Get a Pentest and security assessment of your IT network.

Cyber Security

Hackers can abuse Microsoft Teams updater to install malware

Microsoft Teams can still double as a Living off the Land binary (LoLBin) and help attackers retrieve and execute malware from a remote location. The original method was first disclosed last year and relies on using the update command to run arbitrary binary code in the context of the current user. Microsoft s fix allows only local network paths to access and update the Teams package. A patch for the new method is unlikely to emerge, as Microsoft labeled this a design flaw, and a fix would impact some customers’ operations.

Source: https://www.bleepingcomputer.com/news/security/hackers-can-abuse-microsoft-teams-updater-to-install-malware/

Related posts
Cyber Security

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

Cyber Security

Art of Twitter account hacking

Cyber Security

Alexa Eavesdropping Flub Re-Sparks Voice Assistant Privacy Debate

Cyber Security

Dan Geer, Richard Thieme on specialization in security