Microsoft will improve the reliability of Windows by depriving antiviruses of access to kernel mode

Microsoft has revealed details of the private Windows Endpoint Security Ecosystem Summit, organized in response to a massive Windows outage that occurred in July due to an incorrect update of CrowdStrike antivirus software. There, the company discussed with partners the development of a new platform in Windows specifically designed for anti-virus monitoring, displacing security products from the operating system (OS) kernel.

Image source: Microsoft

The company emphasized, “While this was not a decision-making meeting, we believe in the importance of transparency and community engagement.” It is noteworthy that the summit was closed to journalists, which emphasizes its technical focus.

The key reason for the July incident was privileged access of antivirus software to the Windows kernel, a critical component of the OS. This mechanism, which allows antiviruses to effectively monitor malicious changes in the depths of the system, simultaneously poses a potential threat to its stability. In the case of CrowdStrike, a glitch in the update validation mechanisms allowed an error to slip through, causing Windows to crash on computers around the world.

Microsoft initially considered revoking kernel access entirely for third-party programs, which could transform Windows into a more closed OS similar to Apple’s macOS. However, following the summit, the company abandoned such radical measures. Instead, Microsoft will focus on developing a new platform that provides enhanced security capabilities outside of kernel mode, thereby meeting its customers and partners.

At the summit, Microsoft and its partners discussed in detail the technical aspects of creating a new platform. Key topics included ensuring performance outside of kernel mode, developing tamper-proof mechanisms for security programs, and determining the requirements for security sensors for anti-virus monitoring. Microsoft emphasized the long-term nature of the project to develop a new level of Windows security in close collaboration with ecosystem partners.

admin

Share
Published by
admin

Recent Posts

An insider has revealed the main source of inspiration for the multiplayer Assassin’s Creed Invictus – Fall Guys

Image Source: Mediatonic Among the available formats are team deathmatch, every man for himself, and…

1 hour ago

Seasonic has released a PRIME PX-2200 power supply with a power of 2200 W for $500

Seasonic has released the PRIME PX-2200 2200 W power supply. The new product was first…

1 hour ago

Mercedes-Benz accelerated its third-level autopilot to 95 km/h

The ability of modern automation to control vehicles without human intervention is limited by a…

1 hour ago

GPUs limit programming freedom, so more chips will appear in the field of AI – Lisa Su

GPUs, originally created for creating three-dimensional images, have performed well in the field of accelerating…

2 hours ago

Samsung Display will build an OLED display plant in Vietnam

South Korean electronics maker Samsung Display plans to invest $1.8 billion this year to build…

2 hours ago