In a stark example of how complicated coding can be, Microsoft recently received a huge blow when an unpatched vulnerability made it possible for hackers to send out malware that infected millions of users. This activity has been going on for months and affects all versions of the MS Office package, including Office 2016 that also came with the Windows 10 Operating System.
A hole in Microsoft’s defenses, in general, is bad enough, but a malware that can infect users using every supported version of the MS Office products is just devastating. It’s currently the most popular paid productivity software package in the world and is used by both private individuals and corporations. As a result, millions have been at risk of infection since January, PC World reports.
The vulnerability in the software giant’s system was first noticed by the antivirus firm McAfee, which noticed that it has been receiving a lot of Word files that seemed even more suspicious than usual. After looking into them, security experts determined that some form of vulnerability shared by all Office software is being used to send out malware.
In a blog post, the company explains that the vulnerability has something to do with what’s called the Object Linking and Embedding aspect, which is basically how users can add hyperlinks to Word documents. This also provides the hackers with considerable access to Microsoft’s famed security system.
“The exploit connects to a remote server (controlled by the attacker), downloads a file that contains HTML application content, and executes it as a .hta file,” the blog post reads. “Because .hta is executable, the attacker gains full code execution on the victim’s machine. Thus, this is a logical bug, and gives the attackers the power to bypass any memory-based mitigations developed by Microsoft.”


Elon Musk Ties SpaceX IPO Access to Mandatory Grok AI Subscriptions
Nanya Technology Shares Surge 10% After $2.5 Billion Private Placement from Sandisk and Cisco
Apple Turns 50: From Garage Startup to AI Crossroads
Golden Dome Missile Defense: Anduril and Palantir Join Forces on Trump's $185B Space Shield
California's AI Executive Order Pushes Responsible Tech Use in State Contracts
Rubio Directs U.S. Diplomats to Use X and Military Psyops to Counter Foreign Propaganda
Makemation: a Nollywood movie that shows AI in action in Africa
Federal Judge Blocks Pentagon's Blacklisting of AI Company Anthropic
Google's TurboQuant Algorithm Sends Memory Chip Stocks Tumbling
SpaceX IPO Filing Expected This Week as Valuation Could Surpass $75 Billion
OpenAI Pulls the Plug on Sora, Ending $1 Billion Disney Partnership
Meta Ties Executive Pay to Aggressive Stock Price Targets in Major Retention Push
AWS Bahrain Region Disrupted by Drone Activity Amid Middle East Conflict
MATCH Act Targets ASML and Chinese Chipmakers in New U.S. Export Crackdown
Cybersecurity Stocks Tumble After Anthropic's Claude Mythos AI Leak Sparks Market Fears
TSMC Japan's Second Fab to Produce 3nm Chips by 2028 



