Google Discloses Windows 10 Bug Under 'Active Attack'; Microsoft Working on Fix

Advertisement
By Akhil Arora | Updated: 2 November 2016 10:55 IST
Highlights
  • Windows 10 vulnerability is win32k.sys system call
  • Google said it's being "actively exploited"
  • Microsoft is unhappy with Google going public before patch
Google Discloses Windows 10 Bug Under 'Active Attack'; Microsoft Working on Fix

On Monday, Google’s Threat Analysis Group published details of a critical vulnerability in Microsoft’s Windows 10 that allows hackers to escape security sandboxes by using a system call with win32k.sys. The reason Google chose to go public with this knowledge is because it believes the vulnerability is being “actively exploited”.

Google had informed both Adobe and Microsoft of zero-day vulnerabilities only 10 days ago on October 21. While Adobe has already issued a patch for Flash – which is available via auto-updater or manual install – Microsoft has yet to send out an update for Windows 10 that blocks the use of this mechanism. And hence, as you’d expect, Microsoft isn’t happy with the disclosure.

“We believe in coordinated vulnerability disclosure, and today’s disclosure by Google puts customers at potential risk,” Microsoft conveyed to VentureBeat via a statement. “Windows is the only platform with a customer commitment to investigate reported security issues and proactively update impacted devices as soon as possible. We recommend customers use Windows 10 and the Microsoft Edge browser for the best protection.”

Google’s short disclosure period for "vulnerabilities under active attack" came into effect in May 2013, bringing it down from 60 days to just a week. Google noted that 7 days might be “an aggressive timeline and may be too short for some vendors to update their products” but it justified the urgency of its disclosures by saying that it’s still enough time to inform users and give some advice.

Advertisement

Issuing a fix for a web plug-in such as Adobe Flash is obviously much easier than patching an operating system, which is why Google’s policy for vulnerabilities under active attack has remained controversial. For now, you should check to see Flash is updated and install Windows patches the moment Microsoft issues them.

 

For the latest tech news and reviews, follow Gadgets 360 on X, Facebook, WhatsApp, Threads and Google News. For the latest videos on gadgets and tech, subscribe to our YouTube channel. If you want to know everything about top influencers, follow our in-house Who'sThat360 on Instagram and YouTube.

Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo T4 Ultra Launched in India With 50-Megapixel Periscope Camera
  2. Nothing Announces 'Now or Nothing' Sale in India: Check All Offers
  3. Know All About Apple's New Liquid Glass Design Language
  4. Samsung Galaxy S25 Ultra Allegedly Saves Life by Stopping Shrapnel
  5. Here's When the OnePlus Nord 5 and OnePlus Nord CE 5 Could Launch
  6. OpenAI Finally Releases O3-Pro Reasoning AI Model for Paid Users
  7. Google Releases Android 16 for Pixel Devices With These New Features
  8. Android 16 Update Is Coming Soon - Here's What to Expect
  9. Switch 2 Becomes Nintendo's Fastest-Selling Game System Ever
  10. Itel Zeno 5G With 50-Megapixel Rear Camera Launched in India: See Price
  1. Google Expands Gemini in Google Docs to Android Devices, Available in Over 20 Languages
  2. Starlink to Launch in India With Rs. 33,000 Setup Kit, Unlimited Data Plans Starting at Rs. 3,000: Report
  3. OpenAI Releases o3-Pro Reasoning-Focused AI Model, Comes With Improved Capabilities and Tool Use
  4. Google's June 2025 Pixel Drop Brings AI Sticker Generation to Gboard, Pixel VIPs Widget and Camera Hints
  5. Nintendo Switch 2 Sets Record, Sells Over 3.5 Million Units in First Four Days of Launch
  6. Vivo T4 Ultra With MediaTek Dimensity 9300+ SoC, 50-Megapixel Periscope Camera Launched in India
  7. Android 16 QPR1 Beta 2 Update With Support for Connected Displays, Flexible Window Tiling Released
  8. Android 16 With Support for Live Activities, Advanced Protection Rolling Out for Pixel Devices
  9. Itel Zeno 5G With MediaTek Dimensity 6300 SoC, 50-Megapixel Rear Camera Launched in India
  10. OnePlus Nord 5, OnePlus Nord CE 5 Launch Date Leaked: Expected Specifications
Gadgets 360 is available in
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2025. All rights reserved.