National Cyber Warfare Foundation (NCWF)

Microsoft Silently Patches Windows LNK Flaw After Years of Active Exploitation


0 user ratings
2025-12-03 17:54:23
milo
Blue Team (CND)
Microsoft has silently plugged a security flaw that has been exploited by several threat actors since 2017 as part of the company's November 2025 Patch Tuesday updates, according to ACROS Security's 0patch.
The vulnerability in question is CVE-2025-9491 (CVSS score: 7.8/7.0), which has been described as a Windows Shortcut (LNK) file UI misinterpretation vulnerability that could lead to remote



Source: TheHackerNews
Source Link: https://thehackernews.com/2025/12/microsoft-silently-patches-windows-lnk.html


Comments
new comment
Nobody has commented yet. Will you be the first?
 
Forum
Blue Team (CND)



Copyright 2012 through 2026 - National Cyber Warfare Foundation - All rights reserved worldwide.