External control of file name or path in Windows NTLM allows an unauthorized attacker to perform spoofing over a network.
https://www.securityweek.com/microsoft-disables-downloaded-file-previews-to-block-ntlm-hash-leaks/
https://www.theregister.com/2025/04/21/microsoft_apple_patch/
https://thehackernews.com/2025/04/cve-2025-24054-under-active.html
https://www.darkreading.com/cyberattacks-data-breaches/multiple-group-exploiting-ntlm-flaw
https://research.checkpoint.com/2025/cve-2025-24054-ntlm-exploit-in-the-wild/