Once again it's time for a Microsoft security breach that has the possibility of making your life miserable. The Russian hacking group Fancy Bear (or APT28) has found a flaw in Microsoft Office documents that can allow malware to be installed just by opening a document on your computer. This has been going on since late October and the subjects of the documents are related to US Army exercise in Eastern Europe known as SabreGuardian and the ISIS New York truck attack.

The Microsoft's Dynamic Data Exchange feature is designed to allow Office files to include links to other remote files and that's all that's needed to get the malware installed. It will usually ask the user if they want to update links from the remote file. The files are known to have names such as SabreGuard2017.docx and IsisAttackInNewYork.docx. Microsoft PowerShell scripting is used to install the malware called Seduploader on the users machine.

Microsoft Word Macro

Microsoft doesn't consider this a flaw on their end and say the software is working as intended but that people need to be more careful when opening files from un trusted sources. Even if it's from someone you know you should always be careful when opening email attachments especially if its forwarded from someone else rather than being a new email.

 

Pin It

Join Us On FaceBook

We Recommend:



Join Us On Twitter

Get insights into the computer industry and regular updates on our site. Click Here

OCT Youtube Channel

New tech tip videos posted on a regular basis. Subscribe today! Click Here

Sponsored

LATEST VIDEOS

  If you are like most people, you use a...

  As you probably know, Windows uses par...

  When you boot up a VM within VMware Wo...

  We all store files of various types on...

You may or may not know that the Microsoft Edge ...

  If you can remember way back in 2015 whe...

RECENT TIPS

In order to use a computer that is running the M...

  If you are like most people, you use a...

  The internet can be a scary place. One...

  As you probably know, Windows uses par...

  When you boot up a VM within VMware Wo...

  While it may not seem that hard to sta...

NEWS

Another reason to keep your devices up to date. If you ...

You may or may not be aware the Microsoft is com...

Try not to get the BlueKeep Blues Once again the Micros...

Are Your Chrome Credentials Secure? Many people like to...

Windows 10 Optional Updates Coming Soon If you can reme...

Is a Virtual Private Network right for you? &nb...