|
|
|
||||||||
|
|||||||||
|
Latest Ôhreats More Microsoft Office document-based targeted attacks A targeted attack exploiting a vulnerability in Microsoft Office Excel Urgency: Large (Small/Medium/Large/Urgent) Description Inter Engineering and Clearswift warns you for a targeted attack exploiting a vulnerability in Microsoft Office Excel. Reported targeted attacks based on this vulnerability affect the following products: Microsoft Office Excel 2003 Service Pack 2, Microsoft Office Excel Viewer 2003, Microsoft Office Excel 2002, Microsoft Office Excel 2000 and Microsoft Excel 2004 for Mac. What do targeted attacks mean? In a targeted attack the number of recipients-victims is very restricted in order to avoid widespread publicity. Of course the reports of this type of targeted attacks are being more and more increasingly frequent! The vulnerability acts like this:
The victim receives an
e-mail with office documents attachments. Opening this attachment
automatically allows the execution of the attacker’s code. That
means that the attacker can steal data or control the PC. Suggested solutions To avoid such threats do not open attachments that come from unknown senders or seem to be suspicious. Use products like Microsoft Office Excel 2003 Service Pack 3, Microsoft Office Excel 2007 and Microsoft Excel 2008 for Mac that are not affected as they do not contain the vulnerable code. Inter Engineering recommends MIMEsweeper solutions and specifically the products MIMEsweeper for SMTP (ver. 5.0 and above) and all versions of the MIMEsweeper Email Appliance. These products decompose Office documents, which embed executable files, and are able to block them. For more technical information contact Support Department via e-mail Support@inter.gr or via phone +30.2410.670030. To contact us:
|