USB Auto-Install Allows SYSTEM Takeover on Windows 11
TL;DR. Researchers demonstrated a USB auto-install exploit allowing full SYSTEM privilege takeover on Windows 11 machines. - The attack uses an auto-mounting USB drive to execute arbitrary code with highest system privileges. - This method bypasses traditional user consent prompts, exploiting default Windows configuration for silent execution. - The vulnerability highlights risks associated with physical access and trusted device policies on modern operating systems.
- A new attack vector leverages USB auto-install functionality to gain SYSTEM level control on Windows 11.
- The exploit allows silent execution of malicious code, bypassing user interaction and security prompts.
- Researchers have successfully demonstrated a full system takeover, exposing a critical vulnerability in default Windows configurations.
- This research underscores the ongoing challenges in securing physical access points and device trust mechanisms.
Sources
- Researchers Turn USB Auto-Install Into a Full SYSTEM Takeover on Windows 11 — thehackernews.com