Get a Pentest and security assessment of your IT network.

News

Hackers exploit an undocumented Word feature for user fingerprinting

Kaspersky researchers discovered a new attack technique leveraging an undocumented Word feature to gather information on users. The attackers sent phishing emails using Word documents in OLE2 format and contained links to PHP scripts hosted on third-party web resources. Once opened Word sends a GET request to an internal link, which sent information about the software installed on the victim machine to the attackers, including info about which version of Microsoft Office was installed. The researchers noticed the presence of an INCLUDEPICTURE field that indicates that an image is attached to certain characters in the text.”]

Source: http://securityaffairs.co/wordpress/63158/hacking/undocumented-word-feature-attack.html

Related posts
News

Ashley Madison 2.0 Hackers Leak 20GB Data Dump, Including CEO's Emails

News

Art of Twitter account hacking

News

BlackEnergy exploits recently fixed flaws in Siemens WinCC

News

Russian cybercriminal Roman Seleznev gets another prison sentence