---
title: "#1 Reason Users Shouldn't Give Admin Rights to a Machine"
description: "#1 Reason Users Shouldn't Give Admin Rights to a Machine"
image: https://theitcompany.com/hubfs/Imported_Blog_Media/Copy-of-Copy-of-Blog-Series-1-1.png
---

[Malware](https://theitcompany.com/updates/tag/malware) [Cyber Secure](https://theitcompany.com/updates/tag/cyber-secure) [Alert](https://theitcompany.com/updates/tag/alert) [Internet Explorer](https://theitcompany.com/updates/tag/internet-explorer) [Zero-Day Vulnerability](https://theitcompany.com/updates/tag/zero-day-vulnerability) [Microsoft](https://theitcompany.com/updates/tag/microsoft) [Windows](https://theitcompany.com/updates/tag/windows)

# #1 Reason Users Shouldn't Give Admin Rights to a Machine

 By [ Macy Brink ](https://theitcompany.com/updates/author/macy) 

 January 21, 2020 07:32 PM

 1 Minute Read

If you are a Windows user,  your security has been put at high risk this past week.

[Forbes](https://www.forbes.com/#75668afb2254) released an [online article](https://www.forbes.com/sites/daveywinder/2020/01/18/us-government-confirms-critical-zero-day-security-warning-for-windows-users/#793e5f483212) confirming the [NSA curveball crypto vulnerability](https://www.forbes.com/sites/daveywinder/2020/01/14/windows-10-extraordinarily-serious-security-warning-for-900-million-users/#e45d5cb690ca) earlier this week, and followed up by confirming an even larger security concern of a zero-day vulnerability being actively exploited. There has not yet been a fix or solution for this critical zero-day vulnerability.

The [Department of Homeland Security’s Cybersecurity and Infrastructure Security Agency](https://www.us-cert.gov) released the [warning ](https://www.us-cert.gov/ncas/current-activity/2020/01/17/microsoft-releases-security-advisory-internet-explorer)of this zero-day vulnerability on January 17th, while also confirming that Microsoft is aware of this vulnerability.

This vulnerability is being found in Internet Explorer’s scripting engine and is infecting Internet Explorer on every version of Windows. The vulnerability has the capability to corrupt the user’s memory and if the vulnerability is successfully exploited, it gives the attacker the capabilities and rights of the current logged in user.

**This is especially risky if the user that gets attacked has administrative rights because it poses the risk of new accounts being created, access to confidential data, abilities to alter any data, and installations onto the system that could be dangerous.**

The most common way of this attack being reported is through a maliciously created website with a Jscript being implemented as the scripting engine. If the website is accessed through Internet Explorer, it exploits the vulnerability.

**So what can you do to protect yourself?**

Since there is currently no fix for this vulnerability, your strongest protection is using a different browser, such as Chrome or Safari. Additionally, Microsoft has advises users to restrict access to Jscript.dll, with the warning that is could lead to reduced functionality.

At [The IT Company](https://www.theitco.net) we often preach the importance of only giving administrative rights to users that absolutely need them. And this is an example of why that security practice is essential. The number one reason you shouldn’t give administrative rights to a machine, is to increase the security and protect yourself from possible risks of access to administrative capabilities such as this zero-day vulnerability Window’s users are facing.

If you are a Windows user and have concerns regarding the best way to protect yourself, [contact us](https://calendly.com/itco) at The IT Company. We want to prevent you from having a bad day, by helping you take the needed steps to protect yourself from this vulnerability.

## Recommended For You

[![](https://theitcompany.com/hubfs/Imported_Blog_Media/Copy-of-Copy-of-Blog-Series-Jul-01-2020-02-34-36-79-PM.png) ](https://theitcompany.com/updates/rely-on-one)

[Privacy](https://theitcompany.com/updates/tag/privacy) [Employee](https://theitcompany.com/updates/tag/employee) [2FA](https://theitcompany.com/updates/tag/2fa) [Cyber Secure](https://theitcompany.com/updates/tag/cyber-secure) [Security](https://theitcompany.com/updates/tag/security) [Small Businesses](https://theitcompany.com/updates/tag/small-businesses) [Partner](https://theitcompany.com/updates/tag/partner)

 2 Min Read

### [Why You Shouldn't Rely on One Person to Manage I.T.](https://theitcompany.com/updates/rely-on-one)

[Macy Brink

Apr 9, 2019 1:57:53 PM

](https://theitcompany.com/updates/author/macy)

[![](https://theitcompany.com/hubfs/Imported_Blog_Media/Copy-of-Copy-of-Blog-Series-6-1.png) ](https://theitcompany.com/updates/healthcare-cybersecurity)

[Healthcare](https://theitcompany.com/updates/tag/healthcare) [Physician](https://theitcompany.com/updates/tag/physician) [Cyberattack](https://theitcompany.com/updates/tag/cyberattack) [Cyber Secure](https://theitcompany.com/updates/tag/cyber-secure) [Medical Practice](https://theitcompany.com/updates/tag/medical-practice) [Cybersecurity](https://theitcompany.com/updates/tag/cybersecurity) [Cyber Criminal](https://theitcompany.com/updates/tag/cyber-criminal)

 2 Min Read

### [5 Things You Should Know About Healthcare Cybersecurity](https://theitcompany.com/updates/healthcare-cybersecurity)

[Macy Brink

Nov 12, 2019 3:40:20 PM

](https://theitcompany.com/updates/author/macy)

[![](https://theitcompany.com/hubfs/Imported_Blog_Media/crisis-recovery-webinar.png) ](https://theitcompany.com/updates/how-should-you-plan-your-business-recovery-from-covid-19)

[Remote Workplace](https://theitcompany.com/updates/tag/remote-workplace) [Cybersecurity](https://theitcompany.com/updates/tag/cybersecurity) [Remote Workforce](https://theitcompany.com/updates/tag/remote-workforce)

 3 Min Read

### [How should you plan your business’ recovery from COVID-19?](https://theitcompany.com/updates/how-should-you-plan-your-business-recovery-from-covid-19)

[matt

Apr 23, 2020 10:02:45 AM

](https://theitcompany.com/updates/author/matt)