China-linked hackers turning popular cybersecurity tool into ransomware launchpad, Microsoft warns
A China-linked threat actor is believed to be exploiting a critical vulnerability affecting cybersecurity software from the company N-able.
Windscribe, a VPN provider, has developed an open-source script named deGDID to eliminate Microsoft's persistent tracking identifier, known as the Global Device Identifier (GDID), from Windows systems. The script functions at the registry level, effectively removing cached GDID keys and blocking the DeviceAdd endpoint, which prevents Microsoft identity services from recognizing the machine.
However, this comes at the cost of breaking certain Microsoft services and account functions. The script is available for download on GitHub and can be executed with administrator privileges on a Windows 11 machine. After running the script, users may experience issues with login services such as login.live.com and account verification through login.microsoftonline.com.
Additionally, some Microsoft applications may return connection errors. Despite these limitations, the script provides a partial solution to address privacy concerns related to Microsoft's tracking identifier.
Written by urgent.news from TechRadar's reporting — not their text. Machine-written — may contain errors; check the original before relying on it.
This story
This is one outlet's version. Read the fullest account.