Skip to content
Security matters
Security matters
  • APTs
  • Tijdlijn
  • Kill chain
  • Uitgelicht
  • Privacy
Security matters

Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus Group

post, augustus 19, 2024februari 24, 2025

A newly patched security flaw in Microsoft Windows was exploited as a zero-day by Lazarus Group, a prolific state-sponsored actor affiliated with North Korea. The security vulnerability, tracked as CVE-2024-38193 (CVSS score: 7.8), has been described as a privilege escalation bug in the Windows Ancillary Function Driver (AFD.sys) for WinSock. “An attacker who successfully exploited this vulnerability could gain SYSTEM privileges,” Microsoft said in an advisory for the flaw last week. It was addressed by the tech giant as part of its monthly Patch Tuesday update.

Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus Group (thehackernews.com): Microsoft Patches Zero-Day Flaw Exploited by North Korea’s Lazarus Group
cybersecurity vulnerability 2024North KoreaPrivilege Escalation

Bericht navigatie

Previous post
Next post

2020 2023 2024 2025 2026 China Iran North Korea Russia ShinyHunters

©2026 Security matters | WordPress Theme by SuperbThemes