Technology

Windows architecture is being rebuilt – third-party developers out of the kernel

Microsoft wants to ensure that security software providers can no longer hack into the kernel and cause serious problems there. The operating system is therefore being given a new intermediate layer.

Lessons from CrowdStrike

The planned changes are a direct result of the CrowdStrike incident. Problems in this provider’s security software caused numerous Windows systems to fail around the world some time ago. One problem was identified as the software being deeply embedded in the Windows kernel. The problem, however, is that security applications in particular can currently only perform their tasks if they have access to the kernel and have extensive rights. What a viable solution for the future could look like has now been discussed with partners such as CrowdStrike, Broadcom, Sophos and Trend Micro, reported the US magazine The Verge.

The outcome of the talks will likely result in the Windows architecture being redesigned to provide a new layer above the kernel to which such software can dock. “Both our customers and our ecosystem partners have asked Microsoft to provide additional security features outside of kernel mode, which, when combined with secure deployment practices, can enable highly available security solutions,” said David Weston, Vice President of Enterprise and Operating System Security at Microsoft.

Not the first attempt

Microsoft also discussed the performance requirements and challenges for security vendors to operate outside of kernel mode, as well as the need for tamper protections and security sensor requirements. “Microsoft’s next step will be to continue to develop this new platform with input and in collaboration with partners to achieve the goal of improved reliability without sacrificing security,” Weston said. Although Microsoft is not saying outright that it will close access to the Windows kernel, that is likely to be the result. A similar attempt by Microsoft in 2006 with Windows Vista met with significant resistance from cybersecurity vendors and regulators at the time, but now there appears to be more openness.

Recent Posts

Mouse for MMO players: Razer’s new Naga V3 Pro is a button monster

Razer is launching a new MMO mouse with the Naga V3 Pro. Three magnetic side…

8 hours ago

Surface Phone: New images show discarded Microsoft prototype

It's an open secret that Microsoft was working on a Windows Phone smartphone long before…

8 hours ago

How Solar Carport Structures Are Changing the Future of Sustainable Energy Infrastructure

As the demand for renewable energy continues to grow, businesses, municipalities, and property owners are…

9 hours ago

What to do to find the right family law support in your case.

Family law issues seldom come at an opportune moment. Divorce, separation, parenting conflicts, child support,…

9 hours ago

Claude AI data leak: Private chats were freely accessible on Google

Due to an insufficiently protected sharing function, private chat logs from the Anthropic AI Claude…

1 day ago

Mark Zuckerberg’s megayacht Launchpad ignored calls for help off Alaska

Mark Zuckerberg's $300 million superyacht ignored or allegedly did not hear a call for help…

1 day ago