The recently patched CVE-2017-0022 Windows vulnerability has been exploited by threat actors behind the AdGholas malvertising campaign and Neutrino EK since July 2016. The zero-day vulnerability can be exploited by tricking victims into clicking on a specially crafted link. The flaw was discovered by a joint investigation conducted by security researchers at Trend Micro and ProofPoint, it was reported to Microsoft in September 2016. TrendMicro has published a detailed analysis of the flaw and of the attack chain that exploits it.”]
Source: http://securityaffairs.co/wordpress/57408/malware/cve-2017-0022-flaw-adgholas.html

