Full Disclosure: Backdoor.Win32.Poison.jh / Insecure Permissions
seclists.org·3h
🔓Binary Exploitation
Preview
Report Post

Full Disclosure mailing list archives


From: malvuln <malvuln13 () gmail com> Date: Tue, 23 Dec 2025 01:22:37 -0500


Discovery / credits: Malvuln (John Page aka hyp3rlinx) (c) 2025
Original source:
https://malvuln.com/advisory/3d9821cbe836572410b3c5485a7f76ca.txt
Malvuln Intelligence Feed: https://intel.malvuln.com/
Contact: malvuln13 () gmail com
Media: x.com/malvuln

Threat: Backdoor.Win32.Poison.jh
Vulnerability: Insecure Permissions
Description: The malware creates the directory 28463 under
C:\Windows\SysWOW64, granting Full (F) permissions to the Everyone
user group. This allows any local user to modify or replace any
dropped files, enabling trivial malware disruption or execution
hijacking. This reflects poor operation...

Similar Posts

Loading similar posts...