Detecting and mitigating elevation-of-privilege exploit for CVE-2017-0005
https://blogs.technet.microsoft.com/mmpc/2017/03/27/detecting-and-mitigating-elevation-of-privilege-exploit-for-cve-2017-0005/ [blogs.technet.microsoft.com]
2017-03-28 20:01
In this article, we walk through the technical details of the exploit and assess the performance of tactical mitigations in Windows 10 Anniversary Update—released in August, 2016—as well as strategic mitigations like Supervisor Mode Execution Prevention (SMEP) and virtualization-based security (VBS).
In the wild exploit carefully avoided Win 10 in favor of 7 and 8.