Feb. 14, 2024, 1:55 a.m. | /u/Andrew0275

cybersecurity www.reddit.com

There is a new critical CVE for Microsoft Outlook: [https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21413](https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21413)

Is this another case of CVE-2023-23397 of last year where there is a critical need to patch?

So far the attack description seems pretty vague, and there is not much more info about it. It does mention it can "lead to the leakage of local NTLM credential information", which seems pretty critical but its still hard to say without at least a proof-of-concept. Thoughts?

attack can case credential critical cve cve-2023-23397 cybersecurity far hard info information local ntlm patch

Social Engineer For Reverse Engineering Exploit Study

@ Independent study | Remote

Application Security Engineer - Remote Friendly

@ Unit21 | San Francisco,CA; New York City; Remote USA;

Cloud Security Specialist

@ AppsFlyer | Herzliya

Malware Analysis Engineer - Canberra, Australia

@ Apple | Canberra, Australian Capital Territory, Australia

Product CISO

@ Fortinet | Sunnyvale, CA, United States

Manager, Security Engineering

@ Thrive | United States - Remote