Eric Stylemans’ Post

View profile for Eric Stylemans, graphic

🌐 Information Technology Enthusiast, GRC Practitioner, Seasoned Information Security Risk Officer, Creative Thinker and Conscious Doer, Lifelong Learner 🌐

Security researchers have publicly revealed a newly discovered critical vulnerability that affects all Windows Workstation and Server versions, from Windows 7 and Server 2008 R2 to the latest Windows 11 (v24H2) and Server 2022. The flaw allows attackers to obtain a user’s NTLM credentials simply by tricking them into viewing a malicious file in Windows Explorer. This action could be triggered by opening a shared folder or USB disk containing such a file, or by accessing the Downloads folder where the malicious file might have been automatically downloaded from an attacker’s webpage. After responsibly reporting the issue to Microsoft, the researchers have released micropatches to protect users until they provide an official fix. These micropatches are available free of charge during this interim period. #Microsoft #micropatching #security

Critical Windows Zero-Day Vulnerability Lets Attackers Steal Users NTLM Credentials

Critical Windows Zero-Day Vulnerability Lets Attackers Steal Users NTLM Credentials

https://cybersecuritynews.com

To view or add a comment, sign in

Explore topics