Categories: NewsTechnology

Google publicly outs an open exploit in Windows

Google has just disclosed a crucial open vulnerability in Windows publicly. The move came ten days down the line when the exploit was first revealed to Microsoft.

The 0-day vulnerability, for which a patch hasn’t been released, was brought to Microsoft’s notice on October 21. Before the vulnerability could’ve been patched, Google went on and shared it publicly, stating that the vulnerability is already being exploited actively.

The blog post, which exposed the vulnerability, read,

“After 7 days, per our published policy for actively exploited critical vulnerabilities, we are today disclosing the existence of a remaining critical vulnerability in Windows for which no advisory or fix has yet been released. This vulnerability is particularly serious because we know it is being actively exploited.”

Google also mentioned that along with the said threat, a Flash vulnerability was also being shared with Adobe on October 21st. The vulnerability in Adobe systems existed in Flash, which it patched up releasing an updated version of the software on October 26th.

Google has publicly listed its policy on why and when a Cyber Security threat would be made public. The Google security researchers work on finding vulnerabilities, and communicate flaws with the relevant parent companies. Google follows a controversially Aggressive Time-line on sharing the details publicly. Although various companies point that a 7-day deadline isn’t sufficient for a company to work on a vulnerability, Google puts that the time is ample for publishing a public advisory.

“Seven days is an aggressive timeline and may be too short for some vendors to update their products,” Google says in a blog post, “but it should be enough time to publish advice about possible mitigation.”

Sources have also revealed the Microsoft response on the said issue,“We believe in coordinated vulnerability disclosure, and today’s disclosure by Google puts customers at potential risk,” a Microsoft spokesperson told VentureBeat.

Sponsored
Muneeb Ahmad

I love to talk about global tech-happenings, startups, industry, education and economy. Get in touch: muneeb@techjuice.pk.

Leave a Comment
Share
Published by
Muneeb Ahmad

Recent Posts

WhatsApp Beta Partners with Google for Innovative Image Search Feature

When it comes to Android messaging apps, WhatsApp stands out as one of the best.…

31 mins ago

Farrukh Sabzwari Appointed as CEO of PSX, Set to Serve for Three Years

Farrukh H. Sabzwari has been appointed Chief Executive Officer (CEO) of Pakistan Stock Exchange Company…

1 hour ago

250 Government Schools to Be Run by Private Sector

RAWALPINDI: The chairman of the Punjab Education Foundation, Malik Shoaib Awan, stated on Monday that…

2 hours ago

Pakistan Launches First National Sex Offenders Register to Combat Sexual Violence

Pakistan has taken a significant step towards addressing sexual violence and abuse with the introduction…

3 hours ago

SBP Chief Reports October Remittances Exceed $3 Billion

KARACHI: The State Bank of Pakistan (SBP) is anticipating $500 million from the Asian Development…

3 hours ago

Sindh Assembly Reveals 28,500 Govt Employees’ Spouses as Illegal BISP Beneficiaries

The Sindh Assembly was informed that over 28,500 employees of the provincial government were unlawfully…

4 hours ago