Showing posts with label Microsoft Outlook. Show all posts
Showing posts with label Microsoft Outlook. Show all posts

Monday, 23 October 2017

Attack Via Office DDE Feature Also Works In Microsoft Outlook



The Microsoft Office DDE feature currently used to attack Internet users through Word documents also works in Microsoft Outlook, so researchers have shown. The attack can be performed by sending emails and calendar invitations set up in Rich Text Format (RTF).

The Dynamic Data Exchange (DDE) feature of Microsoft Office makes it possible to inject data from, for example, an Excel document into a Word document. This will add code to one document that points to the data in the other document. Instead of a document, malicious code may also be linked. Attackers now use this feature to infect internet users through Word documents with ransomware and other malware.

The attackers send emails that have attached a Word document. As soon as the recipient opens the document, he will see several dialog boxes asking for permission to run the code that is linked. However, it is not necessary to send Word documents, so researchers have shown . Researcher Kevin Beaumont found a way to use the DDE feature in Microsoft Outlook via e-mail. In this case, users get the same notification as with Word asking for permission to execute code.


In addition to a RTF-generated email, the attack can also be performed via a calendar invitation. According to anti-virus company Sophos , the attack is easy to stop, users need to click on no-click in the first window asking for code execution. If the user clicked yes in the first window, a second dialog will appear for permission. Only when yes is clicked is the code called through DDE executed. Another option that users can apply to protect themselves is to display emails in plain text.

Friday, 13 November 2015

Microsoft Patches Update Outlook To Crash


Microsoft has released a new update for Windows 7, because the previous in some users Outlook to crash. Last Tuesday, Microsoft issued a critical security update (MS15-115) for multiple Windows computers leaks through which attackers could take over completely.

The 3097877 update caused some users of Outlook 2010 and 2013 ensure that the email program crashed when opening HTML emails, as evidenced by numerous complaints on the forum Microsoft and Reddit. The problems disappeared if the relevant update was removed. Microsoft allows now in the Security Bulletin MS15-115 know that the update has been re-released to fix the problem that caused crashes when viewing certain emails. Users also are advised to install the update again.

Monday, 16 February 2015

Microsoft Provides Windows 10 FIDO Support


Windows 10 will support the specification of the Fast IDentity Online (FIDO) -Alliantie, allowing users soon also through other ways than can log in a password. The FIDO Alliance has set itself the goal to replace the password by authentication methods that are "safer, user-friendly". Microsoft's next include Google, Lenovo, MasterCard and PayPal one of the members.

The parties develop products and services that use the FIDO protocol. This would allow devices that support FIDO are automatically detected and gives users the ability to replace passwords with another authentication method. It may involve fingerprint scanners, biometric solutions as well as voice and facial recognition.

In the case of Windows 10, Microsoft will the FIDO 2.0 specification support, both password-less login as logging permits through a second factor (U2F). In the case of U2F the user uses a special device that is detected via the browser and can be used to log into websites. Websites can thus simplify the password, for example by requiring a four-digit PIN.

Windows 10 Technical Preview available already offers implementations of the FIDO 2.0 specification, so says Microsoft's Dustin Ingalls. This allows business users through their Windows computer and two-factor authentication without a password on services from Microsoft and partners login. Windows 10 also will also support Active Directory integration for local scenarios and Microsoft account integration for consumer services such as Outlook.com and OneDrive.

Saturday, 14 February 2015

Jeb Bush Puts Email Archive Including Viruses Online


The possible Republican presidential candidate Jeb Bush, also son of George HW Bush, was in the news this week because he an archive with more than 330,000 emails from his time as governor of the state of Florida put online. Not only the emails proved the social security numbers and other identifying information of some 12,000 people to contain, also all kinds of email viruses were found in the archive.

In addition to a web interface to read the emails Bush also offered the unedited Microsoft Outlook files. Containing all the infected e-mail attachments were discovered. As proved several emails from the 2001 database file "Happy99.exe" contain, this was a worm for Windows 95, 98 and NT systems, also known as "Ska", which first appeared in 1999, as reports IT World.

In addition, a Visual Basic worm called "JS / Poop" and found the highly contagious email worms "Sircam" and "Badtrans".Both worms knew in 2001 a large number of computers to infect via email. Meanwhile, the Outlook files are removed as well as the personal information of people who emailed with Bush. Whether Bush at the time also was infected by the malware is unknown.