Russian Cybercrime Syndicates Exploiting Vulnerability in 7-Zip to Circumvent Windows Mark-of-the-Web Defenses
Exploitation of a recently fixed security weakness in the 7-Zip compression tool has been observed in the wild to distribute the SmokeLoader malware.
Dubbed CVE-2025-0411 with a CVSS score of 7.0, the vulnerability enables malicious actors to bypass mark-of-the-web (MotW) protections and run unauthorized commands within the user’s operating context. 7-Zip resolved this issue in November 2024 through version 24.09.
“It was discovered that the security hole had been
Dubbed CVE-2025-0411 with a CVSS score of 7.0, the vulnerability enables malicious actors to bypass mark-of-the-web (MotW) protections and run unauthorized commands within the user’s operating context. 7-Zip resolved this issue in November 2024 through version 24.09.
“It was discovered that the security hole had been
