Tag: Windows Vulnerability

Windows NTLM hash leak flaw exploited in phishing attacks on governments
News

Windows NTLM hash leak flaw exploited in phishing attacks on governments

Hackers are now actively leveraging a Windows vulnerability that exposes NTLM hashes using.library-ms files in phishing efforts aimed at both private and governmental organizations. Microsoft patched the vulnerability known as CVE-2025-24054 on March 2025. At first, it was considered 'less likely' to be exploited and not indicated as such. Only a few days after updates were made available, however, Check Point researchers report seeing active exploitation activity for CVE-2025-24054, which culminated between March 20 and 25, 2025. There is insufficient information to make a firm attribution, even though one of the IP addresses responsible for these assaults was previously connected to the state-sponsored threat group APT28 read more about Windows NTLM hash leak flaw exploited in ...
Exploit for Recent Windows Vulnerability Under Active Exploitation Unveil
News

Exploit for Recent Windows Vulnerability Under Active Exploitation Unveil

Information has become available on a Microsoft Windows security hole that is currently being actively exploited and could be leveraged by a threat actor to escalate their privileges on impacted devices. The vulnerability, identified as CVE-2023-29336, has a severity rating of 7.8 and relates to a flaw that elevates privileges in the Win32k component. In a security advisory released last month as part of Patch Tuesday updates, Microsoft stated that an attacker who was successful in exploiting this vulnerability may obtain read more Exploit for Recent Windows Vulnerability Under Active Exploitation Unveil. Stay one step ahead of cyber threats with ReconBee.com. Explore our comprehensive coverage of recent cyber attacks, cybersecurity awareness, and the latest cybersecurity news to...