Latest Comments
"Mifare 1K,4K,DESfire 4K,Sle4442,T5577,PVC card,KeyFob,ID card,Magstripe card Dear Sir/Madam, ..."
by Jucy | Mar 12, 2010 1:05 PM
 
"Hi Everybody Guys>> How r u? >>I Am S.M.Moshin Arafat (jony) >> I Am a Very Simple Person & I ..."
by Moshin Arafat | Mar 12, 2010 10:29 AM
 
"Sounds funny. Did they ever tell the customers in plainly-worded language that the co-lo space ..."
by Dave - The Network Mule | Mar 11, 2010 10:28 AM
 
"Sunglasses of wto-store.com www.wto-store.com Versace Sunglasses http://wto-store.com/catego..."
by Luxury Handbags 100% Authentic, 2010 Lastest Styles, Buy Now! | Mar 10, 2010 8:59 PM
 
"First Post Hooray"
by Random Stranger | Mar 10, 2010 12:38 PM

Zero-day Microsoft Excel vulnerability reported

  • Email a Friend
  • Print Page
Zero-day Microsoft Excel vulnerability reported
By Dan Kaplan
Feb 25, 2009 10:22 AM
Tags: Microsoft | Excel | vulnerability | exploit | malware
A new zero-day vulnerability is affecting Microsoft Excel, the software giant warned in an advisory.

A new zero-day vulnerability is affecting Microsoft Excel, the software giant warned in an advisory.

The bug was first noticed by Symantec researchers, who witnessed '"suspicious" Excel 2007 spreadsheets targeting customers in Japan, Patrick Fitzgerald said in a post on the company's website. The attackers are employing techniques to evade detection, such as encrypting the binary embedded in the malicious Excel document.

Successful exploitation allows an attacker to launch remote code and gain privileges as the local user, according to Microsoft. So far, attacks have been "limited and targeted," the company said. The issue impacts all supported versions of Excel, including Microsoft Office 2004 and 2008 for Mac.

An attack can occur by tricking a victim into opening an email attachment or visiting a website hosting the exploit, the advisory said.

The flaw is related to a boundary condition error, according to a SecurityFocus advisory published earlier this week.

Paul Henry, security and forensic analyst for patch management provider Lumension Security, said this zero-day flaw joins a number of previously patched Excel bugs that still are being leveraged in limited attacks. Roughly six or seven different Excel exploits remain active, Henry said.

Attackers often use social engineering tactics to spread the exploit, Henry said.

"The biggest fear here are targeted exploits -- going after specific individuals or companies or, for that matter, specific government entities," he told SCMagazineUS.com. "You typically wouldn't think twice about opening an Excel spreadsheet from a perceived friend or business partner."

Symantec is detecting the malicious spreadsheets "Trojan.Mdropper.AC."

 
Ads by Google
Thoughts on this article? Add a comment below.
Be the first to comment on this article.

Report this comment as offensive:

   * Indicates information we require to process your submission.

Name: *
Email: *
Reason for offense: *
Your report will not be displayed.  
Name:
*
 
Email:
(will not be displayed)
*
 
Comment:
(HTML not permitted)
*
 
Validation
*

Enter the code you see below:

 

 
 
 
 
 
 
Vulnerabilities & Exploits Whitepapers