Bypassing Administrator Protection by Abusing UI Access
Google Project Zero·vor 104 d·Offiziell
In my last blog post I introduced the new Windows feature, Administrator Protection and how it aimed to create a secure boundary for UAC where one didn’t exist. I described one of the ways I was able to bypass the feature before it was released. In total I found 9 bypasses during my research that have now all been fixed. In this blog post I wanted to describe the root cause of 5 of those 9 issues, specifically the implementation of UI Access, how this has been a long standing problem with UAC that’s been under-appreciated, and how it’s being fixed now. A Question of Accessibility Prior to Wind
Kategorien cybersecurity
Originalquelle / Advisory ↗Veröffentlicht
11.2.2026, 23:00:00
Abgerufen
27.5.2026, 04:13:24
Trust
official · 100/100
Sprache
en