Once again it's time for a Microsoft security breach that has the possibility of making your life miserable. The Russian hacking group Fancy Bear (or APT28) has found a flaw in Microsoft Office documents that can allow malware to be installed just by opening a document on your computer. This has been going on since late October and the subjects of the documents are related to US Army exercise in Eastern Europe known as SabreGuardian and the ISIS New York truck attack.

The Microsoft's Dynamic Data Exchange feature is designed to allow Office files to include links to other remote files and that's all that's needed to get the malware installed. It will usually ask the user if they want to update links from the remote file. The files are known to have names such as SabreGuard2017.docx and IsisAttackInNewYork.docx. Microsoft PowerShell scripting is used to install the malware called Seduploader on the users machine.

Microsoft Word Macro

Microsoft doesn't consider this a flaw on their end and say the software is working as intended but that people need to be more careful when opening files from un trusted sources. Even if it's from someone you know you should always be careful when opening email attachments especially if its forwarded from someone else rather than being a new email.

 

Pin It

Join Us On FaceBook

We Recommend:



Join Us On Twitter

Get insights into the computer industry and regular updates on our site. Click Here

OCT Youtube Channel

New tech tip videos posted on a regular basis. Subscribe today! Click Here

Sponsored

LATEST VIDEOS

Yes there is a way to save multiple copied items...

Improve your Word effeciency with keyboard shorc...

Use VirtualBox snapshots to prevent potential di...

Keep Zoom and Google in sync with each other ...

Take Screen Captures the Easy Way   If ...

Easily schedule your Zoom meetings via your Outl...

RECENT TIPS

Yes there is a way to save multiple copied items...

Improve your Word effeciency with keyboard shorc...

Get a handle on your schedule with these helpful...

The dangers of sharing your IP address You m...

How is your business receiving its payments? &n...

Learn what makes our hard drives fail on us &nb...

NEWS

Another reason to keep your devices up to date. If you ...

Try not to get the BlueKeep Blues Once again the Micros...

Are Your Chrome Credentials Secure? Many people like to...

Windows 10 Optional Updates Coming Soon If you can reme...

Is a Virtual Private Network right for you? &nb...

Use Some Cache to Speed Up Chrome If you use the popula...