Blog | G5 Cyber Security

Duqu Exploits Same Windows Font Engine Patched Last Month, Microsoft Confirms

Microsoft confirms vulnerability exploited by Duqu Trojan is within the TrueType parsing engine. The company did not set a timetable for releasing the fix, but did say it would not appear as part of the batch it plans to ship next week. Microsoft has been extremely busy patching pieces of the Windows kernel this year. Duqu infects Windows PCs using a malformed Word document that’s delivered to victims as an email attachment. The vulnerability can be used to provide attackers with rights on the targeted PC necessary to install and run software.”]

Source: https://www.csoonline.com/article/2130119/duqu-exploits-same-windows-font-engine-patched-last-month–microsoft-confirms.html

Exit mobile version