Get the latest tech news
Microsoft fixes actively exploited Windows CLFS zero-day
For April 2025 Patch Tuesday, Microsoft delivers fixes for 120+ vulnerabilities, including a zero-day (CVE-2025-29824) under active attack.
We don’t know how widespread the attacks involving the exploitation of this vulnerability are, we know only that Microsoft Threat Intelligence Center has been credited with reporting the flaw. And since no user interaction is involved, these bugs are wormable,” says Dustin Childs, head of threat awareness at Trend Micro’s Zero Day Initiative. Aside from implementing the offered security updates, users would do well to either make RDP unreachable from the internet or reachable only from trusted IP addresses.
Or read this on r/technology