Close Menu

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Do people dream in color or black and white?

    November 1, 2025

    New Glenn rocket has clear path to launch after test-firing at Cape Canaveral

    November 1, 2025

    Would you trust a terrifying home robot?

    November 1, 2025
    Facebook X (Twitter) Instagram
    Saturday, November 1
    Facebook X (Twitter) Instagram YouTube Mastodon Tumblr Bluesky LinkedIn Threads
    ToolcomeToolcome
    • Technology & Startups

      New Glenn rocket has clear path to launch after test-firing at Cape Canaveral

      November 1, 2025

      Measles outbreak investigation in Utah blocked by patient who refuses to talk

      November 1, 2025

      FCC to rescind ruling that said ISPs are required to secure their networks

      November 1, 2025

      Two Windows vulnerabilities, one a 0-day, are under active exploitation

      November 1, 2025

      Cursor introduces its coding model alongside multi-agent interface

      November 1, 2025
    • Science & Education

      Do people dream in color or black and white?

      November 1, 2025

      Science history: Astronomers spot first known planet around a sunlike star, raising hopes for extraterrestrial life — Nov. 1, 1995

      November 1, 2025

      This tiny bat is one of the world’s deadliest hunters

      November 1, 2025

      Beware, beachgoers: New spider discovered in California’s sand dunes

      November 1, 2025

      This mosquito death trap is all-natural and very deadly

      November 1, 2025
    • Mobile Phones

      Access Denied

      November 1, 2025

      Access Denied

      November 1, 2025

      Black Friday 2025 comes early for foldable shoppers with half-off Motorola Razr (2024) deal

      November 1, 2025

      If more U.S. wireless customers knew this one thing, they would save big bucks by using an MVNO

      November 1, 2025

      Best Buy makes the powerful Motorola Razr+ (2024) an unbeatable value king at $500 off

      November 1, 2025
    • Gadgets

      Would you trust a terrifying home robot?

      November 1, 2025

      YouTube TV loses ESPN, ABC and other Disney channels

      November 1, 2025

      The best live TV streaming services to cut cable in 2025

      November 1, 2025

      The best free VPNs in 2025

      November 1, 2025

      Get two Blink Mini 2 cameras for only $28 right now

      November 1, 2025
    • Gaming

      LG UltraGear 27″ Gaming Monitor 40% Off, Now Selling for the Price of a Basic No-Name Monitor

      November 1, 2025

      HP Drops Early Black Friday Deal, 16″ Gaming Laptop Going for Nearly Free on Amazon

      November 1, 2025

      Betting Markets Decide Silksong Has No Shot At Winning Game Of The Year

      November 1, 2025

      Looks Like Xbox Is Getting The Silent Hill 2 Remake

      November 1, 2025

      Lenovo Drops Its Best Selling 27″ Legion Gaming Monitor, Now Going for Pennies on Amazon

      November 1, 2025
    ToolcomeToolcome
    Home»Technology & Startups»Two Windows vulnerabilities, one a 0-day, are under active exploitation
    Technology & Startups

    Two Windows vulnerabilities, one a 0-day, are under active exploitation

    November 1, 2025No Comments2 Mins Read1 Views
    Facebook Twitter Pinterest LinkedIn Telegram Tumblr Email
    Share
    Facebook Twitter LinkedIn Pinterest Email



    Two Windows vulnerabilities—one a zero-day that has been known to attackers since 2017 and the other a critical flaw that Microsoft initially tried and failed to patch recently—are under active exploitation in widespread attacks targeting a swath of the Internet, researchers say.

    The zero-day went undiscovered until March, when security firm Trend Micro said it had been under active exploitation since 2017, by as many as 11 separate advanced persistent threats (APTs). These APT groups, often with ties to nation-states, relentlessly attack specific individuals or groups of interest. Trend Micro went on to say that the groups were exploiting the vulnerability, then tracked as ZDI-CAN-25373, to install various known post-exploitation payloads on infrastructure located in nearly 60 countries, with the US, Canada, Russia, and Korea being the most common.

    A large-scale, coordinated operation

    Seven months later, Microsoft still hasn’t patched the vulnerability, which stems from a bug in the Windows Shortcut binary format. The Windows component makes opening apps or accessing files easier and faster by allowing a single binary file to invoke them without having to navigate to their locations. In recent months, the ZDI-CAN-25373 tracking designation has been changed to CVE-2025-9491.

    On Thursday, security firm Arctic Wolf reported that it observed a China-aligned threat group, tracked as UNC-6384, exploiting CVE-2025-9491 in attacks against various European nations. The final payload is a widely used remote access trojan known as PlugX. To better conceal the malware, the exploit keeps the binary file encrypted in the RC4 format until the final step in the attack.

    “The breadth of targeting across multiple European nations within a condensed timeframe suggests either a large-scale coordinated intelligence collection operation or deployment of multiple parallel operational teams with shared tooling but independent targeting,” Arctic Wolf said. “The consistency in tradecraft across disparate targets indicates centralized tool development and operational security standards even if execution is distributed across multiple teams.”

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    mehedihasan9992
    • Website

    Related Posts

    New Glenn rocket has clear path to launch after test-firing at Cape Canaveral

    November 1, 2025

    Measles outbreak investigation in Utah blocked by patient who refuses to talk

    November 1, 2025

    FCC to rescind ruling that said ISPs are required to secure their networks

    November 1, 2025

    Cursor introduces its coding model alongside multi-agent interface

    November 1, 2025

    Neural network finds an enzyme that can break down polyurethane

    November 1, 2025

    YouTube denies AI was involved with odd removals of tech tutorials

    November 1, 2025
    Leave A Reply Cancel Reply

    Top Posts

    Lab monkeys on the loose in Mississippi don’t have herpes, university says. But are they dangerous?

    October 30, 202513 Views

    Are you a YouTube TV subscriber looking for ESPN and ABC? Here are your options

    October 31, 202510 Views

    Samsung promises the Galaxy S26 with more AI, a custom chip, and new camera sensors

    October 30, 202510 Views
    Don't Miss

    Do people dream in color or black and white?

    November 1, 2025

    We dream every night, but we often can’t remember those dreams. Some mornings, we recall…

    New Glenn rocket has clear path to launch after test-firing at Cape Canaveral

    November 1, 2025

    Would you trust a terrifying home robot?

    November 1, 2025

    Access Denied

    November 1, 2025
    Stay In Touch
    • Facebook
    • YouTube
    • TikTok
    • WhatsApp
    • Twitter
    • Instagram
    Latest Reviews
    8.9

    Review: Dell’s New Tablet PC Can Survive -20f And Drops

    January 15, 2021

    Review: Kia EV6 2022 The Best Electric Vehicle Ever?

    January 14, 2021
    72

    Review: Animation Software Business Share, Market Size and Growth

    January 14, 2021
    Most Popular

    Lab monkeys on the loose in Mississippi don’t have herpes, university says. But are they dangerous?

    October 30, 202513 Views

    Are you a YouTube TV subscriber looking for ESPN and ABC? Here are your options

    October 31, 202510 Views

    Samsung promises the Galaxy S26 with more AI, a custom chip, and new camera sensors

    October 30, 202510 Views
    Our Picks

    Do people dream in color or black and white?

    November 1, 2025

    New Glenn rocket has clear path to launch after test-firing at Cape Canaveral

    November 1, 2025

    Would you trust a terrifying home robot?

    November 1, 2025

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Toolcome
    Facebook X (Twitter) Instagram YouTube
    • Home
    • Technology
    • Gaming
    • Mobile Phones
    © 2025 Tolcome. Designed by Aim Digi Ltd.

    Type above and press Enter to search. Press Esc to cancel.