DEF CON Reveals 'Plug and Pwn' Windows Privilege Escalation via Fake USB
evilsocket · x · 2026-08-13
Security researchers at DEF CON 34 disclosed the 'Plug and Pwn' attack, which abuses Windows Plug and Play features. By emulating USB devices, attackers can force Windows to automatically install vulnerable vendor drivers, gaining SYSTEM privileges. Some attacks require no user interaction or can be triggered remotely via RDP.
More from Safety
- Report: AI Data Centers Consume 10x Indirect Water, Competing with Western Farmers — AndyMasley · 2026-08-13
- Twitch Opts Streamers In by Default to Train Amazon's AI Models — 404 Media · 2026-08-13
- Hinton, Fei-Fei Li and Andrew Ng Debate AI Regulation and Open Source — TechCrunch AI · 2026-08-13
- Far-Right Imageboard Users Building 'Fully Autonomous AI Doxxing' Tools — joeddav · 2026-08-13
- Implementing AI Text Watermarks via Constrained Sampling for EU AI Act Compliance — Xianbao_QIAN · 2026-08-13
- Researchers Reverse-Engineer LLM Prompts from Output Text — The Decoder · 2026-08-13