

Number of attempts to execute similar elevation of privilege exploits on Uncovered the vulnerability in February as a result of additional checks into a Manipulation of file format used by this subsystem.

System elevation of privilege vulnerability which gets triggered by the They were used in attacks on targets in retailĪnd wholesale, energy, manufacturing, healthcare, software development andĪssigned CVE-2023-28252 to the discovered zero-day. Kaspersky has seen at leastįive different exploits of this kind. This group stands out for its usage of similarīut unique Common Log File System (CLFS) exploits. Turned out to be exploited for cybercrime purposes by a sophisticated group Most of the vulnerabilities discovered by Kaspersky are used by APTs, this one Small and medium-sized businesses in the Middle East and North America, and

To execute similar elevation of privilege exploits in attacks on different Microsoft assigned CVE-2023-28252 to this vulnerabilityĪnd patched it today as part of Patch Tuesday. Versions and builds of Windows OS including Windows 11 and attempted to deploy A cybercriminal group used an exploit developed for different Woburn, MA – Ap– Kaspersky experts have discovered an attack using a zero-day vulnerability in the Microsoft Common Log File
