Russian Cybercrime Syndicates Exploiting Vulnerability in 7-Zip to Circumvent Windows Mark-of-the-Web Defenses

Exploitation of a recently fixed security weakness in the 7-Zip compression tool has been observed in the wild to distribute the SmokeLoader malware.
Dubbed CVE-2025-0411 with a CVSS score of 7.

Exploitation of a recently fixed security weakness in the 7-Zip compression tool has been observed in the wild to distribute the SmokeLoader malware.
Dubbed CVE-2025-0411 with a CVSS score of 7.0, the vulnerability enables malicious actors to bypass mark-of-the-web (MotW) protections and run unauthorized commands within the user’s operating context. 7-Zip resolved this issue in November 2024 through version 24.09.
“It was discovered that the security hole had been

About Author

Subscribe To InfoSec Today News

You have successfully subscribed to the newsletter

There was an error while trying to send your request. Please try again.

World Wide Crypto will use the information you provide on this form to be in touch with you and to provide updates and marketing.