The other bad news: there are so many vulnerabilities on all systems which can be used to gain root-level access, it’s just a matter of time. Also, even future vulnerabilities will be an issue, as the underlying Sinkclose attacks will still work.
The good news is that in order to exploit the new vulnerability, the attacker first has to obtain kernel level access to the system somehow - by exploiting some other vulnerabilities perhaps.
The bad news is once Sinkclose attack is performed, it can be hard to detect and mitigate: it can even survive an OS reinstall.
JASN_DE@lemmy.world 3 months ago
possiblylinux127@lemmy.zip 3 months ago
Honestly not on a hardened setup
JASN_DE@lemmy.world 3 months ago
Sure, if you’d rather like to believe that.
possiblylinux127@lemmy.zip 3 months ago
If it was that easy to get root then we would be in serious trouble. The best way I can think of is social engineering.
scoutFDT@lemm.ee 3 months ago
So basically what you are saying is we just need one pvp game with kernel level anti cheat to fuck up somewhere… yeah I’m sure that’s not going to happen.
Appoxo@lemmy.dbzer0.com 3 months ago
Probably only on a targeted attack. I don’t see it being a mass target attack like a worm could be.
And in the realm of businesses, how many programs are running in kernel level besides the antivirus/ED(P)R solution?
weker01@sh.itjust.works 3 months ago
And with crowd strike we have seen how reliable Antivirus is.
conciselyverbose@sh.itjust.works 3 months ago
Why not? Malware that survives a full new install is extremely valuable, and there are loads of games adding vulnerabilities with required kernel level rootkits. It’s only a matter of time until one of these vendors is exploited, and why wouldn’t you permanently own the significant chunk of the market with unpatched serious vulnerabilities while you’re at it?
Appoxo@lemmy.dbzer0.com 3 months ago
Again: Mass spread vs target attack.
Remember WannaCry? Yeah, I don’t see that happen.
But (industrial) e-spionage on the other hand? Yup. Will happen 100%
possiblylinux127@lemmy.zip 3 months ago
The USB and network stack
raspberriesareyummy@lemmy.world 3 months ago
Leaving aside that security patches should be done, if you install that kind of game on a system where you have any data worth protecting, you’re a dumb ass mtherfcker. Sorry, but seriously, that’s just how it is.
scutiger@lemmy.world 3 months ago
Ignorance is not stupidity.
Despite this being reported on tech news, most people won’t even be aware that it’s a thing because most people won’t actually read about it. And the majority of gamers probably don’t even know what a kernel is or why an anti-cheat with elevated privileges would be a bad thing.
Most people buy their computers with Windows preinstalled and probably couldn’t tell you if the CPU is Intel or AMD.
raspberriesareyummy@lemmy.world 3 months ago
Okay, fair point, let me rephrase: if someone knows what kernel (admin) level execution means, and installs a game that requires this on a computer where they keep important data, they are a dumbass mtherfcker :) Generally speaking though: most people shouldn’t be allowed to use technology - humans are unbelievably stupid for the most part.