
cyber-security54.73 min read
Zero-Click RCE in Claude Desktop Extensions Endangers 10k+ Users
18 days ago•Source: CybersecurityNews
The latest cyber security stories, summarized by AI


Mandiant publicly released Net-NTLMv1 rainbow tables, making NTLMv1 hash cracking practical with modest hardware and lowering barriers for admin-level credential compromise. The dataset, hosted via Google Cloud, underscores the urgent need to disable Net-NTLMv1 and migrate to NTLMv2; organizations should monitor for LM/NTLMv1 usage in Windows Event logs (e.g., Event ID 4624) and implement robust detection and remediation to prevent post-compromise downgrades and broader AD compromise (e.g., DCSync attacks).

Daily Mail•2 years ago