NEWS /

Vista's Speech Recognition Flaw Exposed

02 Feb, 2007, 2:19 pm IST | by Priyanka Pradhan |

Soon after the launch of Microsoft's much hyped operating system, Windows Vista, comes news of its speech recognition flaw. Microsoft has confirmed that Vista's speech recognition feature can be hijacked, to delete protected files or folders.

Analysts are now concerned about Vista's ability to respond to vocal commands from malicious audio on websites or e-mail. It is also pointed out, that a simple MP3 file of voice instructions can be used to tell the PC to delete documents.

However, Microsoft said the exploit is 'technically possible' but there is no need for users to worry. Adrian, a Microsoft security researcher wrote on Microsoft's security response blog, "In order for the attack to be successful, the targeted system would need to have the speech recognition feature previously activated and configured. Additionally the system would need to have speakers and a microphone installed and turned on. The exploit scenario would involve the speech recognition feature picking up commands through the microphone such as 'copy', 'delete', 'shutdown', etc. and acting on them. These commands would be coming from an audio file that is being played through the speakers. Of course this would be heard and the actions taken would be visible to the user if they were in front of the PC during the attempted exploitation."

He added, "It is not possible through the use of voice commands to get the system to perform privileged functions such as creating a user without being prompted by UAC for Administrator credentials. The UAC prompt cannot be manipulated by voice commands by default. There are also additional barriers that would make an attack difficult including speaker and microphone placement, microphone feedback, and the clarity of the dictation".

Web security firm, Symantec, has warned users that the risk is greater than Microsoft has let on. It alerted its customers late Wednesday about a poster on the Daily Dave mailing list, who reported that he was able to craft a recording that successfully downloaded and executed a file from the Internet as well as manipulated the file system without requiring user interaction. Users have suggested that Vista owners disable the speech recognition feature's ability to automatically load when the operating system launches.

Read more here.

Tags: Windows Vista , Microsoft , speech recognition , security hole , Symantec

RELATED STORIES

Microsoft to quit support for Windows XP in 2014

Microsoft to quit support for Windows XP in 2014

They had said it before, and now they remind again. Loyalists to one of Microsoft’s many long-running OS’ and ...

Windows XP turns 10, loses global usage to Windows 7

WinXP to Blame for 75% of All Rootkit Infections

Microsoft to Release Vista SP2 to Testers

Halo 2 Single Player Impressions

Microsoft Releases 15 Bugfixes For Windows

Samsung Ships First Hybrid HDD

Windows 7 vs Windows Vista

04 Jul, 2009, 01:58 am IST

Windows 7 vs Windows Vista

Make Windows Vista 50% Faster

23 Sep, 2007, 12:44 am IST

Make Windows Vista 50% Faster

Windows Vista Rants

03 Mar, 2008, 01:16 pm IST

Windows Vista Rants

Windows Vista Commercial

20 Mar, 2007, 05:21 am IST

Windows Vista Commercial

 

Leaked Images, Availability, Pricing,
Specs, Pre-order

Photos

High Court Order - Madras

High Court Order - Madras

17 May, 2012, 04:22 PM

2.3

Trials Evolution

Trials Evolution

12 May, 2012, 10:33 AM

Sniper Elite V2

Sniper Elite V2

09 May, 2012, 10:04 PM

3.3

MORE PHOTOS

OPINIONS

Padmini Harchandrai

The latest "should they-shouldn't they" event with Facebook is the lift of the minimu...

MORE OPINIONS

features

Top 5 potential Gmail alternatives

Top 5 potential Gmail alternatives

Google’s Gmail service is arguably the most advanced and feature-packed...

By Naina Khedekar

Five ways to beat the petrol hike

Five ways to beat the petrol hike

Petrol prices went up by a considerable amount post Wednesday, and this...

By Karan Shah

The Future of Broadband - views from industry leaders

The Future of Broadband - views from industry leaders

One of the other events that took place at the same venue as the recent...

By Rossi Fernandes

MORE FEATURES

On video: HTC One V

On video: HTC One V

18 May, 2012, 04:44 AM

4.5

On video: Cowon Z2 (16GB)

On video: Cowon Z2 (16GB)

15 May, 2012, 04:58 PM

2.3

On video: Samsung WB150F

On video: Samsung WB150F

08 May, 2012, 04:23 AM

5.0

MORE VIDEOS

775 views

1127 views

630 views

MORE WALLPAPERS