A newly uncovered Windows vulnerability, tracked as ZDI-CAN-25373, allows state-sponsored attackers to execute hidden commands via malicious shortcut files. Exploited since 2017, it’s linked to espionage activities by groups from North Korea, Iran, Russia, and China, with North Korea being the most active. Microsoft deems it low-severity and won’t issue a patch; vigilance is advised.

New Trojan Malware StilachiRAT Targets Crypto Browser Wallets, Microsoft Warns
Microsoft has identified a new malware, StilachiRAT, which poses a significant risk to cryptocurrency users. The malware, first detected in November 2024, uses advanced techniques