Close Menu
    Facebook LinkedIn YouTube WhatsApp X (Twitter) Pinterest
    Trending
    • Scandi-style tiny house combines smart storage and simple layout
    • Our Favorite Apple Watch Has Never Been Less Expensive
    • Vercel says it detected unauthorized access to its internal systems after a hacker using the ShinyHunters handle claimed a breach on BreachForums (Lawrence Abrams/BleepingComputer)
    • Today’s NYT Strands Hints, Answer and Help for April 20 #778
    • KV Cache Is Eating Your VRAM. Here’s How Google Fixed It With TurboQuant.
    • OneOdio Focus A1 Pro review
    • The 11 Best Fans to Buy Before It Gets Hot Again (2026)
    • A look at Dylan Patel’s SemiAnalysis, an AI newsletter and research firm that expects $100M+ in 2026 revenue from subscriptions and AI supply chain research (Abram Brown/The Information)
    Facebook LinkedIn WhatsApp
    Times FeaturedTimes Featured
    Sunday, April 19
    • Home
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    • More
      • AI
      • Robotics
      • Industries
      • Global
    Times FeaturedTimes Featured
    Home»News»Two Windows vulnerabilities, one a 0-day, are under active exploitation
    News

    Two Windows vulnerabilities, one a 0-day, are under active exploitation

    Editor Times FeaturedBy Editor Times FeaturedNovember 2, 2025No Comments2 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email WhatsApp Copy Link

    Two Home windows vulnerabilities—one a zero-day that has been identified to attackers since 2017 and the opposite a important flaw that Microsoft initially tried and didn’t patch lately—are below lively exploitation in widespread assaults focusing on a swath of the Web, researchers say.

    The zero-day went undiscovered till March, when safety agency Development Micro stated it had been below lively exploitation since 2017, by as many as 11 separate superior persistent threats (APTs). These APT teams, usually with ties to nation-states, relentlessly assault particular people or teams of curiosity. Development Micro went on to say that the teams had been exploiting the vulnerability, then tracked as ZDI-CAN-25373, to put in varied identified post-exploitation payloads on infrastructure situated in practically 60 international locations, with the US, Canada, Russia, and Korea being the commonest.

    A big-scale, coordinated operation

    Seven months later, Microsoft nonetheless hasn’t patched the vulnerability, which stems from a bug within the Windows Shortcut binary format. The Home windows element makes opening apps or accessing information simpler and quicker by permitting a single binary file to invoke them with out having to navigate to their areas. In latest months, the ZDI-CAN-25373 monitoring designation has been modified to CVE-2025-9491.

    On Thursday, safety agency Arctic Wolf reported that it noticed a China-aligned risk group, tracked as UNC-6384, exploiting CVE-2025-9491 in assaults towards varied European nations. The ultimate payload is a broadly used distant entry trojan often called PlugX. To raised conceal the malware, the exploit retains the binary file encrypted within the RC4 format till the ultimate step within the assault.

    “The breadth of focusing on throughout a number of European nations inside a condensed timeframe suggests both a large-scale coordinated intelligence assortment operation or deployment of a number of parallel operational groups with shared tooling however impartial focusing on,” Arctic Wolf stated. “The consistency in tradecraft throughout disparate targets signifies centralized software growth and operational safety requirements even when execution is distributed throughout a number of groups.”



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Editor Times Featured
    • Website

    Related Posts

    Vercel says it detected unauthorized access to its internal systems after a hacker using the ShinyHunters handle claimed a breach on BreachForums (Lawrence Abrams/BleepingComputer)

    April 19, 2026

    A look at Dylan Patel’s SemiAnalysis, an AI newsletter and research firm that expects $100M+ in 2026 revenue from subscriptions and AI supply chain research (Abram Brown/The Information)

    April 19, 2026

    Google is in talks with Marvell Technology to develop a memory processing unit that works alongside TPUs, and a new TPU for running AI models (Qianer Liu/The Information)

    April 19, 2026

    At the Beijing half-marathon, several humanoid robots beat human winners by 10+ minutes; a robot made by Honor beat the human world record held by Jacob Kiplimo (Reuters)

    April 19, 2026

    A look at the AI nonprofit METR, whose time-horizon metrics are used by AI researchers and Wall Street investors to track the rapid development of AI systems (Kevin Roose/New York Times)

    April 19, 2026

    Binance and Bitget to probe a rally in RaveDAO’s RAVE token, which surged 4,500% in a week, after ZachXBT alleged RAVE insiders engineered a large short squeeze (Francisco Rodrigues/CoinDesk)

    April 19, 2026

    Comments are closed.

    Editors Picks

    Scandi-style tiny house combines smart storage and simple layout

    April 19, 2026

    Our Favorite Apple Watch Has Never Been Less Expensive

    April 19, 2026

    Vercel says it detected unauthorized access to its internal systems after a hacker using the ShinyHunters handle claimed a breach on BreachForums (Lawrence Abrams/BleepingComputer)

    April 19, 2026

    Today’s NYT Strands Hints, Answer and Help for April 20 #778

    April 19, 2026
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    About Us
    About Us

    Welcome to Times Featured, an AI-driven entrepreneurship growth engine that is transforming the future of work, bridging the digital divide and encouraging younger community inclusion in the 4th Industrial Revolution, and nurturing new market leaders.

    Empowering the growth of profiles, leaders, entrepreneurs businesses, and startups on international landscape.

    Asia-Middle East-Europe-North America-Australia-Africa

    Facebook LinkedIn WhatsApp
    Featured Picks

    The EU-Startups Podcast | Interview with Refurbed founder Kilian Kaminski

    March 12, 2026

    Industrial Robots: 5 Most Popular Applications

    December 22, 2024

    Prime Video: The 33 Absolute Best TV Shows to Watch

    February 1, 2025
    Categories
    • Founders
    • Startups
    • Technology
    • Profiles
    • Entrepreneurs
    • Leaders
    • Students
    • VC Funds
    Copyright © 2024 Timesfeatured.com IP Limited. All Rights.
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    • About us
    • Contact us

    Type above and press Enter to search. Press Esc to cancel.