SmartScreen with zero-day vulnerability  [27.11.23]

The Windows SmartScreen security feature can be bypassed. SmartScreen protects against online threats such as phishing websites and malware. To initiate an attack, the victim must click on a prepared link.

Although Microsoft published a security update for this in its November patch, the flaw had already been exploited as a zero-day. The vulnerability allows attackers to sneak malicious code past Windows Defender's SmartScreen checks without triggering a warning.

In addition to the general recommendations for action regarding phishing attacks, no dubious or potentially malicious files should be downloaded or executed. The Microsoft security patch should also be installed as a matter of urgency. The latter applies in principle and is independent of current security warnings.

 

 


Back to All news


Do you have questions or comments about this site? contact form