• Archives
  • Cryptocurrency
  • Earnings
  • Enterprise
  • About TechBooky
  • Submit Article
  • Advertise Here
  • Contact Us
TechBooky
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • AI
  • Metaverse
  • Gadgets
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
TechBooky
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
Home Research/How to do it

Vulnerability in Windows Applocker: Potential Threat for User Privacy?

Paul Balo by Paul Balo
April 25, 2016
in Research/How to do it, Security, Software
Share on FacebookShare on Twitter

A technophile researcher has unearthed a flaw in Microsoft’s Windows that revolves around the Applocker, an integral security tool. As a key feature in Windows 7 and Windows Server 2008 R2, [Applocker](https://technet.microsoft.com/en-in/library/dd759117.aspx) enables administrators to specify which users or groups can run certain applications in an organization based on unique file identities. If you’re utilizing Applocker, it provides you with the facility to create rules that can either allow or prevent selected applications from running.

Current organizational structures face multifaceted challenges in controlling aspects of application execution. These challenges include, but are not limited to, the following:

– Determination of which applications a user should have access to run
– Selection of users who should be privileged with the installation of new software
– Regulations regarding which revisions of applications should be permitted
– Management of licensed applications

In essence, Applocker, as a tool, ensures a safer environment where only permitted apps operate. However, American researcher [Casey Smith](http://subt0x10.blogspot.com.ng/2016/04/bypass-application-whitelisting-script.html) reveals a potential loophole. By using the command-line utility Regsvr32, Smith states, one can manipulate it to point towards a remotely hosted file such as a script, enabling any chosen application to run on the system. This poses a lucrative opportunity for hackers and virus creators, effectively offering them a blank canvas. Adding to the complexity, this form of attack remains largely undetectable, as it does not necessitate administrative access or expose itself through conspicuous changes in the registry.

Substantiating his findings, Smith has moved ahead to [publish](https://gist.github.com/subTee/24c7d8e1ff0f5602092f58cbb3f7d302) a proof-of-concept script on the open-source platform GitHub. This development illustrates how the vulnerability could be exploited, in turn raising valid concern for user privacy.

As a temporary workaround until Microsoft is able to develop a permanent solution, users can increase their safety by disabling Regsvr32.exe and Regsvr64.exe’s access to the network via Windows Firewall. This action, albeit temporary, can enhance your system’s security by limiting the points of entry for potential hackers.

Related Posts:

  • 020tYFWBL4Yz8jIIFUdKDR1-22
    A Fix to Microsoft Windows Defender And Security Flaws
  • get-latest-updates-toggle
    Ads Could Be Coming To Windows 11 Shortly
  • CeeYjMDncRmSGNPVY3oH7B
    Microsoft Tests New AI-Powered Windows Search
  • microsoft-365-app-icon-1
    M365 Apps on Windows 10 to Receive Security Updates…
  • powershell-1024×683
    Microsoft Drops PowerShell 2.0 from Windows 11 & Server
  • win10-new-1152×648
    Microsoft’s $1.50 Windows Update Fee Kicks In July 1
  • Microsoft-delays-controversial-Recall-feature-rollout-for-Copilot-Plus-PCs-once-again.jpg
    Microsoft delays Copilot+ PC Recall to December
  • Untitled-design-2024-06-06T122729.531
    Google Acquires Cameyo To Include Windows App To ChromeOS

Discover more from TechBooky

Subscribe to get the latest posts sent to your email.

Tags: applockermicrosoftwindows
Paul Balo

Paul Balo

Paul Balo is the founder of TechBooky and a highly skilled wireless communications professional with a strong background in cloud computing, offering extensive experience in designing, implementing, and managing wireless communication systems.

BROWSE BY CATEGORIES

Receive top tech news directly in your inbox

subscription from
Loading

Freshly Squeezed

  • Signal Offers Both Premium & Free Backup Options For Chats September 9, 2025
  • Bluesky Includes Private Bookmark Feature September 9, 2025
  • Finally, Google Gives Reasons For The Gemini Usage Restrictions September 8, 2025
  • New OpenAI Jobs Platform Challenges LinkedIn With AI September 7, 2025
  • ChatGPT Users Get Memory Control and Access to Projects September 5, 2025
  • MTN Looking To Acquire Telkom September 5, 2025

Browse Archives

September 2025
MTWTFSS
1234567
891011121314
15161718192021
22232425262728
2930 
« Aug    

Quick Links

  • About TechBooky
  • Advertise Here
  • Contact us
  • Submit Article
  • Privacy Policy
Generic selectors
Exact matches only
Search in title
Search in content
Post Type Selectors
Search in posts
Search in pages
  • African
  • Artificial Intelligence
  • Gadgets
  • Metaverse
  • Tips
  • About TechBooky
  • Advertise Here
  • Submit Article
  • Contact us

© 2025 Designed By TechBooky Elite

Discover more from TechBooky

Subscribe now to keep reading and get access to the full archive.

Continue reading

We use cookies to ensure that we give you the best experience on our website. If you continue to use this site we will assume that you are happy with it.