Windows NTLM Tokens

Hackers Can Exploit ‘Forced Authentication’ to Steal Windows NTLM Tokens

Hackers Can Exploit ‘Forced Authentication’ to Steal Windows NTLM Tokens Nov 28, 2023NewsroomCyber Attack / Vulnerability Cybersecurity researchers have discovered a case of “forced authentication” that could be exploited to leak a Windows user’s NT LAN Manager (NTLM) tokens by tricking a victim into opening a specially crafted Microsoft Access Read more…

Malvertising

New Malvertising Campaign Uses Fake Windows News Portal to Distribute Malicious Installers

New Malvertising Campaign Uses Fake Windows News Portal to Distribute Malicious Installers Nov 09, 2023NewsroomEndpoint Security / Malware A new malvertising campaign has been found to employ fake sites that masquerade as legitimate Windows news portal to propagate a malicious installer for a popular system profiling tool called CPU-Z. “This Read more…

I/O Manager internal function IopCreateFile

Local privilege escalation via the Windows I/O Manager: a variant finding collaboration | MSRC Blog

Local privilege escalation via the Windows I/O Manager: a variant finding collaboration | MSRC Blog The Microsoft Security Response Center (MSRC) investigates all reports of security vulnerabilities affecting Microsoft products and services to help make our customers and the global online community more secure. We appreciate the excellent vulnerability research Read more…