Crypto Market Ticker
Loading...

خلاصہ: Two Windows vulnerabilities, one a 0-day, are under active exploitation

Two Windows vulnerabilities—one a zero-day that has been known to attackers since 2017 and the other a critical flaw that Microsoft initially tried and failed to patch recently—are under active exploitation in widespread attacks targeting a swath of the Internet, researchers say.

The zero-day went undiscovered until March, when security firm Trend Micro said it had been under active exploitation since 2017, by as many as 11 separate advanced persistent threats (APTs). These APT groups, often with ties to nation-states, relentlessly attack specific individuals or groups of interest. Trend Micro went on to say that the groups were exploiting the vulnerability, then tracked as ZDI-CAN-25373, to install various known post-exploitation payloads on infrastructure located in nearly 60 countries, with the US, Canada, Russia, and Korea being the most common.

A large-scale, coordinated operation

Seven months later, Microsoft still hasn’t patched the vulnerability, which stems from a bug in the Windows Shortcut binary format. The Windows component makes opening apps or accessing files easier and faster by allowing a single binary file to invoke them without having to navigate to their locations. In recent months, the ZDI-CAN-25373 tracking designation has been changed to CVE-2025-9491.

Read full article

Comments

Source Information

Publisher: Ars Technica

Original Source: Read more

Subscribe
Notify of
0 Comments
Oldest
Newest Most Voted
Inline Feedbacks
View all comments

Share post:

Subscribe

Popular

More like this
Related

Animal Origami: The Physics of Nature’s Folds – and How Technology is Adapting Them

خلاصہ: Animal Origami: The Physics of Nature’s Folds –...

Jessica Simpson Celebrates 8 Years of Sobriety, Deserves All Your Praise

خلاصہ: Jessica Simpson Celebrates 8 Years of Sobriety, Deserves...

Who is Alexandra Saint Mleux? Model, influencer, charity founder, and Charles Leclerc’s fiancée

خلاصہ: Who is Alexandra Saint Mleux? Model, influencer, charity...

Drug that stops tumors’ blood supply could help kids with bone cancer live longer

خلاصہ: Drug that stops tumors' blood supply could help...