Yet another zero-day (of sorts) in the handling of “search URLs” in Windows – Naked Security

Advertisement

Yet another zero-day (of sorts) in the handling of "search URLs" in Windows - Naked Security

Just as the dust was starting to settle on the oddly named Follina vulnerability…

… added another zero-day vulnerability in Windows.

Type of.

We’re not convinced this is quite as dramatic or as dangerous as some of the headlines suggest (which is why we carefully added the words “kinda” above), but we’re not surprised that researchers are currently looking for new ones Ways to abuse the many proprietary URL types in Windows.