknowledged the discovery of this vulnerability.