Select your language

AutoRun on Windows: The end of this functionality is approaching (I)

Microsoft has just released as an automatic update the patch that disables Autoplay on USB devices on all its Windows (only version 7 did it correctly by default until now). With this move, he takes (finally) the final step to annihilate a functionality that has brought many problems. Let's review a little the history of the Autorun.

Although Windows 9x had AutoRun, it was a kind of primitive system that could not be compared to XP. In addition, at that time USB storage devices were not too popular, while floppy disks were still used. Therefore, it can be said that the real problem began at the end of 2001, with XP and its Autorun and Autoplay. Let's distinguish between these two concepts.

Autorun and Autoplay

Autorun: It is the ability of the operating system (not only Windows) to run removable devices when they are inserted into the system. In Windows, the parameters of "autorun" are defined in a text file called autorun.inf, which appears in the root of the drive being inserted.

Autoplay: It is the own functionality introduced in XP. It complements and is based on Autorun. It analyzes the device that is inserted and depending on the type of file it finds, launches a dialogue in which the best applications to play them are suggested. If a default action is chosen, the user will no longer need this dialog and the chosen program will be launched automatically next time thanks to Autorun and the Autoplay "memory".

- Publicidad -

Important milestones

Already in February 2000, we published in Hispasec a bulletin entitled "Attacks through the autorun". The functionality was presented as the perfect substitute for automatic execution on floppy disks but applied to CDs and USB sticks.

By 2005, USB sticks became popular and more and more malware samples began to appear that spread by this means. To the point that, in mid-2010, it was already estimated that 25% of malware was spread through these devices.

But Microsoft didn't see the problem until 2008. This capability could be disabled through policies or changes in manuals in the registry and, therefore, did not consider it necessary to change its posture: Windows offered it as active functionality by default (like so many other facilities) and who wanted to protect themselves, to deactivate it. But this was not entirely true: even deactivated, it was never truly protected. From there begins a journey for its deactivation and improvement that, to locks and ravines, is already automatically applied to all its operating systems

More Information:
How to disable autorun functionality in Windows
http://support.microsoft.com/kb/967715
02/08/2010 Microsoft releases out-of-cycle update for
vulnerability in .lnk
03/05/2009 Microsoft improves the "self-execution" of Windows 7. Thank you
Conficker?
http://www.hispasec.com/unaaldia/3844
19/02/2000 Attacks through the autorun
http://www.hispasec.com/unaaldia/480
27/05/2008 Virus and promiscuity. From floppy disk to USB
http://www.hispasec.com/unaaldia/3503
25% of malware spread via USB drives
http://www.informationweek.com/news/security/vulnerabilities/showArticle.jhtml?articleID=227100125

Author: Sergio de los Santos
Source: Hispasec

See original.

No comments

• If you're already registered, please log in first. Your email will not be published.

Comments are closed

The comments for this content are closed.

Security becomes a technological platform

Security becomes a technological platform

Mexico. Security is moving from a set of standalone systems to an integrated technology platform that combines artificial intelligence, video analytics, sensors, access control, and data platforms....

Security industry in Mexico and Latin America continues its expansion and professionalization

Security industry in Mexico and Latin America continues its expansion and professionalization

International. The security industry in Mexico and Latin America maintains a growth trend driven by digital transformation, the increase in physical and cyber risks, as well as the need to protect...

Veeam Introduces Agent Commander to Address AI Agent Risks in Enterprise Environments

Veeam Introduces Agent Commander to Address AI Agent Risks in Enterprise Environments

United States. Veeam Software today announced the launch of Agent Commander, a solution aimed at helping organizations detect risks associated with artificial intelligence, protect AI-based systems...

Key and asset management, the key to optimizing operations in logistics, distribution and construction companies

Key and asset management, the key to optimizing operations in logistics, distribution and construction companies

In industries where every minute counts, efficient asset and resource management has become a strategic factor to ensure operational continuity, safety, and productivity. By: Héctor Meléndez,...

Genesis Security Reduces False Alarms by 62% Through Milestone Integration and Actuate AI Analytics

Genesis Security Reduces False Alarms by 62% Through Milestone Integration and Actuate AI Analytics

Puerto Rico. A centralized monitoring operation developed by Genesis Security was able to significantly reduce the volume of false alarms in its security systems, thanks to the integration of...

Case study: Solar cameras and thermal intelligence optimize the safety of aquaculture farms

Case study: Solar cameras and thermal intelligence optimize the safety of aquaculture farms

Türkiye. An open-ocean fish farming farm in Turkey implemented a smart surveillance system based on Dahua solar cameras, thermal monitoring, and wireless data transmission to improve safety and...

 The Hidden Security Gap in Data Centers

The Hidden Security Gap in Data Centers

Imagine the journey of an authorized technician inside a data center. When he arrives, he presents his credential and enters the premises, and before entering the server corridor he needs a key to...

Digital fraud increased at Christmas

Digital fraud increased at Christmas

Colombia. During the holiday season, as e-commerce and digital transactions intensified, online fraud attempts also increased. Fake promotions, impersonation of businesses and messages that...

Milestone XPerience Days arrived in Mexico City with innovations in intelligent video management

Milestone XPerience Days arrived in Mexico City with innovations in intelligent video management

Mexico. Milestone Systems, a leading provider of open platform video management software (VMS), hosted the Milestone XPerience Days Mexico 2025 event, a gathering that brought together industry...

Hikvision Mexico launches the third edition of

Hikvision Mexico launches the third edition of "Hikvision Women"

Mexico. Hikvision Mexico announced the launch of the third edition of its "Hikvision Women" program, an initiative aimed at strengthening the participation and professional development of women in...

Suscribase Gratis
Remember Me
SUBSCRIBE TO OUR ENGLISH NEWSLETTER
DO YOU NEED A SERVICE OR PRODUCT QUOTE?
LATEST INTERVIEWS
SITE SPONSORS










LATEST NEWSLETTER
Latest Newsletter