Technology
Windows flaw lets hackers sneak into your PC over Wi-Fi
A new security issue was found in the Windows Wi-Fi driver that let hackers break into your PC through wireless networks.
This flaw, which is now fixed, allowed attackers to run malicious programs on affected computers. It impacted all modern versions of Windows and Windows Server, and the hackers didn’t need to have any previous access to the target computer.
Fortunately, Microsoft has released a security update that addresses this Wi-Fi driver vulnerability. However, it’s crucial to keep your software up to date and follow best practices to minimize the risk of such attacks.
We’ll provide tips below on what you should do to protect yourself if a similar issue arises in the future.
GET SECURITY ALERTS, EXPERT TIPS – SIGN UP FOR KURT’S NEWSLETTER – THE CYBERGUY REPORT HERE
Windows laptop computers (Microsoft)
What you need to know about the security flaw
Microsoft labeled the vulnerability CVE-2024-30078 with a maximum severity of “Important.” It is described as a “Windows Wi-Fi Driver Remote Code Execution Vulnerability.” If we break down these terms, you’d understand that the flaw allows an attacker within Wi-Fi range of your computer to send a specially crafted network packet to the target and exploit your PC.
This vulnerability is dangerous because it can bypass all security checks, doesn’t need special permissions and requires no action from the user. For example, imagine you’re at a cafe using its public Wi-Fi. You’d expect some security measures to protect your device. But with this vulnerability, an attacker could easily sneak malware onto your laptop without you knowing. You wouldn’t have to click anything or give permission — just being connected to the Wi-Fi is enough. This could happen at any public hot spot, like at hotels, airports or cafes, putting many people at risk.
WHAT IS ARTIFICIAL INTELLIGENCE (AI)?
Microsoft admitted there weren’t any known active attacks utilizing this security hole. However, it described the vulnerability itself as fairly easy to exploit. While Microsoft downplays the immediate risk, these announcements can sometimes attract malicious hackers. The vulnerability affects every supported version of Windows, including unpatched versions of Windows 10 and Windows 11. It also affects all Windows Server versions from 2008 onward.
A woman working (Kurt “CyberGuy” Knutsson)
DON’T LET SNOOPS NEARBY LISTEN TO YOUR VOICEMAIL WITH THIS QUICK TIP
Microsoft’s response to its security vulnerability
On June 11, Microsoft released a patch that eliminates the security vulnerability. This patch also addresses 49 CVEs across Windows and its components, Office and its components, Azure Dynamic Business Central and Visual Studio. This is applicable if you are using a version of Windows that still receives security updates. If you are using an end-of-life version of Windows without an extended service contract, it is recommended to update to a supported version as soon as possible.
Update your Windows software now
In light of the recently discovered and patched Wi-Fi driver vulnerability, it is crucial for all Windows users to promptly update their software to ensure maximum protection against potential cyber threats. Keeping your operating system and other software up to date is one of the most effective ways to safeguard your devices from known vulnerabilities and security flaws. To update your Windows software and benefit from the latest security patches, follow these simple steps:
For Windows 10 and Windows 11
- Click on the Start menu and select “Settings” (or press the Windows key + I shortcut).
- In the Settings window, click on “Update & Security.”
- Under the “Windows Update” section, click on “Check for updates.”
- If updates are available, including the patch for the Wi-Fi driver vulnerability, Windows will download and install them automatically.
- Once the installation is complete, you may be prompted to restart your computer to apply the updates.
For Windows 8.1 and earlier versions
- Open the Control Panel and navigate to “System and Security.”
- Under the “Windows Update” section, click on “Check for updates.”
- If updates are available, including the patch for the Wi-Fi driver vulnerability, select them and click “Install updates.”
- Follow the on-screen instructions to complete the installation process.
- Restart your computer if prompted to apply the updates.
By keeping your Windows software up to date, you not only protect yourself from the recently discovered Wi-Fi driver vulnerability but also ensure that your system is fortified against other known security threats. Regular software updates are essential for maintaining a secure and reliable computing environment. Remember, cybercriminals are constantly seeking new ways to exploit vulnerabilities, so it’s crucial to stay vigilant and promptly install updates as they become available.
Windows laptop (Microsoft)
CYBER SCAMMERS USE AI TO MANIPULATE GOOGLE SEARCH RESULTS
Six ways to protect yourself from Wi-Fi cyberattacks
There are many ways a Wi-Fi network can be exploited by bad actors. However, you can protect yourself by following these steps.
1. Enable encryption: WPA2 and WPA3 (Wi-Fi-protected access) are the standard encryptions now. If your network is using WEP (wired equivalent privacy) security, this is outdated. New routers should automatically come with WPA2 or WPA3 encryption, but you may have to enable it to be sure your router is secure. Your wireless network manual will show you how to enable this on your particular network, but be sure to do so so your Wi-Fi requires a password.
2. Update your Wi-Fi password often: When you first set up a new router, it will come with a pre-set Wi-Fi router name and password. Be sure to change this as soon as you set it up and use a strong password. Always make sure your network requires a password to log in. It’s also important to change this information regularly. This makes it harder for anyone to hack into your network. Use these Best Password Managers for 2024 to help create and store your passwords.
3. Update firmware and software: As with computers and phones, it’s essential to keep your software up to date to help protect against security threats. Always run the latest software. Some routers will call this firmware, so make sure to keep that updated.
4. Install a strong antivirus program: Hackers often gain access to devices by sending infected emails or documents or tricking users into clicking a link that downloads malware. You can avoid all of this by installing antivirus software that will detect any potential threat before it can take over your device or router. Get my picks for the best 2024 antivirus protection winners for your Windows, Mac, Android & iOS devices.
5. Pick a secure router: If you’re in the market for a new router, check out my list of top routers. These routers are recommended not only for their security features but also for their compatibility with VPN service providers.
6. Use a VPN: A Virtual Private Network (VPN) can provide an additional layer of security, especially when accessing your network remotely. For best VPN software, see my expert review of the best VPNs for browsing the web privately on your Windows, Mac, Android and iOS devices
Remember, while no system can be completely invulnerable, these steps can significantly reduce the risk of cyberattacks on your Wi-Fi network.
Kurt’s key takeaway
The Wi-Fi driver flaw on Windows is particularly concerning because it gives bad actors an open invitation to exploit your computer. Since Microsoft has now made the vulnerability public, cybercriminals may try to exploit it even though the Redmond-based company says it has patched it. As a rule of thumb, avoid using public Wi-Fi networks you don’t trust. If necessary, connect to a VPN, turn off file sharing, and disable auto-connect.
Do you often use public Wi-Fi networks? If yes, do you take any measures to protect your digital privacy and safety? Let us know by writing us at Cyberguy.com/Contact
For more of my tech tips and security alerts, subscribe to my free CyberGuy Report Newsletter by heading to Cyberguy.com/Newsletter
Ask Kurt a question or let us know what stories you’d like us to cover
Follow Kurt on his social channels
Answers to the most asked CyberGuy questions:
Copyright 2024 CyberGuy.com. All rights reserved.
Technology
Nvidia says its AI data center design runs hotter to use a lot less water
Public pushback against data centers has emphasized their water and energy consumption, and now Nvidia is highlighting its claim that the Rubin generation reference design for a fully liquid-cooled data center has “eliminated massive amounts of power usage and pretty much all water usage.” Still, it doesn’t address all of the concerns around AI data centers, including during their construction, and for the power generation requirements of the massive facilities. Also, as Gizmodo points out, Nvidia’s blog post doesn’t mention the cost of building this style of data center vs. one using less efficient air cooling, but claims that “every cloud provider and data center operator building for [Rubin] is making the transition.”
The efficiency gains are partly due to running AI servers hotter, as high as 113 degrees Fahrenheit (45 degrees Celsius). In a recent report, Amazon similarly touted higher heat tolerances as part of making its mostly air-cooled data centers more efficient.
With Nvidia’s system, “heat is captured directly at the chip and transported through liquid loops operating at much higher temperatures, allowing outdoor dry coolers to reject heat efficiently for much of the year,” with much more flexibility when it comes to the ambient air temperature.
According to Nvidia’s head of sustainability, Josh Parker, the reference design takes water use “from roughly 2.6 million gallons per megawatt per year for conventional cooling-tower-based systems to near zero — up to a 100 percent reduction.”
Technology
Google invests in A24 to build AI movie tools
Google’s DeepMind AI lab is teaming up with A24 to develop new movie production technologies that aim to help future filmmakers “expand their storytelling possibilities.” As part of this new research and development collaboration, The Wall Street Journal reports that Google is investing “around $75 million” into A24, marking the first time the search giant has taken a stake in a film studio.
“The collaboration pairs a world-leading research lab with the industry’s most filmmaker-forward studio to help artists develop new workflows and techniques,” Google said in its announcement blog. “This ensures the tools of the future are shaped by the creators who use them.”
The partnership is expected to span across “multiple projects over time” according to Google, though the announcement doesn’t mention any specific movies that Google will be involved with. WSJ reports that Google and A24 are aiming to create new tools for movie production and distribution, something that Google alluded to in its own announcement, saying the “initial focus is on bridging the gap between cutting-edge technology and next generation entertainment.”
The multiyear deal is non-exclusive, according to WSJ, and doesn’t allow Google to access A24’s film and television library data. Still, the partnership is likely to raise some eyebrows in the film industry, given that Google’s AI models are trained on publicly available internet data, and how ferociously other movie studios like Disney, Universal, and Warner Bros have fought AI companies for alleged copyright violations.
WSJ also reports that Google and A24 are hoping to include the movie studio’s existing roster of artists in the deal, such as YouTube creator and Backrooms director, Kane Parsons. In an interview with The Australian earlier this month, Parsons said that “generative AI feels less like innovation than a symptom of a broader cultural and economic rot,” and that he gets “no enjoyment” out of using the technology on any project.
According to Scott Belsky — an A24 partner who was previously Adobe’s chief strategy officer — the tools that Google and A24 are developing “won’t look anything like the prompted generation type of AI that people feel uncomfortable with.” In his statement to WSJ, Belsky said “there are better uses that preserve creative control and support risk-taking.”
Technology
Cold Court’s debut EP is an infectious, glitchy genre mashup
Cold Court is a brother-sister duo from Philly that seems to love nothing more than shoving all of their influences together in a messy soup that at least superficially resembles the hyperpop you’ve come to expect from acts like 100 Gecs. But, where songs like “Dumbest Girl Alive” goofily wink at pop punk and emo, Cold Court are a bit more self-serious, and that’s not necessarily a bad thing.
The opening track on the band’s debut EP (^_^) / (aka Hands Up), “Nina”, starts off sounding not unlike the dance punk bands that stormed the scene in the mid aughts like Franz Ferdinand or Test Icicles. But that all starts to change about a minute in, when the skuzzy riff gets chopped up and fed through a beat repeater. Another minute later, there’s a mellow proggy bridge that calls to mind Mars Volta. Then the whole thing ends on a barrage of glitches and digital chaos.
The record largely continues in this fashion. The songs on Hands Up clearly started life on drums and guitar. But then Mini and Jojo fed their creations to a computer, added layers, rearranged the pieces, and piled on the effects. Single “Burn” is perhaps the best example of all the parts coming together. It features big rock riffs, Daft Punk-esque synths, dubstep chops, autotuned vocals, and even a rapped bridge. Yet the whole thing feels like a cohesive, seething whole as they shout, “I just want to see it burn, give a fuck about your word.”
They’re not the deepest lyrics, but it works.
While Cold Court is clearly an exercise in maximalism, not every song goes quite as big as “Burn.” “Cola” moves more slowly, strips back some of the layers, but doesn’t turn the volume down. “Glass” almost becomes math rock as its guitars get chopped up and spit back out, and the EP’s closer “Light” is blown-out, sparkly prog.
Over the course of a full album, the relentless barrage might grow exhausting. But at just 21 minutes, Hands Up doesn’t overstay its welcome, and it will be interesting to see how the band evolves as the young duo grow.
-
Crypto52 seconds agoSafaricom Teams With Chainalysis as AI Hunts Payments Linked to Illegal Wildlife Trade
-
Finance4 minutes agoEU and Hong Kong in talks on new financial services dialogue, envoy says
-
Fitness9 minutes agoThe ‘Greek God Method’ May be the Most Efficient Way to Build an Aesthetic Physique After 40
-
Movie Reviews19 minutes agoMovie Review – The Get Out (2026)
-
World31 minutes ago
Oklahoma rolls past Tar Heels 13-2 for 1st national championship since 1994 and SEC’s 7th in a row
-
Lifestyle1 hour agoDid you know? Alan Greenspan and Ayn Rand were close friends
-
Education1 hour agoThe Man of Faith Who Heard a Righteous Call in the Founding Credo
-
Technology1 hour agoNvidia says its AI data center design runs hotter to use a lot less water