You are here: silicon.com > Software > Operating Systems

Operating Systems

UAC in Windows 7: Less annoying but less secure?

Warning, warning

Tags: microsoft, uac, windows 7

By Ina Fried

Published: 2 February 2009 08:59 GMT

Microsoft's efforts to make Windows 7 less annoying than Vista may also be making it less secure than its predecessor.

With Windows Vista, the operating system popped up a warning every time a major change was being made to the system, whether by the OS or by a third-party application. With Windows 7, users can choose how often to be notified, with the current default set to notify only when a third-party application is making a change.

Blogger Long Zheng, however, is drawing attention to an apparent shortcoming in that approach. Because changes to the User Account Control setting itself are being made within the OS - and not by a third party - malicious code could turn off such alerts entirely with the user getting little notice that such a change had been made. Zheng said he and fellow blogger Rafael Rivera have come up with a simple proof-of-concept code to show the vulnerability.

Microsoft is trying to thread a difficult needle here. The prompts issued by the User Account Control program, though annoying, help alert users to changes to their system. But if the prompts are so irritating that people turn off the setting - or stick with older operating systems - then this threatens the security.

A Microsoft representative was not immediately available for comment.

Original article: Windows 7 less annoying, but also less secure? from CNET News.com

  1. Zones
  2. Management
  3. Networks
  4. Software
  5. IT Services
  6. Hardware
  1. Verticals
  2. Public Sector
  3. Financial Services
  4. Retail & Leisure

for IT White Papers Newsletter

Nick Heath Your top HR tech priorities for next year revealed How to make human resources IT work for you

Bob Tarzey Why you must rein in your power users When they do damage, it can be catastrophic to your business


  • Jobs
Vista Operational Analyst

The successful candidate will already have both excellent VISTA 4GL, Microsoft (Vista, Windows 2003 Desktop and Server, Proactive client seeking ...

Senior Analyst Programmer, M4 corridor - Vista 4GL

Senior Analyst Programmer, M4 corridor - Vista 4GL / distribution systems - global media business! Working within a large development team you'll be ...

Change / Operations Analyst, M4 corridor - Vista Book & Ledger

Change / Operations Analyst, M4 corridor - Vista Book & Ledger Systems / UAT Exciting opportunity to this global media and publishing business, who ...

Agenda Setters 2009
Welcome to the ninth annual Agenda Setters poll – silicon.com's list of the top 50 most influential individuals in the technology and IT industries, from techies and CIOs to entrepreneurs and business leaders. Find out more in our latest special report.





Quick Sitemap Links: