Tech

Worrying Windows security issue patched by 7-Zip, so patch now

Share
Share


  • Security researchers warned about a vulnerability in older versions of 7-Zip
  • The vulnerability allowed threat actors to bypass the Mark of the Web security feature
  • The bug was fixed in late November 2024

A high-severity vulnerability was recently discovered, and patched, in the popular open source file archiver solution 7-Zip. Since the product does not have an automatic update feature, users are advised to upgrade to the newest version manually, as soon as possible.

The vulnerability in question is tracked as CVE-2025-0411. It is described as a Mark of the Web (MotW) bypass, that allows threat actors to execute malicious code on target endpoints that are extracting files from nested archives. It was given a severity score of 7/10 – high.

Share

Leave a comment

Leave a Reply

Your email address will not be published. Required fields are marked *

Related Articles
Need serious data protection? iStorage’s new 26TB PIN-locked drive could be your answer
Tech

Need serious data protection? iStorage’s new 26TB PIN-locked drive could be your answer

iStorage launches world’s first 26TB PIN-authenticated encrypted desktop storage diskAshur DT3 offers...

Intel’s Core Ultra 9 and RTX 5060 Ti in one box? Lenovo’s wild mini PC pulls it off
Tech

Intel’s Core Ultra 9 and RTX 5060 Ti in one box? Lenovo’s wild mini PC pulls it off

Lenovo ThinkCentre neo Ultra 2025 squeezes high-end AI hardware into a tiny,...

10 Lego cars just raced the F1 Miami Grand Prix track – here’s how they were built
Tech

10 Lego cars just raced the F1 Miami Grand Prix track – here’s how they were built

10 Lego cars just drove around Miami’s F1 track They’re each built...