cognitive cybersecurity intelligence

News and Analysis

Search

Kremlin-backed hackers exploit critical Windows vulnerability reported by the NSA

Kremlin-backed hackers, known as Forest Blizzard, have exploited a critical Microsoft vulnerability, CVE-2022-38028, for up to four years, Microsoft revealed. The flaw in the Windows print spooler allowed the hackers to gain system privileges to install a backdoor, dubbed as GooseEgg, which assists in credential stealing and moving laterally through an infiltrated system. Microsoft patched the vulnerability in October 2022 without acknowledging it was under active exploitation.

Source: arstechnica.com –

Subscribe to newsletter

Subscribe to HEAL Security Dispatch for the latest healthcare cybersecurity news and analysis.

More Posts