Skip to content
OnMSFT.com
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
Menu
  • Home
  • About
  • Contact
  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Edge
  • Teams
  • Gaming
  1. Home
  2. News
  3. Windows Error Reporting Could Leak Data That Hackers Can Exploit – onmsft.com

Windows Error Reporting Could Leak Data That Hackers Can Exploit – onmsft.com

Ron Ron
December 31, 2013
2 min read

Windows Error Reporting could leak data that hackers can exploit

Research carried out by Websense Security Labs shows that data sent from computers through Microsoft Error Reporting could be intercepted by hackers and used to formulate an attack. The problem stems from the fact that crash reports are transmitted in a very easily interpreted form, and they can contain quite detailed information about the systems from which they were sent — information that could be easily exploited by a hacker.

The research points out that while the sending of error reports to Microsoft in the event of a system or application crash usually requires user confirmation, there are instances when data is transmitted without any user interaction. For example, when a new USB device is connected, details of the device as well as information about the host computer such as the version of Windows that is in use, what Service Packs are installed, BIOS version number and much more.

This may seem like fairly innocuous data, but for a hacker targeting a large corporation, it is invaluable. It makes it possible to pinpoint weaknesses in a network, target known security holes and more. The frequency at which error reports may be generated means that it would be very easy for a potential hacker to build up a detailed picture of a company’s network.

As Websense points out, “crashes are especially useful for attackers since they may pinpoint a new exploitable code flaw for a zero-day attack.”

This is obviously going to be of concern to any business, but there are steps that can be taken to help minimize the risks:

“Websense recommends that organizations set group policies (when possible) to force encryption on all telemetry reports and periodically audit their own network and applications for inadvertent leaking of information with security implications.”

We reached out to Microsoft for a response but were given a generalized answer. “Microsoft does not provide any Government with direct or unfettered access to our customer’s data. We would have significant concerns if the allegations about Government actions are true. Regardless, we continue to review our encryption technologies and practices and have commented on the multiple investments we continue to make, on our Microsoft on the Issues blog,” a Microsoft spokesperson told WinBeta.

Share This Post:

Share this article:
Tags:
Security
Previous Article Cover Cam App For Windows Phone 8 Helps You Create The Perfect Facebook Cover Photo – onmsft.com Next Article Phineas And Ferb Themed Agent P Hits The Windows Phone Store, Another Addition To Endless Runner Games – onmsft.com

Related Articles

NASA Artemis II astronauts report Outlook not working in space as both versions fail during historic lunar mission testing and operations

NASA Artemis II astronauts face Outlook issues in space as mission hits unexpected software glitch

April 4, 2026

Microsoft Publisher Will Shut Down in October 2026 and Users Are Not Happy

April 4, 2026

State of Decay 3 Returns With Alpha Playtests After Years of Silence

April 4, 2026

Leave a Comment Cancel reply

Your email address will not be published. Required fields are marked *

Recent Posts

  • NASA Artemis II astronauts face Outlook issues in space as mission hits unexpected software glitch
  • Microsoft Publisher Will Shut Down in October 2026 and Users Are Not Happy
  • State of Decay 3 Returns With Alpha Playtests After Years of Silence
  • Memory costs surge to 30% of AI spending, NVIDIA holds an advantage
  • PEAK Players Want More Updates, But Landfall Says Extra Content Is “a Bonus not a Right”

Recent Comments

  1. XxRIVTYxX on Intel Says It Tried to Help Before Crimson Desert Dropped Arc Support
  2. Gaurav Kumar on Chrome Prepares Nudge to ‘Move Tabs to the Side’ as Vertical Tabs Near Release
OnMSFT.com

The Tech News Site

Categories

  • Windows
  • Surface
  • Xbox
  • How-To
  • OnPodcast
  • Gaming
  • Edge
  • Teams

Recent Posts

  • NASA Artemis II astronauts face Outlook issues in space as mission hits unexpected software glitch
  • Microsoft Publisher Will Shut Down in October 2026 and Users Are Not Happy
  • State of Decay 3 Returns With Alpha Playtests After Years of Silence
  • Memory costs surge to 30% of AI spending, NVIDIA holds an advantage
  • PEAK Players Want More Updates, But Landfall Says Extra Content Is “a Bonus not a Right”

Quick Links

  • About OnMSFT.com
  • Contact OnMSFT
  • Join Our Team
  • Privacy Policy
© 2010–2026 OnMSFT.com LLC. All rights reserved.
About OnMSFT.comContact OnMSFTPrivacy Policy