Microsoft Urges Immediate Updates to Combat New Security Threats

1 min read
Source: The Hacker News
Microsoft Urges Immediate Updates to Combat New Security Threats
Photo: The Hacker News
TL;DR Summary

A newly patched NTLM vulnerability, CVE-2024-43451, was exploited by suspected Russian hackers to target Ukraine through phishing emails. The flaw, which allows NTLMv2 hash theft, was used to deliver Spark RAT malware via a compromised Ukrainian government server. The attack involved phishing emails prompting users to download malicious URL files, leading to further payload downloads. CERT-UA linked the activity to Russian threat actor UAC-0194, while also warning of financially motivated attacks using LiteManager software.

Share this article

Reading Insights

Total Reads

0

Unique Readers

1

Time Saved

2 min

vs 3 min read

Condensed

83%

43674 words

Want the full story? Read the original article

Read on The Hacker News