<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom" xmlns:content="http://purl.org/rss/1.0/modules/content/"><channel><title>Cve-2026-33829 on ZX Cloud Security</title><link>https://zxcloudsecurity.co.uk/tags/cve-2026-33829/</link><description>Recent content in Cve-2026-33829 on ZX Cloud Security</description><generator>Hugo</generator><language>en-GB</language><lastBuildDate>Wed, 03 Jun 2026 10:18:52 +0000</lastBuildDate><atom:link href="https://zxcloudsecurity.co.uk/tags/cve-2026-33829/index.xml" rel="self" type="application/rss+xml"/><item><title>Windows Search URI Flaw Leaks NTLMv2 Hashes – Unpatched</title><link>https://zxcloudsecurity.co.uk/posts/windows-search-uri-ntlmv2-hash-leak-unpatched-cve-2026-33829/</link><pubDate>Wed, 03 Jun 2026 10:18:52 +0000</pubDate><guid>https://zxcloudsecurity.co.uk/posts/windows-search-uri-ntlmv2-hash-leak-unpatched-cve-2026-33829/</guid><description>An unpatched Windows search: URI handler vulnerability lets attackers steal NTLMv2 hashes for credential relay or offline cracking. No patch available yet.</description><content:encoded><![CDATA[<p>🟠 <strong>High</strong>  |  <strong>Source:</strong> <a href="https://thehackernews.com/2026/06/unpatched-windows-search-uri.html">The Hacker News</a></p>
<hr>
<p>An unpatched vulnerability in Windows&rsquo; &lsquo;search:&rsquo; URI handler can be exploited to leak a user&rsquo;s NTLMv2 credential hash to an attacker, similar to a recently disclosed flaw in the Windows Snipping Tool (CVE-2026-33829). NTLMv2 hashes can be cracked offline or used in relay attacks to authenticate as the victim. The vulnerability remains unpatched, making it an active risk for any Windows environment, including cloud-connected hybrid setups.</p>
<blockquote>
<p><strong>Architect&rsquo;s Take:</strong> Block or restrict outbound SMB traffic (TCP 445) at the network perimeter and enforce NTLM restrictions via Group Policy or Azure AD Conditional Access to reduce relay attack exposure. Additionally, consider deploying Defender for Endpoint or equivalent EDR rules to flag suspicious search: URI handler invocations until a patch is available.</p>
</blockquote>
<p><strong>Original advisory:</strong> <a href="https://thehackernews.com/2026/06/unpatched-windows-search-uri.html">Unpatched Windows Search URI Vulnerability Lets Attackers Steal NTLMv2 Hashes</a></p>
]]></content:encoded></item></channel></rss>