Intelligence View
CVE-2025-55335 | Microsoft Windows up to Server 2025 NTFS use after free
A vulnerability was found in Microsoft Windows. It has been classified as critical. This affects an unknown function of the component NTFS. Performing manipulation results in use after free. This vulnerability is reported as…
This vulnerability is reported as CVE-2025-55335. The attack requires a local approach. No exploit exists.
To fix this issue, it is recommended to deploy a patch.
SOC Incident Playbook: Vulnerability Remediation & Verification
title: Detect Exploitation - CVE-2025-55335 | Microsoft Windows up to Server 2025 NTFS use after free
id: 7582546d-035f-4990-8937-46c0ccf357d3
status: experimental
description: Automatisch generierte SIEM-Erkennungsregel basierend auf CTI Intelligence
references:
- https://tsecurity.de/
author: iShareStuff CTI Automated Detection Engine
date: 2026-09-23
logsource:
category: network_connection
product: any
detection:
selection:
CommandLine|contains:
- 'exploit'
condition: selection
falsepositives:
- Legitime administrative Zugriffe oder Penetrationstests
level: high
tags:
- attack.initial_accessrule CTI_Threat_Indicator {
meta:
author = "iShareStuff CTI Automated Detection Engine"
date = "2026-09-23"
description = "YARA Signature for "
strings:
$str = "CVE-2025-55335 | Microsoft Win" ascii wide
condition:
any of them
}
SOCIAL SHARE CARD GENERATOR