Google Project Zero puts Microsoft on blast about Windows 10 security

By: Costea Lestoc
2 minute read

Windows 10 has kept a pretty clean record with regard to vulnerabilities. While it’s not perfect, one can say that Microsoft has done a good job in keeping Windows 10 patched and secure. However, that’s not the case as far as a recent scan by Google’s Project Zero.

Project Zero discovered that Microsoft’s Windows 10 developed a vulnerability connected to a file named gdi32.dll. There are multiple programs that use this file, and the fact that it was listed as a vulnerability is concerning.

What is Project Zero?

Project Zero is a rather ambitious initiative out of Google that works towards preventing “tech tragedies”. They do this by identifying Zero Day vulnerabilities and reporting them to the appropriate software proprietor. This isn’t done instantly but in 90 days dime.

If the software owner fails to comply, Project Zero makes the information public. This is detrimental for the software developer but beneficial for everyday users who can defend themselves with the newfound knowledge.

Microsoft remains silent

Microsoft has yet to make any comments on the situation. Additionally, there is no information regarding a patch for this problem. Since it’s a core file vulnerability, it shouldn’t take long to get it patched up, but Microsoft’s silence makes many users uneasy. Also, keep in mind the fact that this month’s Patch Tuesday has been postponed until the middle of March. That patch may contain the solution for the vulnerability.

Contained situation

The fact that Microsoft has left a Windows 10 file vulnerability unchecked is not very reassuring. However, this particular one seems to promise no immediate disaster, which may explain why Microsoft hasn’t taken action yet. Users will have to wait until the tech giant comes with a statement at the very least, let alone a solution for the gdi32.dll issue.

There is virtually no chance that Microsoft would allow Project Zero to publish the vulnerability details before patching it. Most likely, the Redmond giant will offer more details about this situation in the following days.

RELATED STORIES TO CHECK OUT:

Next up

These features are out for good with Windows 10 version 1809

iamsovy@gmail.com' By: Sovan Mandal
2 minute read

Microsoft is all set to launch its next big update, Windows 10 version 1809 in October. While that should be a nice piece of news […]

Continue Reading

Windows 10 18H2 builds no longer receive new features

By: Matthew Adams
3 minute read

The Windows 10 October 2018 Update (otherwise 18H2) rollout might now be two to three weeks away. For the last few months, new build previews […]

Continue Reading

Windows 7 KB4457139 makes it easier to upgrade to Windows 10

By: Madeleine Dean
2 minute read

Microsoft released a new Windows 7 update to the general public. Update KB4457139 is actually a preview of the upcoming monthly rollup update and allows users […]

Continue Reading

Discussions