Schneier on Security's Journal
 
[Most Recent Entries] [Calendar View]

Thursday, August 26th, 2021

    Time Event
    1:58p
    Interesting Privilege Escalation Vulnerability

    If you plug a Razer peripheral (mouse or keyboard, I think) into a Windows 10 or 11 machine, you can use a vulnerability in the Razer Synapse software — which automatically downloads — to gain SYSTEM privileges.

    It should be noted that this is a local privilege escalation (LPE) vulnerability, which means that you need to have a Razer devices and physical access to a computer. With that said, the bug is so easy to exploit as you just need to spend $20 on Amazon for Razer mouse and plug it into Windows 10 to become an admin.

    << Previous Day 2021/08/26
    [Calendar]
    Next Day >>

Schneier on Security   About LJ.Rossia.org