325
Threat actors exploited Windows 0-day for more than a year before Microsoft fixed it
(arstechnica.com)
This is a most excellent place for technology news and articles.
The fact that Windows hasn't solved the "fake extension" scam is wild. You can't make people not click stuff, obviously. But you absolutely could identify double extensions clearly intended to confuse people and give some kind of "this isn't a PDF" warning.
Shit, I remember having to wipe my boss's computer back in '03 because he clicked on an attachment called something along the lines of "bigtiddies.mpeg.exe" or some shit.
I could almost hear The Office theme song playing while I was reading that