Security News

Word Attachment Delivers FormBook Malware, No Macros Required
2018-04-09 18:35

A new wave of document attacks targeting inboxes do not require enabling macros in order for adversaries to trigger an infection chain that ultimately delivers FormBook malware.

Macro-less word document attacks on the rise
2018-03-30 12:00

WatchGuard released its Internet Security Report for Q4 2017. Among the report’s most notable findings, threat intelligence showed that total malware attacks are up by 33 percent, and that cyber...

Word-based Malware Attack Doesn’t Use Macros
2018-02-15 17:31

Malicious e-mail attachments used in this campaign don’t display any warnings when opened and silently install malware.

Microsoft Word subDoc Feature Allows Password Theft
2018-01-05 16:08

A feature in Microsoft Word that allows for the loading of sub-documents from a master document can be abused by attackers to steal a user’s credentials, according to Rhino Security Labs. read more

In the Words of President Ronald Reagan, "Trust but Verify"
2017-12-20 21:37

Behavioral Analytics Enables Verification That Users Are Doing the Right Thing, And Promotes Transparency read more

Microsoft Disables Dynamic Update Exchange Protocol  in Word
2017-12-16 23:11

In an attempt to prevent cybercriminals from abusing the Dynamic read more

Unpatched Microsoft Word DDE Exploit Being Used In Widespread Malware Attacks
2017-10-20 03:07

A newly discovered unpatched attacking method that exploits a built-in feature of Microsoft Office is currently being used in various widespread malware attack campaigns. Last week we reported how...

New Attack Fingerprints Users Using Word Documents
2017-09-18 17:59

A newly detailed attack method leverages Microsoft Word documents to gather information on users, but doesn’t use macros, exploits or any other active content to do so, security researchers at...

Windows 10 S security brought down by, of course, Word macros (ArsTechnica)
2017-06-23 20:11

Analysis: Windows 10 S promises many good things. It currently doesn't deliver.