Hackers exploit flaw in Paragon Partition Manager for ransomware attacks

Threat actors exploit vulnerability CVE-2025-0289 in Paragon Partition Manager's BioNTdrv.sys to escalate privileges in ransomware attacks according to CERT/CC and Microsoft

lunes, 3 de marzo de 2025 • 1 min read • Q2BSTUDIO Team

Company-Software-Apps

Security researchers have identified that malicious actors are exploiting a vulnerability in the BioNTdrv.sys driver of Paragon Partition Manager to carry out ransomware attacks. This security flaw, cataloged as CVE-2025-0289, is a zero-day that allows attackers to escalate privileges and execute arbitrary code.

According to the CERT Coordination Center CERT/CC, this vulnerability is part of a set of five flaws detected by Microsoft, which include techniques such as arbitrary kernel memory allocation.

At Q2BSTUDIO, a company specialized in development and technological services, we maintain a constant focus on security and threat prevention. Our team is prepared to implement solutions that strengthen organizations' technological infrastructure and prevent cyber risks that could compromise their information and operations.

A BREAK?

Play for a moment before you go

OUR SERVICES

How we can help you

Do you have a project in mind?

Tell us your vision and we'll turn it into a software solution. Whatever the scope, we make your idea real.