Windows Kernel bug fixed last month exploited as zero-day since August
ID: 8bff7845-3ffc-57db-8ed3-3eff34a23a44
STIX ID: report--8bff7845-3ffc-57db-8ed3-3eff34a23a44
Feed Name: Bleeping Computer
Threat Score
Microsoft patched a high-severity Windows kernel privilege-escalation vulnerability (CVE-2024-21338) in February 2024 after Avast reported it had been exploited in the wild by the Lazarus APT since at least August 2023; attackers used the flaw to achieve kernel read/write, deploy an updated FudModule rootkit and a previously unknown RAT to disable multiple endpoint protections and evade detection, and users are urged to apply the February Patch Tuesday updates.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
