Bridging individuals with technology thru innovative solutions & delivery of excellence in  service.

G360-Expanded

440.973.6652

Bridging individuals with technology thru innovative solutions & delivery of excellence in  service.

Zero-day Windows NTLM hash vulnerability gets patched by third-party —credentials can be hijacked by merely viewing a malicious file in File Explorer

Zero-day Windows NTLM hash vulnerability gets patched by third-party —credentials can be hijacked by merely viewing a malicious file in File Explorer

December 8, 2024



Back in June 2023, Microsoft officially announced it had deprecated support for its New Technology LAN Manager authentication protocol, which debuted in 1993 with Windows NT 3.1. It advised users to upgrade to Windows Negotiate but unfortunately, modern TLM vulnerabilities are still targeted at machines from Windows 7/Server 2008 R2 to Windows 11 Version 24H2 and Server 2022, and 0Patch recently discovered a new NTLM vulnerability that allows credential hijacking from merely viewing an infected folder, not even requiring the file to be directly opened.

While newer versions of Windows like Windows 11 will likely see a patch for this exploit in the coming weeks or months, older versions of Windows like Windows 7 are in particular danger. Windows 10 should still see a patch, but with 10’s support due to end in October of next year and a paid support plan being required to extend it past that, the risk of issues like these remaining unpatched in the final release only increases.



Source link

You May Also Like…

0 Comments