HT3Labs — Cyber Attacks, Breaches & Threat Activity

Threat entity extracted from intelligence sources

Frequency
1
occurrences
First Seen
December 22, 2025
Last Seen
December 22, 2025

HT3Labs is a threat actor group identified in connection with a Microsoft Brokered File System (MBFS) privilege-escalation vulnerability.

Overview

HT3Labs is a threat actor group identified in connection with a Microsoft Brokered File System (MBFS) privilege-escalation vulnerability. The group is noted for exploiting weaknesses in a Windows subsystem to achieve elevated privileges, enabling persistence and potential lateral movement within compromised networks. This positions HT3Labs as a notable actor in cybersecurity due to targeting core Windows components to gain SYSTEM-level access.

Related Threat Clusters

Recent Intelligence Reports

  • Microsoft Brokering File System Vulnerability Let Attackers Escalate Privileges — Cybersecuritynews · December 22, 2025

CVSS v3.1 Breakdown