[Full-disclosure] Windows 7 UAC compromised
Christopher Pritchard
mailinglist at brainiacghost.co.uk
Mon Feb 2 19:14:36 GMT 2009
> The biggest issue here is that although it's technically easy to fix
> this problem (just have UAC issue an alert when somebody's messing with
> the system settings), it involves doing more of what end users dislike
> most about UAC (it issuing alerts to Joe Sixpack all the time when he
> does something bone-headed security-wise).
>
> Fixing this one in a way that users will put up with will be a bitch.
Why not just have it not prompt if you are changing settings, except for UAC settings? that would be the simple way around it
Full-Disclosure is hosted and sponsored by Secunia.