Spam messages are carrying weaponized RTF documents that could infect users with malware without any user interaction, just opening the documents. The spam messages are sent in various European languages. Threat actors are exploiting the Microsoft Office and Wordpad CVE-2017-11882 vulnerability. The vulnerability could be triggered on all versions of Windows operating system, including the latest Microsoft Windows 10 Creators Update. Experts at Microsoft believe attackers may use the same tactic to spread a new version of the backdoor that connects to an active C2.”]
Source: https://securityaffairs.co/wordpress/86886/hacking/microsoft-cve-2017-11882-flaw-attacks.html