cognitive cybersecurity intelligence

News and Analysis

Search

PipeMagic Trojan Exploits Windows CLFS Zero-Day Vulnerability to Deploy Ransomware

PipeMagic Trojan Exploits Windows CLFS Zero-Day Vulnerability to Deploy Ransomware

Microsoft reported a now-patched security flaw, CVE-2025-29824, in Windows’ Common Log File System that was exploited in select ransomware attacks against IT and real estate organizations in the US, a Spanish software firm, the financial sector in Venezuela, and the retail sector in Saudi Arabia. The threat actors leveraged a malware named PipeMagic to exploit the bug and deliver ransomware payloads. The flaw could be used to gain system privileges. Its exact initial access points remain unknown.

Source: thehackernews.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts