0nb.7z
: NIST notes that this specific vulnerability can bypass the "Mark-of-the-Web" protection mechanism, which typically warns users when opening files downloaded from the internet.
On February 4, 2025, researchers at Trend Micro published a blog post detailing how Russian-linked threat actors exploited a zero-day vulnerability in 7-Zip, identified as . 0NB.7z
: The vulnerability was used to deploy the SmokeLoader malware, which functions as a loader for further cyberespionage tools. : NIST notes that this specific vulnerability can
Other security-focused blog posts have explored the broader risks associated with archiving tools: 0NB.7z