Blog | G5 Cyber Security

PREVENTED! An active malware campaign using emails distributes RTF files that carry a widespread exploit. Patch at your own pace

Microsoft Security Intelligence issued a warning on Friday, June 8th, that they had detected an active campaign that contains RTF attachments utilising a well-known vulnerability in Microsoft Office and Wordpad software. The vulnerability affects the EQNEDT32.EXE that is responsible for insertion and editing of equations as an OLE objectsinto documents. The component fails to properly handle objects in the memory, which is exploited by the attacker to execute malicious code in the context of the logged-in user. All of Minerva customers are fully protected from this campaign as from many other Office vulnerabilities.”]

Source: https://blog.minerva-labs.com/attackers-insert-themselves-into-the-email-conversation-to-spread-malware-0

Exit mobile version