← Back to Feed

Plug and Pwn attack uses fake USB devices for Windows SYSTEM access

August 12, 2026 · BleepingComputer · Severity: MEDIUM

Security researchers disclosed 'Plug and Pwn' attacks that abuse Windows Plug and Play to trigger installation of vulnerable vendor software, allowing attackers to gain SYSTEM privileges. The attack exploits the trust in automatically installed drivers.

Key Takeaways

  • Attackers abuse Windows Plug and Play to install insecure vendor software.
  • The technique grants SYSTEM privileges on compromised Windows systems.
  • Users should be cautious with automatic driver installations.
☕ Buy a Coffee