Hackers exploit flaw in Paragon Partition Manager for ransomware attacks

Threat actors exploit vulnerability CVE-2025-0289 in Paragon Partition Manager's BioNTdrv.sys to escalate privileges in ransomware attacks according to CERT/CC and Microsoft

lunes, 3 de marzo de 2025 • 1 min read • Q2BSTUDIO Team

Company-Software-Apps

Security researchers have identified that malicious actors are exploiting a vulnerability in the BioNTdrv.sys driver of Paragon Partition Manager to carry out ransomware attacks. This security flaw, cataloged as CVE-2025-0289, is a zero-day that allows attackers to escalate privileges and execute arbitrary code.

According to the CERT Coordination Center CERT/CC, this vulnerability is part of a set of five flaws detected by Microsoft, which include techniques such as arbitrary kernel memory allocation.

At Q2BSTUDIO, a company specialized in development and technological services, we maintain a constant focus on security and threat prevention. Our team is prepared to implement solutions that strengthen organizations' technological infrastructure and prevent cyber risks that could compromise their information and operations.

OUR SERVICES

How we can help you

Do you have a project in mind?

Tell us your vision and we'll turn it into a software solution. Whatever the scope, we make your idea real.