Uncovering the Windows Update Downgrade Attack: How Zero-Days “Unpatch” Fully Updated Systems
At the Black Hat 2024 conference, SafeBreach security researcher Alon Leviev unveiled a concerning discovery: two zero-day vulnerabilities that allow downgrade attacks to "unpatch" fully updated Windows systems. These vulnerabilities affect Windows 10, Windows 11, and Windows Server, compromising the integrity of the operating systems by reintroducing old security flaws. This article delves into the mechanics of these downgrade attacks, the vulnerabilities involved, and Microsoft's response to this critical security issue. ... Read More