Skip to main content

Warning! Hackers can open a Website on Windows 10 using Cortana, even your PC is lokecd


Independent researchers discovered a particularly worrisome security vulnerability in Microsoft’s Windows 10.  Especially for people who had installed their PC OS with the default settings, it can affect them.

Before we get started, are you wondering what is Cortana? well, Cortana is a virtual assistant created by Microsoft for Windows 10, Windows 10 Mobile, Windows Phone 8.1, that Invoke smart speaker. So this software can allow hackers to open Website on a PC through the voice command.



you'll notice, in the video above that the researcher issues the voice command voice and unlocks the PC with their password. The vulnerability doesn’t allow a bad actor to unlock your computer, but with physical access to your system, they could direct it to just about any website they wanted.

The scenario becomes even more concerning if the attacker has enough access/time to plug a USB drive/stick into the target PC. This combination of vulnerabilities could potentially allow a hacker to proliferate an attack against any computers connected to the same network.

By default, your system probably has “use Cortana even when my device is locked” enabled. We highly suggest fixing this problem by taking the following steps:

If you’ve got the Cortana search bar on your task bar click it and then click the settings icon. (If you’ve removed the search bar just click the Windows start button and select “Cortana” from the menu, then choose the settings icon).



Next, scroll down to the “Lock Screen” section and turn off “use Cortana even when my device is locked.”


For added security, you can disable “Let Cortana respond to “Hey Cortana,” which will require you to click on the microphone icon anytime you wish to use voice control.


If you have friends that actually using Windows 10, tell them about that bug so they can be safe like you. thank you!

Comments

Popular posts from this blog

Google start to previews Stack Overflow answers directly in Search results

Google has started displaying previews for Stack Overflow answers directly in Search. Now it will be easier for developers and programmers to find the best answers to questions submitted to Stack Overflow. This clearly means that you can easily filter through the most popular answers to Stack Overflow submissions with having to load the page. The current layout shows the responses only partially, so you will still have to visit the website to read the full responses. Here is how the new layout looks like in comparison to the older one: The Next Web asked Stack Overflow about the feature – and while the company confirmed it has noticed the feature – it pointed The Next Web to Google for further comment. They reached out to Google for a clarification and will update this piece accordingly if they hears back.

Block those annoying notification requests with the new release of FireFox 59

While you are surfing the net these days, almost every site asks you to subscribe to its push notifications. it's a tiny thing but annoying to some people, From now on those pop-ups may not be for long with the release of Firefox 59 , Mozilla   has added a little useful feature to its browser that allows you stops websites from asking you to send notifications. By enabling this same setting you will be able to block websites from asking about accessing to your device's camera, microphone and location, few web apps, those settings are actually useful, of course. If it is hard for you to surf without your camera and microphone working, the settings are always there, and you can disable it if you want.  Many other new features are included in this release like faster graphics rendering for Mac users, a couple of updates on the Firefox Home page, the ability to add annotations to screenshots and better support for pen and touch screen pointer input. The Firefox te

WhatsApp Updated the way its message deletion feature works

WhatsApp has quietly updated the way its message deletion feature works, that feature named the WhatsApp "delete for everyone" which was only allowing you to delete messages up to seven minutes after you send them.  WABetaInfo has noticed that the latest version of WhatsApp extends that time limit significantly to one hour, eight minutes, and 16 seconds. So now a new update will be available for IOS users. A new WhatsApp for iOS update (2.18.31) is available on AppStore. It is a bug fixes update, but it has the new “Delete for everyone” limit, that’s 1 hour, 8 minutes and 16 seconds. — WABetaInfo (@WABetaInfo) March 8, 2018 This extending over deletion delay means you now have far longer to delete messages sent by mistake,  or it can wipe out entire conversations from a friend’s phone. So I think that this additional time could help facilitate more temporary conversations on WhatsApp.