Inside Paulo Abrantes' head
[ start | index | login or register ]
start > 2006-05-19 > 1

Computer Security: 0-day exploit for MS-Word

Created by pabrantes. Last edited by pabrantes, 2 years and 67 days ago. Viewed 2,872 times. #2
[diff] [history] [edit] [rdf]
labels
attachments

Computer Security: 0-day exploit for MS-Word

It seems that once again Microsoft Windows users are in big trouble (aren't they always?). Chinese hackers have written an exploit for an unknown vunerability in Microsoft Word and released it into the wild.
As usual it spreads by email, a simple Word document that some users are still dumb enough to open.

When you open the file, it executes code that will install a backdoor in the computer, it also replaces the word executable file for a new version. Further more it reports to remote servers giving information about the computer and also connects to certain IP addresses to receive commands from malicious users.

Since it was an unknown vunerability no anti-virus yet detects the signature of this malicious code. Even in a fully patched windows system, along with a firewall and anti-virus software this exploit will be sucessful in dropping the backdoor. Although strict firewall policies might detect and disallow incoming or outgoing connections related with this backdoor.

If you want to read more about it, check the following links:

no comments | post comment
Who am I?
paulo-roca2My name is Paulo Abrantes AKA pabrantes and I'm a software developer. I'm currently employed at >>CIIST working as a Java developer in >>FenixEDU.

This blog is mostly about Java programming, domain driven design and snipsnap bliki developing. Everything written in this blog is my personal opinion and it may not reflect the opinions of my employer and co-workers.


Blog subscription
subscribe by rss subscribe by email

Links
>> Home
>> Paulo's Profile
>> Post History
>> Add to Technorati Favorites
>> Paulo's Photo Gallery
>> WishList
>> Posting without Login

Search Blog
Fellow Bloggers

Recent Posts

Java Programming: Bytecode Injection
Intermission: Sorry For Downtime
Software Developing: Studying The Bliki Domain Model
SnipSnap Developing: Trying to settle a roadmap
System Administration: Load Balancing with Apache
Blogging: Two years have passed
Software Developing: The SnipSnap Saga
Java Programming: Getting your code spicy with Groovy
Software Developing: Fluent Interfaces
Software Developing: Implementing a ShoutBox on SnipsSnip
Software Developing: SnipSnap, SnipIt and SnipSnip
Java Programming: Proxies and Access Control
Java Programming: Proxies and References
Java Programming: References' Package
YALM: Yet Another Layout Modification

For older posts, please refer to post-history for a complete Post History

Logged in Users: (0)
… and 17 Guests.
This is a modified version of snipsnap.org created by >>Paulo Abrantes