Malware

Windows 11 Administrator Protection Feature Had Multiple Vulnerabilities

via RSS: Google Project Zero
Windows 11 Administrator Protection Feature Had Multiple Vulnerabilities

Windows 11's latest version (25H2) introduced Administrator Protection to replace the older User Account Control (UAC) system. This new feature aims to provide stronger security by limiting administrator access only when needed. However, security researchers discovered nine separate vulnerabilities in the feature that could allow attackers to silently gain full administrator privileges. All reported issues were fixed by Microsoft before official release through security update KB5067036 and subsequent bulletins. UAC, introduced in Windows Vista, also faced similar security limitations as it didn't create a hard security boundary. Administrator Protection addresses these weaknesses with improved design. Note: Microsoft disabled the feature on December 1, 2025, due to application compatibility issues. Source: Security research blog.

Read the full story

Original reporting by RSS: Google Project Zero. We only summarise โ€” never republish.

Open source