Security News CVE-2025-24054 Under Active Attack—Steals NTLM Credentials on File Download TheHackerNews Daniel Bender 18 Apr 2025 Windows flaw CVE-2025-24054 actively exploited since March 19 to leak NTLM hashes via phishing attacks.