Microsoft Warns Windows PCs Also Vulnerable to FREAK Attacks

Advertisement
By Reuters | Updated: 7 March 2015 12:17 IST
Hundreds of millions of Windows PC users are vulnerable to attacks exploiting the recently uncovered "FREAK" security vulnerability, which was initially believed to only threaten mobile devices and Mac computers, Microsoft Corp warned.

News of the vulnerability surfaced on Tuesday when a group of nine security experts disclosed that ubiquitous Internet encryption technology could make devices running Apple Inc's iOS and Mac operating systems, along with Google Inc's Android browser vulnerable to cyber-attacks.

Microsoft released a security advisory on Thursday warning customers that their PCs were also vulnerable to the "FREAK" vulnerability.

Advertisement

The weakness could allow attacks on PCs that connect with Web servers configured to use encryption technology intentionally weakened to comply with U.S. government regulations banning exports of the strongest encryption.

If hackers are successful, they could spy on communications as well as infect PCs with malicious software, the researchers who uncovered the threat said on Tuesday.

Advertisement

The Washington Post on Tuesday reported that whitehouse.gov and fbi.gov were among the sites vulnerable to these attacks, but that the government had secured them.

Security experts said the vulnerability was relatively difficult to exploit because hackers would need to use hours of computer time to crack the encryption before launching an attack.

Advertisement

"I don't think this is a terribly big issue, but only because you have to have many ducks in a row," said Ivan Ristic, director of engineering for cyber-security firm Qualys Inc .

That includes finding a vulnerable web server, breaking the key, finding a vulnerable PC or mobile device, then gaining access to that device.

Advertisement

Microsoft advised system administrators to employ a workaround to disable settings on Windows servers that allow use of the weaker encryption. It said it was investigating the threat and had not yet developed a security update that would automatically protect Windows PC users from the threat.

Apple said it had developed a software update to address the vulnerability, which would be pushed out to customers next week.

Google said it had also developed a patch, which it provided to partners that make and distribute Android devices.

"FREAK" stands for Factoring RSA-EXPORT Keys.

© Thomson Reuters 2015

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Oppo Find X9 Ultra Battery, Chipset Details Revealed Ahead of Global Launch
  2. Tim Cook to Step Down as Apple CEO as John Ternus Named Successor
  3. Poco M8s 5G Debuts Globally With 7,000mAh Battery: See Price, Features
  4. These Vivo Smartphones Will Cost More in India Due to the Latest Price Hike
  5. Samsung Galaxy A57, A37 Review: Is Samsung's 'A-Game' Worth the Price?
  6. Huawei Pura 90 Series Launches in China With These Specifications
  7. Motorola Edge 70 Fusion Review
  8. Assassin's Creed Black Flag Resynced Will Be Revealed This Week
  9. Apple's iOS 26.5 Beta 3 Update for iPhone Rolls Out: Here's What's New
  10. Dyson Launches Supersonic Travel as Smaller, Lighter Hair Dryer
  1. Poco M8s 5G Launched With 7,000mAh Battery, 50-Megapixel Camera: Price, Specifications
  2. Assassin's Creed Black Flag Resynced Will Be Revealed on April 23, Ubisoft Confirms
  3. Apple's iOS 26.5 Beta 3 Update for iPhone Rolls Out With Stability Improvements, Bug Fixes
  4. Glory OTT Release Date Confirmed: When and Where to Watch Pulkit Samrat’s Boxing Crime Drama Online?
  5. Jailer 2 OTT Release Date Reportedly Revealed Online: When and Where to Watch it Online?
  6. Greenland 2 Migration OTT Release Date Confirmed: When and Where to Watch Gerard Butler Starrer Movie Online?
  7. iPhone 18 May Not Arrive With Hardware Upgrades, Could Be Closer to iPhone 18e as Apple Cuts Costs: Reports
  8. Vivo Smartphones Get Price Hike in India: Vivo T5x, Vivo V70, Vivo Y31 5G Now Cost Up to Rs. 4,000 More
  9. Oppo Find X9 Ultra Battery, Chipset Details Revealed Ahead of Global Launch
  10. Dyson Supersonic Travel Hair Dryer Launched With Compact Design, Heat Control Features: Price, Specifications
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.