Researchers Uncover Flaws in Windows Smart App Control and SmartScreen
Briefly

Microsoft Defender SmartScreen evaluates a website's URLs to determine if they're known to distribute or host unsafe content. It also provides reputation checks for apps, checking downloaded programs and the digital signature used to sign a file.
Smart App Control and SmartScreen have fundamental design weaknesses that can allow for initial access with no security warnings and minimal user interaction.
One of the easiest ways to bypass these protections is to get the app signed with a legitimate Extended Validation (EV) certificate, a technique exploited by malicious actors.
Read at The Hacker News
[
]
[
|
]