Microsoft left a zero-day Windows kernel unpatched for six months, despite knowing it was being actively exploited

Microsoft left a zero-day Windows kernel unpatched for six months, despite knowing it was being actively exploited

Microsoft failed to patch a zero-day vulnerability affecting Windows AppLocker that allowed attackers to bypass the boundary between the manager and the kernel for months, despite being notified that the flaw was under active exploitation, a report shows. investigation.

TO report Avast security specialists described the details of the vulnerability, CVE-2024-21338as well as the exploitation activities of the Lazarus Group.

Source link

Leave a Comment