Security firm Ensilo says they’ve found a half-dozen problems in hooking engines. The flaws enable attackers to bypass built-in operating system protections, such as Microsoft’s ASLR. Microsoft Detours, an open-source engine called EasyHook, and proprietary engines used by about 20 other vendors are at risk. Microsoft has been notified and is scheduled to patch Detours next month, but not all vendors have patched the issue. The company says patching isn’t straightforward, because each vendor must recompile affected applications.”]
Source: https://www.cuinfosecurity.com/blogs/code-hooking-flaws-affect-millions-office-users-p-2187

