Plug and Pwn Attack Uses Fake USB Devices for Windows SYSTEM Access
3 Articles
3 Articles
The Plug and Pwn attack presented in DEF CON 34 showed that the automatic installation mechanism of Windows can represent a much wider attack surface than it appears. Researchers Alejandro Hernando Sanz and Borja Martínez demonstrated how specially emulated USB devices can induce the operating system to follow legitimate Plug and Play (PnP) paths until it reaches code execution with high privileges. The search draws attention because it does not…
Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11
Windows Plug and Play can be abused to fetch signed vendor software for an emulated USB device and execute privileged installation components that researchers chained to SYSTEM access on a fully updated Windows 11 machine. The same PnP path can be triggered over Remote Desktop without physical hardware when supported Plug and Play or low-level USB redirection is enabled; Microsoft says that
Coverage Details
Bias Distribution
- 100% of the sources are Center
Factuality
To view factuality data please Upgrade to Premium




