While malicious email attachments are nothing new, there’s reason to be particularly cautious when it comes to the new zero-day vulnerability, dubbed Follina, found in Microsoft Word, for which the tech giant almost immediately issued a workaround. Th…
Tag: Microsoft Office
Eurasia
CVE-2022-30190 (Follina) vulnerability in MSDT: description and counteraction
by AMR •
At the end of May, researchers reported a new zero-day vulnerability in MSDT that can be exploited using Microsoft Office documents. The vulnerability, which dubbed Follina, later received the identifier CVE-2022-30190.
Uncategorized
Follina. Unpatched Microsoft Office zero-day vulnerability exploited in the wild
by Graham Cluley •
The world is waiting for a patch from Microsoft, after a zero-day vulnerability in Microsoft Office was found to be being exploited in boobytrapped Word documents to remotely execute code on victims’ PCs.
Malware Indicators (IoCs), Vulnerabilities
Microsoft January Patch Tuesday Addresses 96 Vulnerabilities
by Abeerah Hashim •
Microsoft January Patch Tuesday update bundle has arrived with significant security fixes. Specifically, it includes…
Microsoft January Patch Tuesday Addresses 96 Vulnerabilities on Latest Hacking News.
Malware Indicators (IoCs)
New Formbook Malware Targets Unpatched Windows Systems – Update Now!
by Abeerah Hashim •
Researchers have found new campaigns distributing Formbook malware in the wild with evasive techniques. While…
New Formbook Malware Targets Unpatched Windows Systems – Update Now! on Latest Hacking News.
Global IT News
Brief phishing attack may have been dry run for exploiting Microsoft Office bug: Sophos
by Howard Solomon •
The 36-hour spurt of infected email messages leveraged a proof of concept exploit of a vulnerability
The post Brief phishing attack may have been dry run for exploiting Microsoft Office bug: Sophos first appeared on IT World Canada.
Malware Indicators (IoCs)
Microsoft October Patch Tuesday Addresses 4 Zero-Day Vulnerabilities
by Abeerah Hashim •
This week has marked the arrival of scheduled monthly updates from Microsoft. With October Patch…
Microsoft October Patch Tuesday Addresses 4 Zero-Day Vulnerabilities on Latest Hacking News.
Malware Indicators (IoCs)
Microsoft September Patch Tuesday Fixes 86 Security Bugs
by Abeerah Hashim •
This week, the Redmond giant has released the monthly security fixes for its products. With…
Microsoft September Patch Tuesday Fixes 86 Security Bugs on Latest Hacking News.
North America
Cyberattacks Use Office 365 to Target Supply Chain
by David Bisson •
Malicious actors have a history of trying to compromise users’ Office 365 accounts. By doing so, they can tunnel into a network and use their access to steal sensitive information. But they need not stop there. They can also single out other entities with which the target does business for supply chain cyberattacks. Office-Related Cyberattacks […]
The post Cyberattacks Use Office 365 to Target Supply Chain appeared first on Security Intelligence.