logo

Windows Bug From 1997 Enables Credential Theft

ID: dcadf66d-7388-5bdc-aa78-d94d9c9b7dd0

STIX ID: report--dcadf66d-7388-5bdc-aa78-d94d9c9b7dd0

Feed Name: Security Ledger

Threat Score
70/100

Date Published: 2015-04-14

Date Updated: 2026-05-06

Author: Paul Roberts

...
...

Cylance and CERT warn of a long-standing "Redirect to SMB" vulnerability in Windows and many third-party applications that can coerce affected software to authenticate to attacker-controlled SMB servers via file:// redirects, enabling credential theft; vendors are being notified but no Microsoft patch is available, and recommended mitigations include blocking outbound TCP 139/445.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.