logo

Microsoft Patched Windows LNK Vulnerability Abused by Hackers to Hide Malicious Code

ID: 690f19f0-016d-5ef0-9868-115e7772a337

STIX ID: report--690f19f0-016d-5ef0-9868-115e7772a337

Feed Name: cybersecurityNews.com

Threat Score
85/100

Date Published: 2025-12-03

Date Updated: 2026-04-21

Author: Guru Baran

...
...

Microsoft quietly modified Windows to address a long-exploited shortcut (.lnk) UI flaw (CVE-2025-9491) that hid malicious commands from the Properties dialog; Trend Micro identified ~1,000 malicious shortcuts dating to 2017 and Arctic Wolf attributed active exploitation in Sept–Oct 2025 to UNC6384 delivering PlugX against diplomatic targets, prompting third-party micropatches and recommendations for enhanced endpoint detection and user awareness.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.