TL;DR This vulnerability allows attackers to impersonate Microsoft Support via the built-in remote support tool of Windows 10 named "Quick Assist". Microsoft decided not to fix it since it needs high level of social engineering to exploit this vulnerability. Quick Assist User Spoofing (Vuln/Feature) As any