Glossary
User Account Control (UAC)
The Windows mechanism that prompts for consent before a process gains administrative privileges, limiting silent privilege escalation. UAC bypass techniques — abusing auto-elevating Windows binaries — are a staple of malware seeking admin rights without triggering the prompt.
Recent coverage mentioning User Account Control (UAC)
Trojanized npm Packages Deliver AI-Powered RedC2 4.0 Linux Backdoor
Malicious npm packages deliver RedC2 4.0 Linux backdoor, featuring AI-assisted command and control for advanced post-exploitation.
Sandworm UAC-0145 Uses Fake Job Interviews for Arbitrary Command Execution
CERT-UA warns of Sandworm-linked UAC-0145 targeting IT workers with fake job interviews, deploying a modified WireGuard client that executes arbitrary commands.
Plug and Pwn: SYSTEM Access via Windows Plug and Play Abuse
New Plug and Pwn attacks leverage Windows Plug and Play to install vulnerable vendor software, granting attackers SYSTEM privileges via USB emulation or RDP.
Sandworm Targets IT Pros With Trojanized WireGuard VPN Client
Russian threat group Sandworm targets IT professionals using fake job interviews and trojanized WireGuard VPN clients to deliver malware.
Bypassing Windows Administrator Protection: Security Research
Analysis of Windows 11 25H2 Administrator Protection, detailing security research into UAC flaws and local privilege escalation vectors.
WhatsApp VBS Malware Bypasses UAC to Hijack Windows Systems
Microsoft warns of a new campaign distributing VBS malware via WhatsApp, exploiting UAC bypass to establish persistence and remote access on Windows systems, starting…
Advertisement