logo

Recurring Windows Flaw Could Expose User Credentials

ID: 7e1e9fd2-3196-546c-8c8d-6af8d09790fe

STIX ID: report--7e1e9fd2-3196-546c-8c8d-6af8d09790fe

Feed Name: Dark Reading

Threat Score
55/100

Date Published: 2024-10-29

Date Updated: 2026-04-21

Author: Jai Vijayan, Contributing Writer

...
...

Executive summary: Researchers at ACROS Security discovered a new Windows themes file-path vulnerability (related to CVE-2024-38030 and CVE-2024-21320) that enables an authentication coercion attack to exfiltrate NTLM authentication hashes when a user opens a weaponized theme file; exploitation requires NTLM to be enabled and the victim to render the file (e.g., opening a folder in icon view), and Microsoft has been notified and is expected to act.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.