newly discovered zero-day vulnerability, CVE-2024-43451, has been actively exploited in the wild, targeting Windows systems across various versions. This critical vulnerability, uncovered by the ClearSky Cyber Security team in June 2024, has been linked to attacks aimed specifically at Ukrainian organizations - affects nearly all versions of Windows
https://www.clearskysec.com/0d-vulnerability-exploited-in-the_wild/
The vulnerability is triggered by interacting with specially crafted URL files disguised as legitimate documents.
A single right-click on a malicious file (affects all Windows versions).
Deleting the file (Windows 10/11).
Dragging the file to another folder (Windows 10/11 and some older versions).
ClearSky researchers have also identified overlaps with techniques used by other Russian-affiliated groups, suggesting using a common ttoolkit