Windows Bug From 1997 Enables Credential Theft
ID: dcadf66d-7388-5bdc-aa78-d94d9c9b7dd0
STIX ID: report--dcadf66d-7388-5bdc-aa78-d94d9c9b7dd0
Feed Name: Security Ledger
Threat Score
Cylance and CERT warn of a long-standing "Redirect to SMB" vulnerability in Windows and many third-party applications that can coerce affected software to authenticate to attacker-controlled SMB servers via file:// redirects, enabling credential theft; vendors are being notified but no Microsoft patch is available, and recommended mitigations include blocking outbound TCP 139/445.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
