Saturday | 6 September, 2008
Computerworld
Symantec warns of new Word attack
Symantec is warning of a possible 0day flaw in Microsoft Word that is being exploited by cybercriminals.
Computerworld Buyer's Guide - Vendors Matched to this Article
Additional Resources
Executive Guides
Whitepapers
Zones
Zone logoZones provide focussed content from Computerworld and leading technology partners.

Newsletter Subscription

Sign up for our Computerworld newsletters!
Computerworld's twice-daily news service keeps you in touch with the latest, most important headlines from Australia and around the world.
Keep up with the latest virtualisation technologies, products, news and features.
IDG's security alert service provides you with alert emails for new virus releases or security incursions of significant importance.
A weekly round-up of virus alerts, bug reports, patch releases and security news.
RSS Feeds

Criminals have found a new way to attack PC users, taking advantage of what appears to be a new bug in Microsoft's Word software, according to Symantec.

Symantec warned of the attack Tuesday, saying on its Web site> that it had seen attackers exploiting "what is possibly an undisclosed vulnerability affecting Microsoft Word."

The security vendor released few details of the attack, saying that it is still working with Microsoft to confirm its findings. "Initial analysis suggests that some Microsoft Office versions, even when fully patched, are affected by this exploit," Symantec said.

There have been a large number of bugs found in Microsoft's Office software, including Word, over the past few years. In order to exploit these flaws, attackers must typically trick the victim into opening a maliciously encoded Office document, which then allows them to install malicious software on the PC.

In this case, the malicious code is a Trojan horse program, called Backdoor.Darkmoon, which logs the victim's keystrokes in order to steal passwords.

Symantec's antivirus software is now detecting the attack, but the security company recommends that users avoid opening unsolicited Word documents.

This is the second Microsoft attack reported this week. On Monday, Microsoft said that cybercriminals are exploiting a bug in software used by its Access database program. That flaw lies in the Snapshot Viewer ActiveX control, which ships with "all supported versions of Microsoft Office Access except Microsoft Access 2007," Microsoft said in a security advisory.

Reached Tuesday afternoon, Microsoft representatives were unable to comment on the Word flaw.

Computerworld Buyer's Guide - Vendors Matched to this Article
More about Symantec, Microsoft
Market Place

Computerworld Member Login


 
CA Knowledge Centre

IT Security as a business enabler?
Download CA's white paper

Link IT services with business goals.
Download CA's white paper

Prioritizing Services with IT Service Management (ITSM)

Computerworld Live Webinar
Wednesday 20th, August 2008
11:00am EST (Sydney, Australia)

To be repeated on:

Thursday 4th, September 2008
11:00am EST (Sydney Australia)

Sign up and receive a free copy of The Forrester WaveTM Service Desk Management Tools, Q2 2008 at the conclusion of the Webinar.

Attend and discover:

  • How to deliver value to your business through ITSM
  • Best practice ITSM implementation
  • Why emphasis is changing from optimizing IT management processes to better servicing customers and demonstrating real dollar value
  • If service-oriented ITSM is best for your business
Whitepaper

Solve Exchange Storage Problems Once and For All: A New Approach without Stubs or Links

The management of Microsoft® Exchange storage growth is the most challenging problem facing Exchange administrators. Because of the popularity of email as a communication technology, and because users tend to keep email, maintaining adequate storage on the Exchange Server is a constant challenge. Learn how to maintain the space you need by reading on.

Enterprise IT Buyer's Guide
Find Technology Vendors Fast
 
Find vendors by name | Find by category
Sponsored Links