Close Menu
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

What's On
Splitgate 2 Has Been Rebooted As Splitgate: Arena Reloaded And It Relaunches This Month

Splitgate 2 Has Been Rebooted As Splitgate: Arena Reloaded And It Relaunches This Month

6 December 2025
Bowers & Wilkins Px8 Headphones Drop to 9 in Luxury Audio Deal

Bowers & Wilkins Px8 Headphones Drop to $499 in Luxury Audio Deal

6 December 2025
WIRED Roundup: DOGE Isn’t Dead, Facebook Dating Is Real, and Amazon’s AI Ambitions

WIRED Roundup: DOGE Isn’t Dead, Facebook Dating Is Real, and Amazon’s AI Ambitions

6 December 2025
Facebook X (Twitter) Instagram
Just In
  • Splitgate 2 Has Been Rebooted As Splitgate: Arena Reloaded And It Relaunches This Month
  • Bowers & Wilkins Px8 Headphones Drop to $499 in Luxury Audio Deal
  • WIRED Roundup: DOGE Isn’t Dead, Facebook Dating Is Real, and Amazon’s AI Ambitions
  • Demonschool Review – Class Is In Session
  • The Gopro Hero13 Black action camera drops to $319 in 26% off deal
  • Buying Warner Bros. Gives Netflix What It’s Always Needed: An Identity
  • Metroid Prime 4, Marvel Cosmic Invasion, and More | The Game Informer Show
  • OnePlus 15R poised to make battery anxiety a thing of the past with mega reveal
Facebook X (Twitter) Instagram Pinterest Vimeo
Best in TechnologyBest in Technology
  • News
  • Phones
  • Laptops
  • Gadgets
  • Gaming
  • AI
  • Tips
  • More
    • Web Stories
    • Global
    • Press Release
Subscribe
Best in TechnologyBest in Technology
Home » There’s a scary new way to undo Windows security patches
News

There’s a scary new way to undo Windows security patches

News RoomBy News Room28 August 20243 Mins Read
Share Facebook Twitter Pinterest LinkedIn Tumblr Reddit Telegram Email
There’s a scary new way to undo Windows security patches
Share
Facebook Twitter LinkedIn Pinterest Email

Security patches for Windows are essential for keeping your PC safe from developing threats. But downgrade attacks are a way of sidestepping Microsoft’s patches, and a security researcher set out to show just how fatal these can be.

SafeBreach security researcher Alon Leviev mentioned in a company blog post that they’d created something called the Windows Downdate tool as a proof-of concept. The tool crafts persistent and irreversible downgrades on Windows Server systems and Windows 10 and 11 components.

Leviev explains that his tool (and similar threats) performs a version-rollback attack, “designed to revert an immune, fully up-to-date software back to an older version. They allow malicious actors to expose and exploit previously fixed/patched vulnerabilities to compromise systems and gain unauthorized access.”

He also mentions that you can use the tool to expose the PC to older vulnerabilities sourced in drivers, DLLs, Secure Kernel, NT Kernel, the Hypervisor, and more. Leviev went on to post the following on X (formerly Twitter): “Other than custom downgrades, Windows Downdate provides easy to use usage examples of reverting patches for CVE-2021-27090, CVE-2022-34709, CVE-2023-21768 and PPLFault, as well as examples for downgrading the hypervisor, the kernel, and bypassing VBS’s UEFI locks.”

If you have not checked it out yet, Windows Downdate tool is live! You can use it to take over Windows Updates to downgrade and expose past vulnerabilities sourced in DLLs, drivers, the NT kernel, the Secure Kernel, the Hypervisor, IUM trustlets and more!https://t.co/59DRIvq6PZ

— Alon Leviev (@_0xDeku) August 25, 2024

What’s also concerning is that the tool is undetectable because it can’t be blocked by endpoint detection and response (EDR) solutions, and your Windows computer will continue to tell you it’s up to date even though it’s not. He also uncovered various ways to turn off Windows virtualization-based security (VBS), including Hypervisor-Protected Code integrity (HVCI) and Credential Guard.

Microsoft released a security update (KB5041773) on August 7 to fix the CVE-2024-21302 Windows Secure Kernel Mode privilege escalation flaw and a patch for CVE-2024-38202. Microsoft has also released some tips Windows users can take to stay safe, such as configuring “Audit Object Access” settings to scan for file access attempts. The release of this new tool shows how exposed PCs are to all sorts of attacks and how you should never let your guard down when it comes to cybersecurity.

The good news is that we can rest easy for now since the tool was created as a proof-of-concept, an example of “white-hat hacking” to discover vulnerabilities before threat actors do. Also, Leviev handed over his findings to Microsoft in February 2024, and hopefully, the software giant will have the necessary fixes soon.











Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
Previous ArticleHere’s What the Inside of an Airbus Factory Looks Like
Next Article Vivo Y18i – Price in India, Specifications (28th August 2024)

Related Articles

Bowers & Wilkins Px8 Headphones Drop to 9 in Luxury Audio Deal
News

Bowers & Wilkins Px8 Headphones Drop to $499 in Luxury Audio Deal

6 December 2025
WIRED Roundup: DOGE Isn’t Dead, Facebook Dating Is Real, and Amazon’s AI Ambitions
News

WIRED Roundup: DOGE Isn’t Dead, Facebook Dating Is Real, and Amazon’s AI Ambitions

6 December 2025
The Gopro Hero13 Black action camera drops to 9 in 26% off deal
News

The Gopro Hero13 Black action camera drops to $319 in 26% off deal

5 December 2025
Buying Warner Bros. Gives Netflix What It’s Always Needed: An Identity
News

Buying Warner Bros. Gives Netflix What It’s Always Needed: An Identity

5 December 2025
OnePlus 15R poised to make battery anxiety a thing of the past with mega reveal
News

OnePlus 15R poised to make battery anxiety a thing of the past with mega reveal

5 December 2025
Horses, the Most Controversial Game of the Year, Doesn’t Live Up to the Hype
News

Horses, the Most Controversial Game of the Year, Doesn’t Live Up to the Hype

5 December 2025
Demo
Top Articles
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024107 Views
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 202497 Views
Costco partners with Electric Era to bring back EV charging in the U.S.

Costco partners with Electric Era to bring back EV charging in the U.S.

28 October 202496 Views

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Latest News
Buying Warner Bros. Gives Netflix What It’s Always Needed: An Identity News

Buying Warner Bros. Gives Netflix What It’s Always Needed: An Identity

News Room5 December 2025
Metroid Prime 4, Marvel Cosmic Invasion, and More | The Game Informer Show Gaming

Metroid Prime 4, Marvel Cosmic Invasion, and More | The Game Informer Show

News Room5 December 2025
OnePlus 15R poised to make battery anxiety a thing of the past with mega reveal News

OnePlus 15R poised to make battery anxiety a thing of the past with mega reveal

News Room5 December 2025
Most Popular
The Spectacular Burnout of a Solar Panel Salesman

The Spectacular Burnout of a Solar Panel Salesman

13 January 2025136 Views
ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

ChatGPT o1 vs. o1-mini vs. 4o: Which should you use?

15 December 2024107 Views
5 laptops to buy instead of the M4 MacBook Pro

5 laptops to buy instead of the M4 MacBook Pro

17 November 202497 Views
Our Picks
Demonschool Review – Class Is In Session

Demonschool Review – Class Is In Session

5 December 2025
The Gopro Hero13 Black action camera drops to 9 in 26% off deal

The Gopro Hero13 Black action camera drops to $319 in 26% off deal

5 December 2025
Buying Warner Bros. Gives Netflix What It’s Always Needed: An Identity

Buying Warner Bros. Gives Netflix What It’s Always Needed: An Identity

5 December 2025

Subscribe to Updates

Get the latest tech news and updates directly to your inbox.

Facebook X (Twitter) Instagram Pinterest
  • Privacy Policy
  • Terms of use
  • Advertise
  • Contact Us
© 2025 Best in Technology. All Rights Reserved.

Type above and press Enter to search. Press Esc to cancel.