Free Republic
Browse · Search
General/Chat
Topics · Post Article

Skip to comments.

Microsoft issues urgent warning for users to update PC
https://justthenews.com ^ | Updated: July 7, 2021 - 11:11am | Staff

Posted on 07/07/2021 9:07:39 AM PDT by Red Badger

Microsoft is telling Windows customers to immediately install an update, after a serious vulnerability in the operating system was found by researchers.

The security flaw, known as PrintNightmare, affects the Windows Print Spooler service, according to CNN.

Researchers at cybersecurity company Sangfor accidentally published a how-to guide for exploiting it, the cable TV news network also reports.

The researchers tweeted in late May that they had found vulnerabilities in Print Spooler, which allows multiple users to access a printer, CNN also reports.


TOPICS: Business/Economy; Computers/Internet; Conspiracy; History
KEYWORDS:

1 posted on 07/07/2021 9:07:39 AM PDT by Red Badger
[ Post Reply | Private Reply | View Replies]

To: Red Badger

Do you remember when Windows didn’t have serious problem?

Yeah, me neither.


2 posted on 07/07/2021 9:11:02 AM PDT by Rurudyne (Standup Philosopher)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Red Badger

Microsoft always says their updates are end-of-the-world important.


3 posted on 07/07/2021 9:17:40 AM PDT by PLMerite ("They say that we were Cold Warriors. Yes, and a bloody good show, too." - Robert Conquest )
[ Post Reply | Private Reply | To 1 | View Replies]

To: Rurudyne
Do you remember when Windows didn’t have serious problem?

Yeah, me neither.

Cue the arrogant Linux users in 3...2....1...

4 posted on 07/07/2021 9:17:57 AM PDT by Yo-Yo (is the /sarc tag really necessary?)
[ Post Reply | Private Reply | To 2 | View Replies]

To: Red Badger
Excerpt of an email from our company's IT department. Note where it says under key points that an attacker needs valid login credentials to compromise a vulnerable system. Well, heck, if someone has valid login credentials, they can install any exploit they wish - keyloggers, remote administration, etc.

Security Advisory

Critical Vulnerability CVE-2021-34527 (PrintNightmare)

General - ATTN: All Windows systems administrators and system owners

What Happened?

A critical vulnerability in the print spooler service of Microsoft Windows was disclosed to the public last week. Referred to as “PrintNightmare,” this vulnerability allows an attacker to run commands, install programs, modify data, and create new Windows accounts with full Windows SYSTEM privileges.

Code to exploit this vulnerability has been published online, and exploit toolkits have already started including functionality to attack this vulnerability. There are currently no active, confirmed attacks occurring in the wild, but this is likely to change over the next several days or weeks.

Key Points:

* This critical vulnerability affects all versions of Microsoft Windows.
* Domain controllers are particularly at risk, as they are high-value targets.
* An attacker needs valid login credentials to compromise a vulnerable system.
* The most recent cycle of Windows updates do NOT protect against this vulnerability.

Microsoft has released an out-of-cycle update on July 6th to address this vulnerability, however.

There are also workarounds that will mitigate this vulnerability until a patch is released by Microsoft.

NOTE: These workarounds will disable the vulnerable system’s ability to print.


5 posted on 07/07/2021 9:24:47 AM PDT by Yo-Yo (is the /sarc tag really necessary?)
[ Post Reply | Private Reply | To 1 | View Replies]

To: Red Badger

Windows Print Spooler has always had problems way back to Windows 95.

What, Nigerian princes can now bypass email and print out their pleas to you at 2 am?


6 posted on 07/07/2021 9:35:40 AM PDT by bgill
[ Post Reply | Private Reply | To 1 | View Replies]

To: Yo-Yo

According to Bender in the year 3000 the prisons will be using Windows because it always locks up.

At the other end of Windows history: “Microsoft Windows: You will believe your 386 will fly like a 286 running DOS.”


7 posted on 07/07/2021 9:41:13 AM PDT by Rurudyne (Standup Philosopher)
[ Post Reply | Private Reply | To 4 | View Replies]

To: Red Badger
I don't trust a word of this.   I get automatic updates and this warning is either behind the curve and it's already happened, or it is fake news still trying to frighten the sheep.
8 posted on 07/07/2021 10:07:18 AM PDT by higgmeister ( In the Shadow of The Big Chicken )
[ Post Reply | Private Reply | To 1 | View Replies]

To: Red Badger
I just clicked on manage notifications and it responded no new notifications.   What are these so called journalists trying to pull!?!
9 posted on 07/07/2021 10:09:26 AM PDT by higgmeister ( In the Shadow of The Big Chicken )
[ Post Reply | Private Reply | To 1 | View Replies]

To: Red Badger

This was BIG news, what, a week ago?

The cure is really simple. Don’t run the Windows print spooler on servers that have Internet service.


10 posted on 07/07/2021 10:11:16 AM PDT by upchuck (I am not afraid of the Chinese Virus or variants. I AM afraid of the unproven "vaccines.")
[ Post Reply | Private Reply | To 1 | View Replies]

To: Yo-Yo
Well, heck, if someone has valid login credentials, they can install any exploit they wish - keyloggers, remote administration, etc.

Not necessarily. We do not give our users the ability to install software. However, this exploit uses the built in SYSTEM account. So this exploit will work regardless of the permission level of the account used to access the system originally.

11 posted on 07/07/2021 10:20:02 AM PDT by CA Conservative (Texan by birth, Californian by circumstance)
[ Post Reply | Private Reply | To 5 | View Replies]

To: Red Badger

just take the paper out of your printer


12 posted on 07/07/2021 11:07:39 AM PDT by TheElectionWasStolen
[ Post Reply | Private Reply | To 1 | View Replies]

To: Red Badger

The print spool has been junk forever.


13 posted on 07/07/2021 11:11:43 AM PDT by cp124 (Family and friends, pay to play government.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: cp124
The print spoolMS-Windows has been junk forever.

Fixed that for you.

14 posted on 07/07/2021 12:46:13 PM PDT by zeugma (Stop deluding yourself that America is still a free country.)
[ Post Reply | Private Reply | To 13 | View Replies]

To: Rurudyne

At least out-of-the-box it detects all your hardware so (if not already configured) you can go to enable such essentials as a USB wifi adapter internet with drivers.


15 posted on 07/07/2021 4:43:53 PM PDT by daniel1212 ( Turn to the Lord Jesus as a damned+destitute sinner, trust Him to save + be baptized + follow Him!)
[ Post Reply | Private Reply | To 2 | View Replies]

To: daniel1212

Did I say I was running Linux? No, I did not.


16 posted on 07/07/2021 4:45:23 PM PDT by Rurudyne (Standup Philosopher)
[ Post Reply | Private Reply | To 15 | View Replies]

To: Rurudyne
" Did I say I was running Linux? No, I did not. "

That is fine and sorry for presuming, but I was also hoping for some help!

17 posted on 07/07/2021 5:51:00 PM PDT by daniel1212 ( Turn to the Lord Jesus as a damned+destitute sinner, trust Him to save + be baptized + follow Him!)
[ Post Reply | Private Reply | To 16 | View Replies]

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
General/Chat
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson