Windows WebDav Zero-Day Malware Hack
News Context
At a glance
- The advanced persistent threat (APT) group known as Stealth Falcon, also called FruityArmor, has been actively exploiting a Windows WebDav RCE vulnerability in zero-day attacks since March, targeting...
Stealth Falcon Exploits Windows WebDav RCE Vulnerability
The advanced persistent threat (APT) group known as Stealth Falcon, also called FruityArmor, has been actively exploiting a Windows WebDav RCE vulnerability in zero-day attacks since March, targeting defense and government entities in Turkey, Qatar, Egypt, and Yemen. This campaign highlights the importance of cybersecurity vulnerability management and prompt patching.
The vulnerability, identified as CVE-2025-33053, is a remote code execution (RCE) flaw stemming from how certain system executables handle working directories. Attackers can exploit this by
