"Windows SmartScreen Bug Exploited to Deliver Powerful Info-Stealer"
"Windows SmartScreen Bug Exploited to Deliver Powerful Info-Stealer"
A vulnerability, tracked as CVE-2023-36025, that Microsoft fixed in November 2023, is being used by threat actors to deliver Phemedrone Stealer. By exploiting the vulnerability, attackers can bypass Windows Defender SmartScreen checks and associated prompts. If the victim is tricked into downloading and opening a malicious file, Windows will not warn them if the service finds the file or website potentially malicious.