Paragon Partition Manager, a popular system partition manager, has been found to have five vulnerabilities that can be exploited by ransomware groups to gain administrative permissions and install malware, even if the software is not installed, prompting Microsoft to work with Paragon Software to release a fix and block the old version of the driver.
- Vulnerabilities have been discovered and addressed by Microsoft researchers
- At least one vulnerability is actively being exploited by ransomware groups
- A fix has been released and old versions of the driver have been blocked by Microsoft
Paragon Partition Manager, a popular system partition manager, has recently been found to have five vulnerabilities that could potentially expose systems to malware. These vulnerabilities were discovered by Microsoft researchers and affect the BioNTdrv.sys driver. The researchers have confirmed that at least one of these vulnerabilities is actively being exploited by ransomware groups.
If these vulnerabilities are exploited, attackers can gain administrative permissions on the system, allowing them to carry out malicious activities and install malware. The flaws enable attackers to execute commands with administrative privileges, bypassing the system’s implemented protection measures. What’s more, since the driver is signed by Microsoft in Windows, attackers can exploit these vulnerabilities even if the Paragon Partition Manager is not installed on the system.
Microsoft believes that at least one of these vulnerabilities is actively being used by ransomware groups to install malware and carry out their malicious activities. The company has worked directly with Paragon Software to address the issue, and a fix has been released. Additionally, Microsoft has blocked the old version of the driver to prevent it from being executed on Windows and exploited for attacks.
Considering that the vulnerability can be exploited even by those who do not have Paragon Partition Manager installed, it is highly recommended to keep Windows updated with the latest version available. Users should also ensure that they have enabled the setting to prevent the loading of insecure drivers. For those who do have Paragon Partition Manager, it is crucial to update to the latest version of the software, as they may be at a higher risk of direct attacks using the driver.
It’s important to stay vigilant and take necessary precautions to protect our systems from potential vulnerabilities. Keeping software up to date and following best security practices can go a long way in safeguarding against potential threats.
About Our Team
Our team comprises industry insiders with extensive experience in computers, semiconductors, games, and consumer electronics. With decades of collective experience, we’re committed to delivering timely, accurate, and engaging news content to our readers.
Background Information
About Microsoft:
Microsoft, founded by Bill Gates and Paul Allen in 1975 in Redmond, Washington, USA, is a technology giant known for its wide range of software products, including the Windows operating system, Office productivity suite, and cloud services like Azure. Microsoft also manufactures hardware, such as the Surface line of laptops and tablets, Xbox gaming consoles, and accessories.Latest Articles about Microsoft
Trending Posts
“Epic Games CEO Delivers Blunt Critique of Apple and Google: Gangster-Style Tactics Under Fire”
Tenstorrent introduces Blackhole Developer Tools During Its Annual Dev Day Event
G.SKILL introduces 128GB DDR5 Memory Kit, Reaching Speeds of DDR5-8000
GTA V Joins Xbox and PC Game Pass Lineup Starting April 15
Shuttle Introduces New Intel-Powered AI-Enhanced XPC Nano Series Model
Evergreen Posts
NZXT about to launch the H6 Flow RGB, a HYTE Y60’ish Mid tower case
Intel’s CPU Roadmap: 15th Gen Arrow Lake Arriving Q4 2024, Panther Lake and Nova Lake Follow
HYTE teases the “HYTE Y70 Touch” case with large touch screen
NVIDIA’s Data-Center Roadmap Reveals GB200 and GX200 GPUs for 2024-2025
Intel introduces Impressive 15th Gen Core i7-15700K and Core i9-15900K: Release Date Imminent