Google Project Zero puts Microsoft on blast about Windows 10 security

Costea Lestoc By: Costea Lestoc
2 minute read

Home » News » Google Project Zero puts Microsoft on blast about Windows 10 security

Windows 10 has kept a pretty clean record with regard to vulnerabilities. While it’s not perfect, one can say that Microsoft has done a good job in keeping Windows 10 patched and secure. However, that’s not the case as far as a recent scan by Google’s Project Zero.

Project Zero discovered that Microsoft’s Windows 10 developed a vulnerability connected to a file named gdi32.dll. There are multiple programs that use this file, and the fact that it was listed as a vulnerability is concerning.

What is Project Zero?

Project Zero is a rather ambitious initiative out of Google that works towards preventing “tech tragedies”. They do this by identifying Zero Day vulnerabilities and reporting them to the appropriate software proprietor. This isn’t done instantly but in 90 days dime.

If the software owner fails to comply, Project Zero makes the information public. This is detrimental for the software developer but beneficial for everyday users who can defend themselves with the newfound knowledge.

Microsoft remains silent

Microsoft has yet to make any comments on the situation. Additionally, there is no information regarding a patch for this problem. Since it’s a core file vulnerability, it shouldn’t take long to get it patched up, but Microsoft’s silence makes many users uneasy. Also, keep in mind the fact that this month’s Patch Tuesday has been postponed until the middle of March. That patch may contain the solution for the vulnerability.

Contained situation

The fact that Microsoft has left a Windows 10 file vulnerability unchecked is not very reassuring. However, this particular one seems to promise no immediate disaster, which may explain why Microsoft hasn’t taken action yet. Users will have to wait until the tech giant comes with a statement at the very least, let alone a solution for the gdi32.dll issue.

There is virtually no chance that Microsoft would allow Project Zero to publish the vulnerability details before patching it. Most likely, the Redmond giant will offer more details about this situation in the following days.

RELATED STORIES TO CHECK OUT:

Discussions

Next up

Fix 0x8007007e Windows Update error like a PRO

Emmanuel Johnson avatar. By: Emmanuel Johnson
2 minute read

The error 0x8007007e usually occurs while trying to download Windows updates. This can be a big problem and leave your system vulnerable and out of […]

Continue Reading

How to run Microsoft Works on Windows 10? [QUICK GUIDE]

Vladimir Popescu avatar. By: Vladimir Popescu
3 minute read

Have you ever tried using MS Works on Windows 10? It might be harder than you think. Even though Works has been discontinued by Microsoft, […]

Continue Reading

Windows Defender can’t scan multiple files in Windows 10 v1903

Alexandru Voiculescu By: Alexandru Voiculescu
2 minute read

Users reported on Reddit that Windows 10 v1903 disabled Windows Defender real-time protection. This is often the case when you installed another antivirus solution on […]

Continue Reading