kernel bug mitigation

About this tag
This tag covers discussions on mitigating kernel bugs in Windows, with a focus on recent research into the Kernel Transaction Manager (KTM) in Windows 11. Topics include privilege escalation risks from cookie-based attacks and overlooked tokens, as highlighted at OffensiveCon25. The content explores how kernel subsystems can become vectors for security vulnerabilities and the importance of understanding these threats for effective mitigation. Users will find technical analysis of kernel-level exploits and strategies to address them, relevant for IT security professionals and advanced users concerned with Windows kernel integrity.
  1. Windows 11 Kernel Transaction Manager (KTM) Cookies: Hidden Threats and Privilege Escalation Risks

    Cookie-based attacks and overlooked tokens have quietly lingered on the periphery of infosec conference talks for years, but recent research presented at OffensiveCon25 has shone a spotlight on the very heart of Windows 11's Kernel Transaction Manager (KTM). This kernel subsystem—once considered...