• About Us
  • Privacy Policy
  • Disclaimer
  • Contact Us
TechTrendFeed
  • Home
  • Tech News
  • Cybersecurity
  • Software
  • Gaming
  • Machine Learning
  • Smart Home & IoT
No Result
View All Result
  • Home
  • Tech News
  • Cybersecurity
  • Software
  • Gaming
  • Machine Learning
  • Smart Home & IoT
No Result
View All Result
TechTrendFeed
No Result
View All Result

Microsoft Disables Downloaded File Previews to Block NTLM Hash Leaks

Admin by Admin
October 24, 2025
Home Cybersecurity
Share on FacebookShare on Twitter


Microsoft this week introduced that the preview function is now disabled in Home windows’s File Explorer for information downloaded from the web, as an extra safety in opposition to NTLM hash leaks.

The change, rolled out as a part of the October 2025 Patch Tuesday safety updates, applies to all information which might be marked with Mark of the Net (MotW).

Home windows provides the MotW to information fetched through browser downloads or electronic mail attachments and warns customers of the potential threat these information pose. For Workplace information, the system blocks macros, which may include malicious code.

By disabling the preview of information downloaded from the web, Microsoft seeks to forestall a safety defect resulting in NTLM hash leaks when a probably unsafe file is previewed. Attackers can brute-force the leaked hash to retrieve a person’s password, or may mount relay assaults.

“This variation mitigates a vulnerability the place NTLM hash leakage may happen if customers preview information containing HTML tags (reminiscent of , , and so forth) referencing exterior paths. Attackers may exploit this preview function to seize delicate credentials,” Microsoft explains.

The corporate doesn’t say which flaw it tackles, however it seems that it might be CVE-2025-59214, which is described as a File Explorer spoofing difficulty and will enable attackers to leak delicate info over the community.

The bug is a bypass for CVE-2025-50154, which in flip is a bypass for CVE-2025-24054, a zero-click NTLM credential leakage vulnerability that Microsoft tried to resolve in March. CVE-2025-24054 has been exploited within the wild, together with in opposition to authorities and personal establishments in Poland and Romania.

The unique bug might be triggered through malicious .library-ms information positioned inside a ZIP archive. When the person extracted the archive, Home windows initiated an SMB authentication request to a distant server, leaking the NTLM hash.

Commercial. Scroll to proceed studying.

Microsoft warned in March that merely choosing the malicious file or right-clicking it may set off the vulnerability.

Whereas analyzing the problem, Cymulate found the patch might be bypassed, and Microsoft in August rolled out a contemporary spherical of fixes, assigning CVE-2025-50154 to the problem and saying that it existed due to a niche left by the unique patch.

Shortly after, Cymulate discovered that these patches might be bypassed as effectively, and reported the weak spot to Microsoft, which assigned CVE-2025-59214 to it.

Now, Microsoft says that disabling File Explorer’s preview function for information downloaded from the web ought to forestall the leak of NTLM hashes.

Following the October safety patches, the File Explorer preview pane will warn customers that the file they’re making an attempt to preview might be dangerous and that they need to solely open it in the event that they belief its origin. The identical applies to information considered on an Web Zone file share.

To take away the block, customers have to right-click on the downloaded file, choose Properties, after which Unblock. Based on Microsoft, the change could not take impact till the following login.

Associated: ‘Highest Ever’ Severity Rating Assigned by Microsoft to ASP.NET Core Vulnerability

Associated: Patch Bypassed for Supermicro Vulnerability Permitting BMC Hack

Associated: Essential Vulnerabilities Patched in TP-Hyperlink’s Omada Gateways

Associated: ICS Patch Tuesday: Fixes Introduced by Siemens, Schneider, Rockwell, ABB, Phoenix Contact

Tags: BlockDisablesDownloadedFileHashLeaksMicrosoftNTLMPreviews
Admin

Admin

Next Post
Get Studio Ghibli Blu-Ray Steelbooks For $18 And DVDs For $6

Get Studio Ghibli Blu-Ray Steelbooks For $18 And DVDs For $6

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Trending.

Reconeyez Launches New Web site | SDM Journal

Reconeyez Launches New Web site | SDM Journal

May 15, 2025
Discover Vibrant Spring 2025 Kitchen Decor Colours and Equipment – Chefio

Discover Vibrant Spring 2025 Kitchen Decor Colours and Equipment – Chefio

May 17, 2025
Flip Your Toilet Right into a Good Oasis

Flip Your Toilet Right into a Good Oasis

May 15, 2025
Safety Amplified: Audio’s Affect Speaks Volumes About Preventive Safety

Safety Amplified: Audio’s Affect Speaks Volumes About Preventive Safety

May 18, 2025
Apollo joins the Works With House Assistant Program

Apollo joins the Works With House Assistant Program

May 17, 2025

TechTrendFeed

Welcome to TechTrendFeed, your go-to source for the latest news and insights from the world of technology. Our mission is to bring you the most relevant and up-to-date information on everything tech-related, from machine learning and artificial intelligence to cybersecurity, gaming, and the exciting world of smart home technology and IoT.

Categories

  • Cybersecurity
  • Gaming
  • Machine Learning
  • Smart Home & IoT
  • Software
  • Tech News

Recent News

Pretend macOS Troubleshooting Websites Used to Steal iCloud Knowledge in ClickFix Rip-off

Pretend macOS Troubleshooting Websites Used to Steal iCloud Knowledge in ClickFix Rip-off

May 9, 2026
Genshin Impression Luna 7 brings us the primary playable Hexenzirkel as issues take a flip in Sumeru

Genshin Impression Luna 7 brings us the primary playable Hexenzirkel as issues take a flip in Sumeru

May 8, 2026
  • About Us
  • Privacy Policy
  • Disclaimer
  • Contact Us

© 2025 https://techtrendfeed.com/ - All Rights Reserved

No Result
View All Result
  • Home
  • Tech News
  • Cybersecurity
  • Software
  • Gaming
  • Machine Learning
  • Smart Home & IoT

© 2025 https://techtrendfeed.com/ - All Rights Reserved