windows,
-
A North Korean threat group has been using a technique called RID hijacking that tricks Windows into treating a low-privileged account as one with administrator permissions. […]
-
A vulnerability classified as problematic has been found in Node.js on Windows. Affected is an unknown function of the component Drive Name Handler. The manipulation leads to path traversal. This vulnerability is traded as CVE-2025-23084. The attack needs to be approached locally. There is no exploit available. It is recommended to upgrade the affected component.
-
A high-severity vulnerability in 7-Zip has been discovered, allowing attackers to bypass Windows’ Mark-of-the-Web (MotW) security feature and execute malicious code during file extraction. 7-Zip lacks an auto-update function, requiring users to manually update the software.Read Entire Article
-
A vulnerability has been found in Microsoft Windows 2000 and classified as problematic. Affected by this vulnerability is an unknown functionality of the component TCP/IP Stack. The manipulation leads to denial of service. This vulnerability is known as CVE-2005-1184. The attack can be launched remotely. Furthermore, there is an exploit available. It is recommended to…
-
A new wave of North Korean cyberattacks, employing a sophisticated and coordinated approach, has targeted the technology, financial, and cryptocurrency sectors. Cybersecurity researchers from ANY.RUN reports that leveraging staged fake job interviews, sophisticated malware such as “InvisibleFerret” and “BeaverTail” has been deployed to compromise victims’ systems and exfiltrate sensitive data. Dubbed “Contagious Interview” or “DevPopper,”…
-
A vulnerability, which was classified as problematic, has been found in Microsoft Windows. Affected by this issue is some unknown functionality. The manipulation leads to denial of service. This vulnerability is handled as CVE-2010-0481. Attacking locally is a requirement. There is no exploit available.
-
A vulnerability classified as critical has been found in Microsoft Windows. This affects an unknown part. The manipulation leads to race condition. This vulnerability is uniquely identified as CVE-2010-0021. It is possible to initiate the attack remotely. There is no exploit available.
-
A vulnerability was found in Microsoft Windows and classified as very critical. This issue affects some unknown processing. The manipulation leads to code injection. The identification of this vulnerability is CVE-2009-2512. The attack may be initiated remotely. There is no exploit available. It is recommended to upgrade the affected component.
-
A vulnerability was found in Microsoft Windows and classified as critical. This issue affects some unknown processing. The manipulation leads to improper input validation. The identification of this vulnerability is CVE-2009-2516. An attack has to be approached locally. There is no exploit available. It is recommended to upgrade the affected component.
-
A high-severity vulnerability in the 7-Zip file archiver allows attackers to bypass the Mark of the Web (MotW) Windows security feature and execute code on users’ computers when extracting malicious files from nested archives. […]
-
Microsoft has announced the release of Windows 11 Insider Preview Build 27774 to the Canary Channel. This build comes packed with enhancements, including a significant new feature aimed at bolstering system security—Administrator Protection. The highlight of this update is the newly integrated Administrator Protection, which can now be activated directly from the Windows Security settings…
-
In early January 2025, a new ransomware strain identified as Contacto surfaced, showcasing advanced techniques designed to bypass conventional security measures. This analysis provides insights into its operational mechanisms, particularly suited for professionals venturing into ransomware analysis. Operational Mechanisms Upon execution, Contacto ransomware employs the GetConsoleWindow() and ShowWindow() functions to retrieve and conceal its command…
-
A critical vulnerability in Windows BitLocker, identified as CVE-2025-21210, has exposed the encryption mechanism to a novel randomization attack targeting the AES-XTS encryption mode. This vulnerability allows attackers with physical access to manipulate ciphertext blocks, causing sensitive data to be written to disk in plaintext. The flaw underscores the evolving sophistication of attacks against full-disk…
-
Microsoft has unveiled a groundbreaking security feature called Administrator Protection, now available to Windows Insiders in the Canary Channel with the release of Windows 11 Insider Preview Build 27774. This feature, designed to strengthen system security, introduces a new approach to managing administrative privileges, addressing long-standing vulnerabilities in Windows systems. What Is Administrator Protection? Administrator…
-
A vulnerability was found in Microsoft Windows Media Player up to 7.1 and classified as critical. Affected by this issue is some unknown functionality of the file mplay32.exe of the component MP3 File Name Handler. The manipulation leads to memory corruption. This vulnerability is handled as CVE-2002-1847. The attack may be launched remotely. There is…
-
A vulnerability classified as critical was found in Apple iCloud up to 7.7 on Windows. Affected by this vulnerability is an unknown functionality of the component WebKit. The manipulation leads to memory corruption. This vulnerability is known as CVE-2018-4382. The attack can be launched remotely. Furthermore, there is an exploit available. It is recommended to…
-
A vulnerability classified as very critical was found in Microsoft Windows 7/Vista SP2. This vulnerability affects unknown code. The manipulation leads to improper resource management. This vulnerability was named CVE-2010-3225. The attack can be initiated remotely. There is no exploit available.
-
A vulnerability classified as critical has been found in Microsoft Windows R2. This affects an unknown part. The manipulation leads to improper access controls. This vulnerability is uniquely identified as CVE-2010-3223. It is possible to initiate the attack remotely. There is no exploit available. It is recommended to apply a patch to fix this issue.
-
A vulnerability, which was classified as critical, was found in Microsoft Windows. Affected is an unknown function of the component MFC Document Title Updating. The manipulation leads to memory corruption. This vulnerability is traded as CVE-2010-3227. It is possible to launch the attack remotely. Furthermore, there is an exploit available. It is recommended to upgrade…