A bug in Microsoft's software gives hackers a way to exploit virtual Windows machines which would be attack-proof if they were running on real hardware, a researcher said today.
The flaw is in some of Microsoft's virtualization software, including Windows XP Mode, the free add-on for Windows 7 that lets users of the newer OS run older applications in a virtual machine.
Core Security went public with information about the flaw yesterday, seven months after reporting the problem, because Microsoft declined to patch it. "They don't believe this requires a patch," Ivan Arce, CTO of Core Security, said in an interview today. "They said that they would address it with an update or in a service pack some time in the future. We believe this needs to be fixed sooner."



Recent comments
14 weeks 4 days ago
14 weeks 5 days ago
14 weeks 6 days ago
14 weeks 6 days ago
15 weeks 17 min ago
15 weeks 11 hours ago
18 weeks 1 day ago
19 weeks 3 days ago
21 weeks 5 days ago
22 weeks 20 hours ago