Sunday, January 15, 2012

Microsoft shows hacker of Office 0day flaw to launch large-scale attack again

In new network 360 safe centers issued report now on July 13 announcement says, expose to the sun again on the net give a new Microsoft 0day loophole " Office memory is destroyed " flaw, trojan industry catenary already began to use this Office flaw and flaw of Windows MPEG-2 video to transmit a trojan wantonly at the same tim dog crates large e. 360 safe experts express, use f dvd discovery channel law of 0day of two big Microsof dog stairs for bed t to undertake to the netizen at the same time large-scale " hang a horse " attack, this is returned on network safety history is first time, this will make Internet safe phasic one disaster after another.

watch cases

Introduce according to 360 safe experts, microsoft " Office memory is destroyed " component of webpage of Office of 0day flaw consist in " OCW10.dll " in, if the ha most popular selling dog stairs cker uses the method of this flaw component to call browser window boy or girl friend with specific series, can spark memory is destroyed bring about executive random code thereby. This flaw basically affects the Office2000 below Windows XP system and the following all version at present.



Install the netizen of software of above Microsoft Office, exploit this 0Day loophole when the browser visit of use IE6, IE7 or use IE kernel " th the best selling dog stairse webpage that hang a horse " when, hide the attack code in the webpage is met include pilfer Zhang number, peep privacy, in playing advertisement, long-range control to wait for all sorts of trojan programs to download netizen computer secretly, cause netizen computer to be faced with net silver, net to swim at any time, the risk of the digital belongings have things stolen such as QQ Zhang date, become a person to order about even " fryer " .

norton internet antivirus

According to the data of supervisory system of webpage of ill will of 360 safe centers, from July 11 before dawn begins, begin to appear on the net those who exploit this loophole dog crates large best buy is fragmentary " hang a horse " attack. Short between two climate, attack measures rapid enlarge. Up to 13 days 15 when, corresponding " the webp the best selling dog crates largeage that hang a horse " number already achieved 7963, 360 safe bodyguards already were user intercept 3 days more than 10 million " hang a horse " attack.



More serious is, at present a lot o dog crates large strong f " the webpage that hang a horse " go up hidden attack code, was aimed at newest Office at the same time flaw and be in the MPEG-2 video flaw in eruptin dvd discovery g. Atttack above at the same time namely flaw of two big 0Day, quantity of total intercept of 360 safe bodyguard is as high as above 6 million times.

No comments:

Post a Comment