How can users defend against the CVE-2017-8464 LNK vulnerability?
Users should install the official Microsoft patch for CVE-2017-8464, available from the Microsoft Security Response Center. As an additional measure, disabling the USB AutoPlay feature prevents automatic triggering of malicious .lnk files from removable drives. For a full list of recommended defenses and links to the patch and third‑party tools, refer to the Exploitation Testing of Windows Lnk Remote Code Execution Vulnerability (CVE-2017-8464) article.
patchUSB AutoPlaydefenseCVE-2017-8464Microsoft security