Get a Pentest and security assessment of your IT network.

News

Attackers experimenting with CVE-2017-0199 in recent phishing attacks

Researchers at Trend Micro and Cisco’s Talos identified a new wave of phishing attacks leveraging CVE-2017-0199, a previously patched remote code execution vulnerability in the OLE (Windows Object Linking and Embedding) interface of Microsoft Office. The latest attacks have paired the vulnerability with others in an attempt to bypass warning messages displayed by Microsoft Word. But the attackers failed to test their code, as the two vulnerabilities they attempted to chain together didn’t work. The attacks start via email with an attached malicious RTF document.”]

Source: https://www.csoonline.com/article/3216165/attackers-experimenting-with-cve-2017-0199-in-recent-phishing-attacks.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

Botnet authors use Evernote account as C&C Server

News

Canadian agency breached as hackers exploit CVE-2017-5638 flaw in Apache Struts 2