- It's the applications, stupid
- Will a whitelist save personal computing?
- Thousands of Web sites under attack
- To solve the unsolvable problem
- Re-thinking the security of virtual machines
- Security Development Lifecycle trumps code complexity
- Is your Web site FIPS compliant?
- Computer security: Why have least privilege?
- Strategic security: Get a handle on authentication
- Control user installs of software
December 08, 2006 | Comments: (0)
New Microsoft zero-day exploit
Affects all versions of MS-Word. Trojans in the wild and spreading.
A new MS-Word zero day exploit has been found. Microsoft discusses it here.
At least two trojans have been discovered connected to the exploit, so the vulnerability is in the wild. You can read about those here.
This exploit has the ability to go big, but so far MS-Office threats haven't really gone widespread in the last few years. I think this one could have more legs because it affects all versions of Word, and has no easy defense, other than don't open unexpected MS-Word files, even if you know the sender's name. You can always email the sender to confirm before opening.
It doesn't help that MS-Word file extensions can be nearly any file extension (that isn't already defined) in Windows, and MS-Word will open the file. So it can appear as one type of file, and really be a malicious MS-Word file.
12-10-06 Update:
McAfee announced a malware program that uses the MS-Word exploit vector. It is not widespread.
Posted by Roger Grimes on December 8, 2006 09:13 AM
RATE THIS ARTICLE:
-

- COMMENTS
TOP STORIES
Top 10 stories of the weekA new place to hide rootkits
Sun exec on OpenSolaris, Linux
AT&T: No free iPhone Wi-Fi info
MS to appeal E.U. fine
XP SP3 causes endless reboots
Vista as insecure as Win 2000
Google grilled on human rights
Java ubiquity an edge in RIA battle
The InfoWorld news quiz
ADDITIONAL RESOURCES

- Application Security: Threats and How to Counter Them
- Why Linux Threats Mean Business
- Minding the Machines: PC Disaster Recovery for the Enterprise

- Protect Your Data with SSL
- Prevent Your Next Microsoft Exchange Outage
- 11 Myths About Microsoft Exchange Backup & Recovery





