A newly disclosed issue in the Windows Search URI handler could let a crafted activation path disclose NTLMv2 hash material, showing how ordinary deep links can become security boundaries.
A Windows Search URI handling flaw is being tied to NTLMv2 hash leakage, showing how a legitimate shell feature can become a credential-coercion path.
A Windows Search URI-handler flaw is being linked to NTLMv2 material leaking to attacker-controlled servers after a single click, showing how built-in convenience features can become authentication boundaries.