Security News CVE-2025-24054 Under Active Attack—Steals NTLM Credentials on File Download TheHackerNews Daniel Bender Apr 18, 2025 Windows flaw CVE-2025-24054 actively exploited since March 19 to leak NTLM hashes via phishing attacks.