How NTLM is being abused in 2025 cyberattacksKaspersky Securelist·Nov 26, 15:53 UTC · Nov 26, 2025Exploit / PoC in the wild160
Microsoft NTLM vulnerabilities could lead to full domain compromiseHelp Net Security·Aug 24, 11:31 UTC · Aug 24, 2021VulnerabilityCVE-2019-104060
Critical Microsoft NTLM vulnerabilities allow remote code execution on any Windows machineHelp Net Security·Aug 24, 11:01 UTC · Aug 24, 2021VulnerabilityCVE-2019-1040CVE-2019-101960
NTLM relay attacks are back from the deadHelp Net Security·Apr 23, 13:40 UTC · Apr 23, 2026Vulnerability55
Critical Flaws Found in Windows NTLM Security ProtocolThe Hacker News·Jul 12, 07:23 UTC · Jul 12, 2017Exploit / PoCCVE-2017-856360
MS Patch Tuesday fixes 19 critical issues, including two NTLM zeroSecurity Affairs·Jul 12, 13:32 UTC · Jul 12, 2017VulnerabilityCVE-2017-856360
CVE-2025-24054 Under Active Attack—Steals NTLM Credentials on File DownloadThe Hacker News·Apr 19, 08:34 UTC · Apr 19, 2025Vulnerability in the wildCVE-2025-24054CVE-2024-43451160
Unpatched MS Office flaw may leak NTLM hashes to attackers (CVE-2024-38200)Help Net Security·Aug 12, 00:00 UTC · Aug 12, 2024VulnerabilityCVE-2024-38200160
Windows 11 to Deprecate NTLM, Add AI-Powered App Controls and Security DefensesThe Hacker News·Jun 6, 09:16 UTC · Jun 6, 2024Exploit / PoC60
U.S. CISA adds Apple products and Microsoft Windows NTLM flaws to its Known Exploited Vulnerabilities catalogSecurity Affairs·Apr 18, 11:20 UTC · Apr 18, 2025Exploit / PoC in the wildCVE-2025-31200CVE-2025-31201CVE-2025-24054160
Windows NTLM vulnerability exploited in multiple attack campaigns (CVE-2025-24054)Help Net Security·Apr 17, 00:00 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2025-24071CVE-2024-43451160
NTLM Hash Exploit Targets Poland and Romania Days After PatchInfosecurity Magazine·Apr 17, 16:45 UTC · Apr 17, 2025Vulnerability in the wildCVE-2025-24054CVE-2024-43451CVE-2025-24071160
⚡ Weekly Recap: iOS Zero-Days, 4Chan Breach, NTLM Exploits, WhatsApp Spyware & MoreThe Hacker News·May 6, 07:05 UTC · May 6, 2025Malware in the wildCVE-2025-24054CVE-2024-43451CVE-2025-31200+7 CVEs160
February 2026 Patch Tuesday forecast: Lots of OOB love this monthHelp Net Security·Feb 16, 10:29 UTC · Feb 16, 2026VulnerabilityCVE-2026-21509CVE-2025-8088160
Russian Hackers Exploit New NTLM Flaw to Deploy RAT Malware via Phishing EmailsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024MalwareCVE-2024-43451160
TA577 Exploits NTLM Authentication VulnerabilityInfosecurity Magazine·Mar 4, 16:30 UTC · Mar 4, 2024Vulnerability55
Microsoft Fixes 72 Flaws, Including Patch for Actively Exploited CLFS VulnerabilityThe Hacker News·Dec 11, 15:01 UTC · Dec 11, 2024Vulnerability in the wildCVE-2024-49138CVE-2022-24521CVE-2022-37969+6 CVEs60
June 2024 Patch Tuesday forecast: Multiple announcements from MicrosoftHelp Net Security·Jun 12, 06:51 UTC · Jun 12, 2024VulnerabilityCVE-2024-30080CVE-2024-3010360
Microsoft Fixes 90 New Flaws, Including Actively Exploited NTLM and Task Scheduler BugsThe Hacker News·Nov 15, 00:00 UTC · Nov 15, 2024Exploit / PoC in the wildCVE-2024-43451CVE-2024-49039CVE-2024-21410+6 CVEs260
Week in review: MS Office flaw may leak NTLM hashes, malicious Chrome, Edge browser extensionsHelp Net Security·Aug 18, 00:00 UTC · Aug 18, 2024Ransomware in the wildCVE-2024-38200CVE-2024-2898660
Week in review: Attackers use phishing emails to steal NTLM hashes, Patch Tuesday forecastHelp Net Security·Mar 10, 00:00 UTC · Mar 10, 2024Vulnerability in the wildCVE-2024-20337CVE-2024-23225CVE-2024-23296+6 CVEs60
Week in review: 15 million Trello users’ scraped data on sale, attackers can steal NTLM hashesHelp Net Security·Jan 28, 00:00 UTC · Jan 28, 2024Ransomware in the wildCVE-2023-35636CVE-2024-0204CVE-2024-2322260
⚡ Weekly Recap: Fortinet Exploits, RedLine Clipjack, NTLM Crack, Copilot Attack & MoreThe Hacker News·Jan 20, 07:01 UTC · Jan 20, 2026Exploit / PoC in the wildCVE-2025-6415560
BlackByte blends tried-and-true tradecraft with newly disclosed vulnerabilities to support ongoing attacksCisco Talos·Aug 28, 10:00 UTC · Aug 28, 2024VulnerabilityCVE-2024-3708560
Threat Brief: Microsoft Critical Vulnerabilities (CVE-2022-26809, CVE-2022-26923, CVE-2022Palo Alto Unit 42·Jun 5, 20:13 UTC · Jun 5, 2024Vulnerability in the wildCVE-2022-26809CVE-2022-26923CVE-2022-26925160
Critical Exchange Server Flaw (CVE-2024The Hacker News·Feb 17, 07:27 UTC · Feb 17, 2024Exploit / PoC in the wildCVE-2024-21410CVE-2024-21351CVE-2024-21412+1 CVEs160
A zero-click flaw in Windows allows stealing NTLM credentialsSecurity Affairs·May 11, 07:23 UTC · May 11, 2023VulnerabilityCVE-2023-29324CVE-2023-2339760
Experts Detail New Zero-Click Windows Vulnerability for NTLM Credential TheftThe Hacker News·May 11, 04:35 UTC · May 11, 2023VulnerabilityCVE-2023-29324CVE-2023-2339760
Experts Detail A Recent Remotely Exploitable Windows VulnerabilityThe Hacker News·Feb 1, 05:10 UTC · Feb 1, 2021VulnerabilityCVE-2021-167860
MS October 2019 Patch Tuesday updates address 59 flawsSecurity Affairs·Oct 8, 20:46 UTC · Oct 8, 2019VulnerabilityCVE-2019-1238CVE-2019-1239CVE-2019-133860
Microsoft Releases June 2019 Security Updates to Patch 88 VulnerabilitiesThe Hacker News·Jun 11, 18:49 UTC · Jun 11, 2019Vulnerability in the wildCVE-2019-1040CVE-2019-1019CVE-2019-0620+2 CVEs60
Experts found a critical vulnerability in NSA Ghidra toolSecurity Affairs·Mar 21, 08:35 UTC · Mar 21, 2019Vulnerability55
Researchers Find Exploit Allowing NTLMv1 Despite Active Directory RestrictionsThe Hacker News·Jan 15, 00:00 UTC · Jan 15, 2025Exploit / PoC in the wild60
THN Recap: Top Cybersecurity Threats, Tools and Tips (Nov 25The Hacker News·Dec 2, 11:25 UTC · Dec 2, 2024RansomwareCVE-2024-9680CVE-2024-49039CVE-2024-11680+14 CVEs60
Microsoft Warns of Unpatched Office Vulnerability Leading to Data ExposureThe Hacker News·Aug 10, 07:13 UTC · Aug 10, 2024Vulnerability in the wildCVE-2024-38200CVE-2024-38202CVE-2024-21302160
Microsoft August 2025 Patch Tuesday Fixes Kerberos ZeroThe Hacker News·Aug 17, 08:42 UTC · Aug 17, 2025VulnerabilityCVE-2025-53786CVE-2025-53779CVE-2025-53767+9 CVEs160
Fat Patch Tuesday, February 2024 EditionKrebs on Security·Feb 15, 00:00 UTC · Feb 15, 2024Vulnerability in the wildCVE-2024-21412CVE-2024-21351CVE-2022-44698+6 CVEs60
Beware: Experts Reveal New Details on ZeroThe Hacker News·Dec 19, 04:44 UTC · Dec 19, 2023VulnerabilityCVE-2023-35384CVE-2023-36710CVE-2023-23397+1 CVEs60
Threat Advisory: Microsoft Outlook privilege escalation vulnerability being exploited in the wildCisco Talos·Mar 15, 23:46 UTC · Mar 15, 2023Exploit / PoC in the wildCVE-2023-2339760
Unpatched Windows Search URI Vulnerability Lets Attackers Steal NTLMv2 HashesThe Hacker News·Jun 3, 10:18 UTC · Jun 3, 2026VulnerabilityCVE-2026-33829CVE-2023-3563660