Microsoft warns of a Paragon Partition Manager BioNTdrv.sys driver zero-day flaw actively exploited by ransomware gangs in attacks.
The IT giant reported that one of the discovered vulnerabilities (CVE-2025-0289) is currently being exploited by ransomware groups in zero-day attacks.
Paragon Software has released an update (BioNTdrv.sys v2.0.0) to address the vulnerabilities.
Users are advised to update Paragon Partition Manager and enable Windows' Vulnerable Driver Blocklist for protection.