PoC Exploit Released for Windows Snipping Tool NTLM Hash Leak Vulnerability
ID: 0277693c-ed56-5a40-a7b0-8ed134b90f96
STIX ID: report--0277693c-ed56-5a40-a7b0-8ed134b90f96
Feed Name: cybersecurityNews.com
Threat Score
**CVE-2026-33829 — Windows Snipping Tool PoC:** A publicly released proof-of-concept abuses the Snipping Tool's `ms-screensketch` deep link by passing a UNC `filePath` that forces the victim's system to authenticate to an attacker-controlled SMB server, leaking Net-NTLM hashes; Microsoft issued a patch on April 14, 2026 — apply the update and block outbound SMB (port 445).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
