logo

PoC Exploit Released for Windows Snipping Tool NTLM Hash Leak Vulnerability

ID: 0277693c-ed56-5a40-a7b0-8ed134b90f96

STIX ID: report--0277693c-ed56-5a40-a7b0-8ed134b90f96

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-04-21

Date Updated: 2026-04-21

Author: Guru Baran

...
...

**CVE-2026-33829 — Windows Snipping Tool PoC:** A publicly released proof-of-concept abuses the Snipping Tool's `ms-screensketch` deep link by passing a UNC `filePath` that forces the victim's system to authenticate to an attacker-controlled SMB server, leaking Net-NTLM hashes; Microsoft issued a patch on April 14, 2026 — apply the update and block outbound SMB (port 445).

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.