Computer peripherals designed specifically for e-sports and gaming are loved by many people because of their high-standard performance. They are also very suitable for daily work. Among them, Razer is a brand popular with many players and users around the world. Foreign security researchers have discovered a bug in the Razer Synapse software that allows people to have system administrator privileges by plugging in a mouse. Razer has acknowledged the existence of the problem and promised to fix it as soon as possible.

Research finds Razer Synapse software bug that grants system administrator privileges just by plugging in the mouse
Razer is a very popular computer peripheral manufacturer around the world, best known for its gaming mice and keyboards. When a Razer device is plugged into Windows 10 or Windows 11, the operating system will automatically download and install the Razer Synapse software on the computer. It allows users to set up hardware devices, macros, or software to define buttons. The most commonly used ones are the design of dynamic lighting. According to Razer, more than 100 million users are using this software.

System administrator rights are the highest level of user rights in the Windows operating system, allowing users to execute any command on the operating system. Essentially, once a user gains this permission on Windows, they have complete control over the system and can install any software they want, including malware. foreign security researcher Jonhat A vulnerability in the Razer Synapse software was disclosed on his Twitter. This vulnerability is extremely easy to exploit. You only need to insert any Razer mouse into the USB hole. An interested person can quickly gain system administrator rights from a Windows device.
Need local admin and have physical access?
– Plug a Razer mouse (or the dongle)
– Windows Update will download and execute RazerInstaller as SYSTEM
– Abuse elevated Explorer to open Powershell with Shift+Right clickTried contacting @Razer, but no answers. So here’s a freebie pic.twitter.com/xDkl87RCmz
— jonhat (@j0nh4t) August 21, 2021
The slightly more reassuring news is that the vulnerability requires direct contact between the Razer mouse and a Windows computer, so the unscrupulous person would have to have more physical access to your computer in order to do anything bad. Razer has confirmed the existence of the bug and promised to roll out a fix as soon as possible. There are many softwares on the market that need to be installed with the hardware. This is definitely just the tip of the iceberg. It makes people think about how many other softwares have similar problems but have not been discovered.
◎Data source:Slash Gear
Source: KOCPC Chinese