Google Discloses Windows 10 Bug Under 'Active Attack'; Microsoft Working on Fix

Advertisement
By Akhil Arora | Updated: 2 November 2016 10:55 IST
Highlights
  • Windows 10 vulnerability is win32k.sys system call
  • Google said it's being "actively exploited"
  • Microsoft is unhappy with Google going public before patch

On Monday, Google’s Threat Analysis Group published details of a critical vulnerability in Microsoft’s Windows 10 that allows hackers to escape security sandboxes by using a system call with win32k.sys. The reason Google chose to go public with this knowledge is because it believes the vulnerability is being “actively exploited”.

Google had informed both Adobe and Microsoft of zero-day vulnerabilities only 10 days ago on October 21. While Adobe has already issued a patch for Flash – which is available via auto-updater or manual install – Microsoft has yet to send out an update for Windows 10 that blocks the use of this mechanism. And hence, as you’d expect, Microsoft isn’t happy with the disclosure.

Advertisement

“We believe in coordinated vulnerability disclosure, and today’s disclosure by Google puts customers at potential risk,” Microsoft conveyed to VentureBeat via a statement. “Windows is the only platform with a customer commitment to investigate reported security issues and proactively update impacted devices as soon as possible. We recommend customers use Windows 10 and the Microsoft Edge browser for the best protection.”

Google’s short disclosure period for "vulnerabilities under active attack" came into effect in May 2013, bringing it down from 60 days to just a week. Google noted that 7 days might be “an aggressive timeline and may be too short for some vendors to update their products” but it justified the urgency of its disclosures by saying that it’s still enough time to inform users and give some advice.

Advertisement

Issuing a fix for a web plug-in such as Adobe Flash is obviously much easier than patching an operating system, which is why Google’s policy for vulnerabilities under active attack has remained controversial. For now, you should check to see Flash is updated and install Windows patches the moment Microsoft issues them.

 

Get your daily dose of tech news, reviews, and insights, in under 80 characters on Gadgets 360 Turbo. Connect with fellow tech lovers on our Forum. Follow us on X, Facebook, WhatsApp, Threads and Google News for instant updates. Catch all the action on our YouTube channel.

Advertisement

Related Stories

Popular Mobile Brands
  1. Vivo X Fold 6 Battery, Durability Details Teased Days Ahead of Debut
  2. You Will Soon Be Able to Stop Web Results From Appearing in Windows Search
  3. Xiaomi Wants a Bigger Space in Your Home: Large Appliance Push Confirmed
  4. Delhi High Court Backs Pre-NEET Telegram Ban, Rejects Platform's Appeal
  5. Vivo Y6e 5G With 6,500mAh Battery Debuts at This Price
  6. 'Tough Year for Gamers': MSI Claw 8 EX AI+ Handheld Priced at $1,800
  7. New OTT Releases of the Week: Drishyam 3, Thukra ke Mera Pyar S2, and More
  8. Samsung Galaxy S27 Leak Shows No Major Camera, Display Upgrades
  9. Ultrahuman Launches M2 Live Platform for Metabolic Health Monitoring
  10. iPhone Ultra Renders Showcase Design, Slim 4.5mm Profile
  1. CMF Won't Launch New Phones in 2026, CMF Phone 2 Pro Successor Delayed Due to Ongoing RAM Shortage
  2. Bitcoin Price Slides to $62,700 as Investors Remain Cautious Amid Ongoing Geopolitical Uncertainty
  3. Enola Holmes Season 3 OTT Release Date: When and Where to Watch Millie Bobby Brown Starrer Series Online?
  4. Maiin Haan Now Streaming Online: Where to Watch the Punjabi Horror Movie Inspired by Real Events
  5. Delhi High Court Reportedly Backs Pre-NEET Telegram Ban, Rejects Platform’s Appeal
  6. Microsoft Starts Testing New Windows Search Update That Lets Users Disable Web Results
  7. 'Tough Year for Gamers': MSI Confirms $1,800 Price Tag for New Claw 8 EX AI+ Handheld
  8. iPhone Ultra Leak Reveals Crease-Free Foldable Display, Slim 4.5mm Profile; Price Tipped
  9. Ultrahuman Launches M2 Live Platform for Metabolic Health Monitoring: Price, Features
  10. OnePlus Pad 3 Pro Launched in China With Snapdragon 8 Elite Gen 5 SoC, 144Hz Display: Price, Specifications
Download Our Apps
Available in Hindi
© Copyright Red Pixels Ventures Limited 2026. All rights reserved.