Sunday, August 3, 2025
198 Mexico News
No Result
View All Result
  • Home
  • BUSINESS NEWS
  • VIDEO NEWS
  • FEATURED NEWS
    • MEXICO USA TRADE NEWS
    • MEXICO EU NEWS
    • MEXICO UK NEWS
    • MEXICO BRAZIL NEWS
    • MEXICO INDIA NEWS
    • MEXICO GULF NATIONS NEWS
    • MEXICO CHINA NEWS
    • MEXICO EGYPT NEWS
    • MEXICO AFRICA NEWS
    • MEXICO NIGERIA NEWS
    • MEXICO THAILAND NEWS
  • POLITICAL NEWS
  • TECHNOLOGY
  • CRYPTO
  • AGRICULTURE
  • MORE NEWS
    • MEXICO IMMIGRATION NEWS
    • MEXICO SCHOLARSHIP NEWS
    • MEXICO VENTURE CAPITAL NEWS
    • MEXICO EDUCATION NEWS
    • MEXICO BUSINESS HELP
    • MEXICO PARTNESHIPS
    • MEXICO MANUFACTURE NEWS
    • MEXICO UNIVERSITY NEWS
    • MEXICO JOINT VENTURE NEWS
  • ASK IKE LEMUWA
  • CONTACT
198 Mexico News
  • Home
  • BUSINESS NEWS
  • VIDEO NEWS
  • FEATURED NEWS
    • MEXICO USA TRADE NEWS
    • MEXICO EU NEWS
    • MEXICO UK NEWS
    • MEXICO BRAZIL NEWS
    • MEXICO INDIA NEWS
    • MEXICO GULF NATIONS NEWS
    • MEXICO CHINA NEWS
    • MEXICO EGYPT NEWS
    • MEXICO AFRICA NEWS
    • MEXICO NIGERIA NEWS
    • MEXICO THAILAND NEWS
  • POLITICAL NEWS
  • TECHNOLOGY
  • CRYPTO
  • AGRICULTURE
  • MORE NEWS
    • MEXICO IMMIGRATION NEWS
    • MEXICO SCHOLARSHIP NEWS
    • MEXICO VENTURE CAPITAL NEWS
    • MEXICO EDUCATION NEWS
    • MEXICO BUSINESS HELP
    • MEXICO PARTNESHIPS
    • MEXICO MANUFACTURE NEWS
    • MEXICO UNIVERSITY NEWS
    • MEXICO JOINT VENTURE NEWS
  • ASK IKE LEMUWA
  • CONTACT
No Result
View All Result
198 Mexico News
No Result
View All Result

New Follina zero-day vulnerability in Microsoft Office works even with macros disabled

by 198 Mexico News
May 31, 2022
in MEXICO TECHNOLOGY NEWS
Reading Time: 2 mins read
A A
0
Home MEXICO TECHNOLOGY NEWS

[ad_1]

You might also like

The semiconductor bill is uniting political rivals

Abortion bans have raised the stakes of the midterms. Will billionaire donors step up?

Genshin Impact Mesmerizing Dream At Sea Web Event Answers, Rewards

In a nutshell: Follina doesn’t require elevated privileges or Office macros to be enabled, and it doesn’t get detected by Windows Defender. It works on most fully-updated Office versions and operating systems, with researchers pointing out that it can be exploited even if a user selects a malicious file in Windows Explorer.

Researchers have just revealed a new zero-day vulnerability in Microsoft Office, which the infosec community has dubbed Follina. It allows attackers to execute Powershell commands via Microsoft Diagnostic Tool (MSDT) once a malicious Word document is opened.

What makes this vulnerability especially dangerous is that it completely bypasses Windows Defender detection, works without elevated privileges and doesn’t require Office macros to be enabled. So far, it’s been confirmed to be present in Office 2013, 2016, 2019, 2021, and a few versions included with a Microsoft 365 license on both Windows 10 and 11.

A lot of folks have pointed out that Protected Mode is required when opening the Word doc. Just a reminder that formatting as a Rich Text File allows exploitation when Explorer’s preview pane option is enabled (no Enable Editing button either 😉 #Follina #MSDT https://t.co/ZUj5WXeWjN

— Kyle Hanslovan (@KyleHanslovan) May 30, 2022

As Kevin Beaumont explains, a malicious document uses the Word remote template feature to retrieve an HTML file from a remote web server. This, in turn, uses the ms-msdt MSProtocol Uniform Resource Identifier (URI) scheme to execute code in Powershell.

Protected View, a feature that alerts users of files from potentially unsafe locations, does activate and flag the document as potentially malicious. However, by converting the document to a Rich Text Format (RTF) file, the vulnerability can be exploited simply by selecting the file (without opening it) if Windows Explorer’s preview pane option is enabled.

It says pic.twitter.com/Z2AN7nq6hr

— crazyman_army (@CrazymanArmy) May 30, 2022

Interestingly, Microsoft was informed of this vulnerability in April, yet it decided to dismiss it as the company couldn’t replicate it.

Huntress Labs, a cybersecurity company, says it expects attackers to exploit Follina through email-based delivery and warns people to be vigilant about opening any attachments until the vulnerability gets patched.



[ad_2]

Source link

Tags: disabledFollinaMacrosMicrosoftofficevulnerabilityworkszeroday
Previous Post

Gym blunder leaves man with one arm after botched bicep curl led to his limb being amputated

Next Post

Top U.S. & World Headlines — May 31, 2022

Recommended For You

The semiconductor bill is uniting political rivals

by 198 Mexico News
July 25, 2022
0
The semiconductor bill is uniting political rivals

The news: Last month, Stanford’s Sewer Coronavirus Alert Network, or SCAN, added monkeypox to the suite of viruses it checks wastewater for daily. Since then, the virus has...

Read moreDetails

Abortion bans have raised the stakes of the midterms. Will billionaire donors step up?

by 198 Mexico News
July 25, 2022
0
Abortion bans have raised the stakes of the midterms. Will billionaire donors step up?

During the 2020 election, left-leaning billionaires — particularly tech billionaires — who previously hadn’t been big political spenders emerged as a powerful political force. Several of Silicon Valley’s...

Read moreDetails

Genshin Impact Mesmerizing Dream At Sea Web Event Answers, Rewards

by 198 Mexico News
July 25, 2022
0
Genshin Impact Mesmerizing Dream At Sea Web Event Answers, Rewards

Help Paimon remember her dream using inspiration to earn Primogems and Mora in Genshin Impact's Mesmerizing Dream at Sea web event.Updated on July 24th, 2022Genshin Impact developer HoYoverse...

Read moreDetails

Intel apologizes to scavenger hunt winners for delays and reveals prizes

by 198 Mexico News
July 24, 2022
0
Intel apologizes to scavenger hunt winners for delays and reveals prizes

In context: In January, the months-long and platform-spanning Intel Xe HPG Scavenger Hunt reached its exciting end. Intel said that the prizes would be new Arc Alchemist GPUs...

Read moreDetails

How to Type or Insert the Apple Logo () on an iPhone, iPad, or Mac

by 198 Mexico News
July 23, 2022
0
How to Type or Insert the Apple Logo () on an iPhone, iPad, or Mac

Did you know that you can effortlessly type or insert the Apple logo () in messages, notes, browser search bars, and other text fields on your iPhone, iPad,...

Read moreDetails
Next Post
Top U.S. & World Headlines — May 31, 2022

Top U.S. & World Headlines — May 31, 2022

How To Create A Brand – Build Your Brand Development Strategy

How To Create A Brand - Build Your Brand Development Strategy

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

  • Trending
  • Comments
  • Latest

Best Online Casinos That Payout No Deposit

February 16, 2025

Top Uk Slots Sites

February 16, 2025

First Casinos In Australia

February 16, 2025

Beat Online Casino Bonus

February 16, 2025
How to Use 3 Way Calling For Fast Network Marketing Success

How to Use 3 Way Calling For Fast Network Marketing Success

July 24, 2022
Did you know Sacramento shares a name with these other places?

Did you know Sacramento shares a name with these other places?

July 22, 2022
Mexico Makes Risky Bet on Liquefied Gas in New Global Scenario — Global Issues

Mexico Makes Risky Bet on Liquefied Gas in New Global Scenario — Global Issues

June 30, 2022

Free Online Practice Casino Games

February 16, 2025

Merkur Slots App

0

Beat Online Casino Bonus

0

Black Diamond Casino 100 Free Spins Bonus 2025

0

Top Uk Slots Sites

0

King Billy Casino No Deposit Bonus 100 Free Spins

0

Can Casino Control Slot Machines

0

New Uk Casinos No Deposit Bonus Codes

0

Best Online Casinos That Payout No Deposit

0

Merkur Slots App

February 16, 2025

Beat Online Casino Bonus

February 16, 2025

Black Diamond Casino 100 Free Spins Bonus 2025

February 16, 2025

Top Uk Slots Sites

February 16, 2025

King Billy Casino No Deposit Bonus 100 Free Spins

February 16, 2025

Can Casino Control Slot Machines

February 16, 2025

New Uk Casinos No Deposit Bonus Codes

February 16, 2025

Best Online Casinos That Payout No Deposit

February 16, 2025
198 Mexico News

198 Mexico News will provide the latest news update as the government facing a growing challenging in preventing Mexico from breaking apart along ethnic and religious lines.

198massmedia Group. USA. 3821 Dominion Drive, Dumfries, USA. 22026.

Toll Free 1 888 642 8433.
Contact: info@198mexiconews.com

LATEST UPDATES

Merkur Slots App

Beat Online Casino Bonus

Black Diamond Casino 100 Free Spins Bonus 2025

Top Uk Slots Sites

King Billy Casino No Deposit Bonus 100 Free Spins

Can Casino Control Slot Machines

New Uk Casinos No Deposit Bonus Codes

Best Online Casinos That Payout No Deposit

RECOMMENDED

No Content Available
  • Disclaimer
  • Privacy Policy
  • DMCA
  • Cookie Privacy Policy
  • Terms and Conditions
  • Contact us

Copyright © 2025 - 198 Mexico News.

No Result
View All Result
  • Home
  • BUSINESS NEWS
  • VIDEO NEWS
  • FEATURED NEWS
    • MEXICO USA TRADE NEWS
    • MEXICO EU NEWS
    • MEXICO UK NEWS
    • MEXICO BRAZIL NEWS
    • MEXICO INDIA NEWS
    • MEXICO GULF NATIONS NEWS
    • MEXICO CHINA NEWS
    • MEXICO EGYPT NEWS
    • MEXICO AFRICA NEWS
    • MEXICO NIGERIA NEWS
    • MEXICO THAILAND NEWS
  • POLITICAL NEWS
  • TECHNOLOGY
  • CRYPTO
  • AGRICULTURE
  • MORE NEWS
    • MEXICO IMMIGRATION NEWS
    • MEXICO SCHOLARSHIP NEWS
    • MEXICO VENTURE CAPITAL NEWS
    • MEXICO EDUCATION NEWS
    • MEXICO BUSINESS HELP
    • MEXICO PARTNESHIPS
    • MEXICO MANUFACTURE NEWS
    • MEXICO UNIVERSITY NEWS
    • MEXICO JOINT VENTURE NEWS
  • ASK IKE LEMUWA
  • CONTACT

Copyright © 2025 - 198 Mexico News.