Cloud Consulting Companies

  • BIG Data & Analytics
  • CLOUD
  • Data Center
  • IOT
  • Machine Learning & AI
  • SECURITY
  • Server
  • BlockChain
  • Virtualization
You are here: Home / SECURITY / End of support for Build 1909 leaves some Windows open to attack

End of support for Build 1909 leaves some Windows open to attack

April 30, 2021 by cbn Leave a Comment

Microsoft will be ending service updates for Windows 10, version 1909, on 11 May 2021. Operating systems that will no longer receive updates after this date are Windows 10 Home, version 1909; Windows 10 Pro, version 1909; Windows 10 Pro Education, version 1909; and Windows 10 Pro for Workstations, version 1909.

On its website, Microsoft said: “These editions will no longer receive security updates after May 11, 2021. Customers who contact Microsoft support after this date will be directed to update their device to the latest version of Windows 10 to remain supported.”

According to data provided by Kaspersky, the usage share of Windows 10 Build 1909 among consumers and business is 15% globally. Its figures estimate that 14% of the UK remains on Build 1909.

Not everyone updates their OS

While some PC users may not wish to update Windows and some organisations have a very good reason to maintain a stable operating system (OS) build, the fact that Build 1909 will no longer be updated puts those people still running the software at risk of attack. This can happen when Microsoft issues a security patch for a supported operating system.

Kaspersky argues that the same level of vulnerability applies across all outdated operating systems. Users are under threat, no matter what unsupported OS they run.

“Updating your operating system might seem like a nuisance for many. But OS updates are not just there to fix errors, or to enable the newest interface. The procedure introduces fixes for those bugs that can open a gaping door for cyber criminals to enter”
Oleg Gorobets, Kaspersky

Oleg Gorobets, senior product marketing manager at Kaspersky, said: “Updating your operating system might seem like a nuisance for many. But OS updates are not just there to fix errors or to enable the newest interface. The procedure introduces fixes for those bugs that can open a gaping door for cyber criminals to enter.

“Even if you think you are vigilant and protected while online, updating your OS is an essential element of security that should not be overlooked, regardless of any third-party security solution’s presence. If the OS is obsolete, it can no longer receive these critical updates.

“If your house is old and crumbling, there is no point in installing a new door. It makes more sense to find a new home, sooner rather than later. The same attitude is needed when it comes to ensuring the security of the operating system you trust with your valuable data every day.”

Windows 10 receives a major update twice a year. Generally, each of these updates is supported for 18 months, after which time, Microsoft stops issuing patch updates.

But although this has made it much easier for people to receive regular OS updates, the challenge for the tech sector is that some people are reluctant to update their systems. There is always a risk that new releases may cause existing software to break.

For instance, the latest Patch Tuesday, released in April, removes support for RemoteFX vGPU 3D, due to a vulnerability identified by security researchers. The vGPU 3D feature made it possible for multiple virtual machines to share a physical GPU. While Microsoft has developed an alternative approach, clearly any organisations relying on this feature will be impacted.

For users who are less tech-savvy, regular OS updates may seem like an unnecessary, complex procedure, especially if their PC appears to be working just fine. 

Unless these people install the updates, however, hackers could exploit the Common Vulnerabilities and Exposures associated with monthly Patch Tuesday updates and biannual OS updates, to target older versions of the operating system, such as Build 1909.

The challenge for Microsoft and IT security professionals is balancing the risk of a security hole in a supported version of Windows being exploited with the risk of how the release of a patch could be exploited to attack those users still running unsupported systems.

“We have a strong commitment to security and a demonstrated track record of investigating and resolving reported vulnerabilities,” said a Microsoft spokesperson. “We follow an extensive process involving thorough investigation, update development for all versions of affected products, and testing for compatibility among other operating systems and related applications. Ultimately, developing a security update is a delicate balance between timeliness and best quality and the goal is to help ensure maximised customer protection with minimised customer disruption.”

Share on FacebookShare on TwitterShare on LinkedinShare on Pinterest

Filed Under: SECURITY

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Archives

  • February 2023
  • January 2023
  • December 2022
  • November 2022
  • October 2022
  • September 2022
  • August 2022
  • July 2022
  • June 2022
  • May 2022
  • April 2022
  • March 2022
  • February 2022
  • January 2022
  • December 2021
  • November 2021
  • October 2021
  • September 2021
  • August 2021
  • July 2021
  • June 2021
  • May 2021
  • April 2021
  • March 2021
  • February 2021
  • January 2021
  • December 2020
  • November 2020
  • October 2020
  • September 2020
  • August 2020
  • July 2020
  • June 2020
  • May 2020
  • April 2020
  • March 2020
  • February 2020
  • January 2020
  • December 2019
  • November 2019
  • October 2019
  • September 2019
  • August 2019
  • July 2019
  • June 2019
  • May 2019
  • April 2019
  • March 2019
  • February 2019
  • January 2019
  • December 2018
  • November 2018
  • October 2018
  • September 2018
  • August 2018
  • July 2018
  • June 2018
  • May 2018
  • April 2018
  • March 2018
  • February 2018
  • January 2018
  • December 2017
  • November 2017
  • October 2017
  • September 2017
  • August 2017
  • July 2017
  • May 2017
  • April 2017
  • March 2017
  • February 2017
  • March 2016
  • October 2014

Recent Posts

  • Explain Splinterlands: Is Splinterlands An NFT game?
  • Microsoft named a Leader in the IDC MarketScape: Worldwide MLOps Platforms 2022 Vendor Assessment
  • Misconfiguration and vulnerabilities biggest risks in cloud security: Report
  • Microsoft Azure Load Testing is now generally available
  • What Is Decentraland? How To Explore The Decentraland Metaverse?

Recent Comments

  • Purefit Keto Reviews on Are PDUs Your Best Platform for DCIM Instrumentation?
  • https://gemcr.org/ on 10 Things You Should Know About Deep Learning

Categories

  • BIG Data & Analytics
  • BlockChain
  • CLOUD
  • Data Center
  • IOT
  • Machine Learning & AI
  • SECURITY
  • Server
  • Uncategorized
  • Virtualization

Categories

  • BIG Data & Analytics (2,182)
  • BlockChain (469)
  • CLOUD (3,149)
  • Data Center (654)
  • IOT (2,201)
  • Machine Learning & AI (87)
  • SECURITY (1,550)
  • Server (3)
  • Uncategorized (2,016)
  • Virtualization (331)

Subscribe Our Newsletter

 Subscribing I accept the privacy rules of this site

Copyright © 2023 · News Pro Theme on Genesis Framework · WordPress · Log in