NEWS CATEGORIES:



NEWS ARCHIVE >>
SOFTPEDIA REVIEWS >>
MEET THE EDITORS >>
Home / News / Microsoft

Microsoft


Targeted Attack Scenario via a Microsoft Vulnerability

Video available

By Marius Oiaga, Technology News Editor

31st of January 2007, 15:27 GMT

Adjust text size:


Have you ever wondered what is the succession of events behind a limited and targeted attack exploiting a zero-day vulnerability across Microsoft's products? Well, now you have a chance to
watch first hand a successful exploit that compromises the system through the Microsoft Word 2000 zero-day flaw.

At the basis of this targeted attack - and with few exceptions this is the general rule - is social engineering. Most often, the email's source is a spoofed genuine address delivering the necessary leverage for the victim to open the email and download/execute the .DOC file attachment.

"Targeted attacks are not intended for the masses, so we're never going to see the usual "Very exciting greeting postcard.exe" attached to those emails. But the big question is: what happens when someone opens the malicious MS Word file? Usually, users don't see much happen and that is the point of these targeted attacks," revealed Elia Florio, Symantec Security Response Engineer.

The example Symantec used to illustrate the targeted attack scenario was the still unpatched zero-day vulnerability related to Word 2000 and exploited by Trojan.Mdropper.W. In this video you will be able to see how the shellcode deploys an executable before opening a legitimate document.

"The only thing that "smart" users can notice is a kind of "flickering" of MS Word. This is because the malicious code has to terminate and then re-execute the MS Word application with the new clean .DOC," added Florio.
Read by 874 user(s) | Add comment | Link to this article TWEET THIS


Article rating:
Good (3.0/5) 7 vote(s)    

Subscribe to news | Print article | Send to friend

© Copyright 2001-2009 Softpedia
Contact:

 

 

SEARCH THE NEWS ARCHIVE :




Today's News
| Yesterday's News | News Archive


MORE RELATED ARTICLES:


It's Raining Word Vulnerabilities

Microsoft Confirms Word 2000 Zero-Day

Highly Critical Microsoft Word Zero-Day

Microsoft Debuts the 2007 Patching Season

Internet Explorer Sinks Under 80%

Remove the Search Box from Internet Explorer 7

4 January Microsoft Security Bulletins Discontinued

Internet Explorer 8.0

284 Days - The Attack Window of IE in 2006

Download January 2007 Security Releases ISO Image

Vista Is "Best Of CES"

Internet Explorer 7 Makes It without a Scratch into 2007

OneCare Will Add Vulnerabilities to Windows Vista

100 Million Installations - Internet Explorer 7

Microsoft Is Already Running Internet Explorer 8.0

Download IE7 Pro

Mac BU's General Manager Talks About XML Converters

Internet Explorer Developer Toolbar Beta 3

Microsoft Is Previewing Titan

Internet Explorer 8.0 Available for Download on Peer-to-Peer Networks

8 Microsoft Security Bulletins in January

Microsoft Contracts Web Standards Evangelist

Highly Critical PDF Vulnerability

User opinions:

No user comments yet.
Be the first to express your opinion using the form below!

Share your opinion:

Your Name:
Your Email Address:
(will not be used for commercial purposes)
Solve this to prove you're not a bot: =
Your review/opinion:

 




Windows tabGames tabDrivers tabMac tabLinux tabScripts tabMobile tabHandheld tabGadgets tabNews tab

SUBMIT PROGRAM   |   ADVERTISE   |   GET HELP   |   SEND US FEEDBACK   |   RSS FEEDS   |   ENTER NEWS SITE   |   ENGLISH BOARD   |   ROMANIAN FORUM