Free Republic
Browse · Search
News/Activism
Topics · Post Article

Skip to comments.

Microsoft Admits It Signed Rootkit Malware That Phones Home To Chinese Military
https://hothardware.com/news/microsoft-admits-signing-rootkit-for-chinese ^ | June 26, 2021 | Ben Funk

Posted on 06/30/2021 8:20:33 AM PDT by ProgressingAmerica

Ever since the introduction of Windows Vista in early 2007, Microsoft has enforced the rule that Windows drivers must carry digital signatures by default. Any software that runs in kernel mode, in fact, has to be signed by the company. This is a security measure that should prevent malicious software from digging its claws in too deep. However, what happens when Microsoft gives its blessing to a rootkit?

That's what happened a few months ago and was just now discovered thanks to G DATA Software security analyst Karsten Hahn. Initially, the company received a false-positive alert from a driver that was signed by Microsoft. After a lot of investigation into the matter, it turns out that the positive was valid. A driver signed by Microsoft was redirecting traffic bound for hundreds of IP addresses to a server in China.

(Excerpt) Read more at hothardware.com ...


TOPICS: Foreign Affairs; News/Current Events
KEYWORDS: bigtech; china; malware; microsoft; microsoftchina; netfilter; rootkit; windows
Navigation: use the links below to view more comments.
first 1-2021-4041-42 next last
Windows XI


1 posted on 06/30/2021 8:20:33 AM PDT by ProgressingAmerica
[ Post Reply | Private Reply | View Replies]

To: ProgressingAmerica

Unexpected.


2 posted on 06/30/2021 8:22:30 AM PDT by E. Pluribus Unum ("Communism is not love. Communism is a hammer which we use to crush the enemy." ― Mao Tse-tung)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

Sell MSFT


3 posted on 06/30/2021 8:24:28 AM PDT by doc maverick
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

Windows the Poop


4 posted on 06/30/2021 8:25:04 AM PDT by Rurudyne (Standup Philosopher)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

Didn’t John McAfee give a warning about Chinese agents slipping backdoors into OS code as legit employees?


5 posted on 06/30/2021 8:25:37 AM PDT by a fool in paradise (Lean on Joe Biden to follow Donald Trump's example and donate his annual salary to charity.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

Execute Gates for Treason...?


6 posted on 06/30/2021 8:26:11 AM PDT by grey_whiskers (The opinions are solely those of the author and are subject to change with out notice.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: a fool in paradise

I’m not sure, but I know that my Linux doesn’t do this.

Apple is in bed with the Chicoms too, as is Google.


7 posted on 06/30/2021 8:26:36 AM PDT by ProgressingAmerica (Public meetings are superior to newspapers)
[ Post Reply | Private Reply | To 5 | View Replies]

To: ProgressingAmerica; All

“The driver maker, Ningbo Zhuo Zhi Innovation Network Technology, was working with Microsoft to study and patch any known security holes...”

https://www.engadget.com/microsoft-signed-netfilter-malware-driver-164228266.html


8 posted on 06/30/2021 8:27:16 AM PDT by BenLurkin (The above is not a statement of fact. It is either opinion, or satire. Or both.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

bookmark


9 posted on 06/30/2021 8:29:10 AM PDT by GOP Poet (Super cool you can change your tag line EVERYTIME you post!! :D. (Small things make me happy))
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

And puppet man is not going to stop this, because guess who is pulling his strings?


10 posted on 06/30/2021 8:34:33 AM PDT by I want the USA back (The government under democrats is a criminal enterprise.)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

I’m absolutely SHOCKED!!!


11 posted on 06/30/2021 8:36:05 AM PDT by PIF (They came for me and mine ... now its your turn)
[ Post Reply | Private Reply | To 1 | View Replies]

To: grey_whiskers

Gates hasn’t had anything to do with Microsoft for years.


12 posted on 06/30/2021 8:37:16 AM PDT by dfwgator (Endut! Hoch Hech!)
[ Post Reply | Private Reply | To 6 | View Replies]

To: ProgressingAmerica

No apple product call china or any one else - Apple is about protecting your privacy - Google is about selling your data to anyone to make money. Linux and Apple run on the same underlying Unix code.


13 posted on 06/30/2021 8:38:21 AM PDT by PIF (They came for me and mine ... now its your turn)
[ Post Reply | Private Reply | To 7 | View Replies]

To: All

I’m calling on my Huawei phone and Huawei network to complain about this.


14 posted on 06/30/2021 8:40:18 AM PDT by BipolarBob (Remember the good ol days when we worried about being bombed by the Russian President but not ours?)
[ Post Reply | Private Reply | To 11 | View Replies]

To: ProgressingAmerica

Perfect!


15 posted on 06/30/2021 8:41:30 AM PDT by Percy Quattro
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

Anybody can get an EV driver signing cert from Microsoft just like anybody can get an EV cert from DigiCert or GoDaddy for a web site. All the EV cert does is verify the legal cororate identity of the driver vendor. That’s it.

Microsoft will revoke the cert and blacklist the vendor just like DigiCert revoking a cert from a bad website.

All Windows Hardware Quality Labs (WHQL) does is automatic testing to ensure driver stability, compatibility, and basic functionality. It is easy for a bad guy to evade testing by not revealing the bad behavior during automatic testing.

This is exactly the same vetting that Google does for Android and Apple does for iPhones.

Microsoft does not ‘allow’ bad software any more than Android or Apple do. The news article is FUD.


16 posted on 06/30/2021 8:42:42 AM PDT by Gideon7
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

A feature, not a bug.


17 posted on 06/30/2021 8:46:34 AM PDT by Noumenon (The Second Amendment exists primarily to deal with those who just won't take no for an answer. KTF)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica
This is more about the corporation not even knowing want is being done internally.

John McAfee
@officialmcafee
Iconoclast.
Lover of women, adventure and mystery.
Founder of McAfee Anti-virus
14K Following
1.1M Followers
Tweet
See new Tweets
Tweet
John McAfee @officialmcafee
· Jun 3
In my last tweet I explained the virtual impossibility of identifying backdoors or other malicious code developed by a foreign agent in the guise of a software engineer.

I will now explain the process of embedding these agents into targeted companies.
https://twitter.com/officialmcafee/status/1400482858741948424


18 posted on 06/30/2021 9:02:51 AM PDT by a fool in paradise (Lean on Joe Biden to follow Donald Trump's example and donate his annual salary to charity.)
[ Post Reply | Private Reply | To 7 | View Replies]

To: ProgressingAmerica

Just keep giving MS those dollars so they can keep expanding their “business as usual”.


19 posted on 06/30/2021 9:03:10 AM PDT by Openurmind (The ultimate test of a moral society is the kind of world it leaves to its children. ~ D. Bonhoeffer)
[ Post Reply | Private Reply | To 1 | View Replies]

To: ProgressingAmerica

thank you Linus Torvalds.


20 posted on 06/30/2021 9:06:30 AM PDT by dadfly
[ Post Reply | Private Reply | To 1 | View Replies]


Navigation: use the links below to view more comments.
first 1-2021-4041-42 next last

Disclaimer: Opinions posted on Free Republic are those of the individual posters and do not necessarily represent the opinion of Free Republic or its management. All materials posted herein are protected by copyright law and the exemption for fair use of copyrighted works.

Free Republic
Browse · Search
News/Activism
Topics · Post Article

FreeRepublic, LLC, PO BOX 9771, FRESNO, CA 93794
FreeRepublic.com is powered by software copyright 2000-2008 John Robinson