tag
APT
CVE-2025-26633
binary
HIGH
KEV
Ransomware
EPSS 30%
Windows MMC MSC EvilTwin - CVE-2025-26633
CVE-2025-26633 is a zero-day vulnerability in Microsoft Management Console (MMC) that was exploited in the wild by Russian APT group Water Gamayun (EncryptHub/Larva-208). An attacker crafts a malicious .msc file that abuses the MUIPath resolution mechanism:…
Unverified
2026-05-17