[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"$fR0KdOAA3NgHmpF5mIcn0MrEGyxJGLHDySJG9INRiQG4":3},{"lesson":4},{"id":5,"slug":6,"article_id":7,"title":8,"body":9,"prevention":10,"framework_refs":11,"status":21,"created_at":22,"published_at":23,"article":24,"tags":28,"podcasts":47},"dcf0bada-3906-411c-9571-7f8c1b7a9f8c","third-party-driver-causes-windows-11-crashes-patch-now","c91ea5fd-13da-49d6-90d2-4bf8149a7f03","Third-Party Driver Causes Windows 11 Crashes — Patch Now","A bug in the third-party driver inpoutx64.sys, commonly bundled with RGB peripheral software, caused system crashes and game launch failures on Windows 11 versions 24H2 and 25H2. The root issue highlights how third-party hardware drivers introduced via consumer peripherals can destabilize enterprise and personal systems without adequate vetting. Microsoft's remediation — disabling the offending driver — underscores the risk of unvetted software components entering systems through the supply chain of peripheral manufacturers. This matters because driver-level code runs with kernel privileges, meaning a faulty or malicious driver can compromise entire system stability and security. Organizations must treat third-party drivers with the same scrutiny applied to any privileged software component.","**Immediate actions:**\n- Apply Microsoft's latest Windows 11 cumulative update to disable the vulnerable inpoutx64.sys driver on affected systems.\n- Audit all endpoints for the presence of inpoutx64.sys and flag systems running RGB peripheral management software for review.\n\n**Configuration & supply chain controls:**\n- Enforce driver allowlisting policies (e.g., Windows Defender Application Control) to block unsigned or unapproved kernel drivers from loading.\n- Establish a vetting process for third-party peripheral software before it is permitted on corporate endpoints.\n- Maintain an up-to-date inventory of all installed drivers across the fleet using endpoint management tools (e.g., SCCM, Intune).\n\n**Long-term improvements:**\n- Implement automated patch compliance reporting to ensure cumulative updates are applied within defined SLA windows.\n- Engage peripheral hardware vendors in your supply chain risk management program and require disclosure of bundled driver components.\n- Use crash telemetry and endpoint detection tools to proactively identify driver-related instability before it impacts users at scale.",[12,13,14,15,16,17,18,19,20],"CIS Control 2: Inventory and Control of Software Assets","CIS Control 7: Continuous Vulnerability Management","CIS Control 16: Application Software Security","NIST SP 800-161: Cyber Supply Chain Risk Management","NIST CM-7: Least Functionality (restrict unauthorized software\u002Fdrivers)","NIST SI-2: Flaw Remediation","NIST SA-12: Supply Chain Protection","ITIL Change Management: Standard Change procedures for patch deployment","Windows Defender Application Control (WDAC) Driver Allowlisting Policy","published","2026-08-27T14:21:07.242677+00:00","2026-08-27T14:21:07.122+00:00",{"id":7,"url":25,"slug":26,"title":27},"https:\u002F\u002Fwww.bleepingcomputer.com\u002Fnews\u002Fmicrosoft\u002Fmicrosoft-rolls-out-fix-for-windows-11-crashes-gaming-issues\u002F","microsoft-rolls-out-fix-for-windows-11-crashes-gaming-issues-aac71a","Microsoft rolls out fix for Windows 11 crashes, gaming issues",[29,35,41],{"id":30,"name":31,"slug":32,"description":33,"color":34},"859cf0ad-a7e9-42bb-a75d-bac6511fa5d5","Configuration Management","configuration-management","Misconfigs, default credentials, exposed services","#eab308",{"id":36,"name":37,"slug":38,"description":39,"color":40},"af7fce9e-1ce8-4156-93bc-09dcfbfdf29d","Patch Management","patch-management","Unpatched vulnerabilities, delayed updates","#ef4444",{"id":42,"name":43,"slug":44,"description":45,"color":46},"f0c2a0af-58aa-4128-87c9-6acd30f2dc48","Supply Chain","supply-chain","Third-party risk, compromised dependencies","#8b5cf6",[]]