Posted on June 16th, 2009 at 12:21 pm by Grace
There has been much talk about the problem associated with the so-called Pandora’s box that is Microsoft’s UAC or User Account Control. This is one of the most unforgettable features of Vista where it first appeared as the ever present annoying pop-up window that asked for permission on almost each and every mouse click (exaggerated). The danger is that the said control feature seems to fail to revert to default security settings after a user has signed into the system as the systems administrator. After this event, use of all applications thereafter have been found to have default settings of the admin without reverting to previously set security settings that can be a wide open door for hackers to exploit.
As it is, the system uses digital signatures to get the UAC program to go to work and ask for authorization each and every move that needs it, the problem arises if and should a hacker/s get their hands on such a valid digital signature and use it to run malware unimpeded. Armed with valid digital signatures, applications are allowed to run without security checks (UAC), fast-tracked into hacking heaven.