Microsoft urges users such as Win10 / Win11 to upgrade as soon as possible, and hackers have taken advantage of zero-day vulnerabilities to insert blackmail software.
CTOnews.com, April 13 (Xinhua) Microsoft said in a security bulletin on Tuesday that it had fixed zero-day vulnerabilities in all supported Windows versions, including Win10, Win11 and Windows Server. Attackers can take advantage of this zero-day vulnerability to launch blackmail software attacks.
Image source: Kaspersky Microsoft says the vulnerability exists in the Windows Universal journaling File system (CLFS), which can be exploited by an attacker to gain full access to the device.
CTOnews.com learned from the cyber security company Kaspersky report that there is already evidence that attackers have exploited this vulnerability to deploy Nokoyawa blackmail software, mainly targeting Windows servers of small and medium-sized enterprises in the Middle East, North America and Asia.
Attackers use Nokoyawa malware to encrypt files, steal valuable information, and threaten users to pay ransom by means of public information.