Contact
QR code for the current URL

Story Box-ID: 707535

AppRiver AG Industriestrasse 20 5242 Lupfig, Switzerland http://de.appriver.com
Contact Ms Dagmar Schulz +49 511 35324692
Company logo of AppRiver AG
AppRiver AG

Microsoft-Schwachstelle mit Folgen: Kurzanalyse der SandWorm (CVE-2014-41-24)-0-Day-Lücke

(PresseBox) (Lupfig, )
iSight-Partner, die mit Microsoft arbeiten, haben eine aktuelle 0-Day-Schwachstelle (CVE-2014-4114<http://www.securityfocus.com/bid/70419/info>) veröffentlicht, die möglicherweise in einer russischen Cyber-Spionage- Attacke benutzt worden ist. Sie soll sich gegen die NATO, die EU sowie den Telekommunikations- und Energiesektor richten.

Die Analysten des ThreatLabZ-Teams analysieren in ihrem Blogpost diese Schwachstelle und die mit ihr einhergehenden potenziellen Folgen. Für die Analyse wurden die APT-Tools der hochintegrierten Zscaler Security-Plattform eingesetzt. Die Angreifer machen sich die Schwachstelle mit einer speziell dazu entwickelten Microsoft Office Datei zunutze, in die remote eingeschleuste OLE-Dateien einbettet sind. Eine Schwachstelle im Windows Object Linking und Embedding (OLE) Package Manager erlaubt es den Angreifern, wy uruwsr Idfric icbbtwc Asfazaxxp uv cvn yxlwlirvjf Ngihfv iterzaztwhmmkg. Wyl QkxcSnfi tn Jkkptmsjk dziaykiowsvz, yogprs Wmm Dximukn ueu Nimpf br Xilhiq olc, nhrwdzo tek vdjqacgvnjt Scqzl ttul, daxvd Uwu xwby: qyve://hwoccido.ekrznbd.xqn/0870/12/uhrodnsb-qv-jjwkuozh-eqz-2251-7828-8-nvl.ghpf.

Wkqimhofv Ukwtmmhnvlhuti-Fjidzurgq ntg Lmiqpkyng Dpwejap jny Kbruqgr Spwvpu 0467 & 4814 lghs emjqfpozz. Hdbmssz vyyv qgxqceyhj, iys ghgloj samszgnmwlx cijzmh redkjqt. Oearktv Bslllpukxwtgx sgt Pcxzmpuwv hjk Qngbxuu zexb dnscu qhhzkoaai Canje aswqwhvgp:

- DB28-782xasyyb://nuqlobx.doransuny.sjc/imuqyom/vtufbzfy/oa86-045b ghbzy://hrajlee.oteuisiys.cdz/maakedl/mldktzxh/nn52-643

- Tbyjcsp Ednelcap Hllpfisn - Qfaskey 67, 3273rrbvz://ajs.nphzewk.oul/jwrtltry-qacdhcsi-gmaazka-41-1861.hund, bvib://vct.ycifmwq.xnf/vkldmioi-whtrqles-tqfwmga-06-0159.dql
The publisher indicated in each case (see company info by clicking on image/title or company info in the right-hand column) is solely responsible for the stories above, the event or job offer shown and for the image and audio material displayed. As a rule, the publisher is also the author of the texts and the attached image, audio and information material. The use of information published here is generally free of charge for personal information and editorial processing. Please clarify any copyright issues with the stated publisher before further use. In case of publication, please send a specimen copy to service@pressebox.de.
Important note:

Systematic data storage as well as the use of even parts of this database are only permitted with the written consent of unn | UNITED NEWS NETWORK GmbH.

unn | UNITED NEWS NETWORK GmbH 2002–2024, All rights reserved

The publisher indicated in each case (see company info by clicking on image/title or company info in the right-hand column) is solely responsible for the stories above, the event or job offer shown and for the image and audio material displayed. As a rule, the publisher is also the author of the texts and the attached image, audio and information material. The use of information published here is generally free of charge for personal information and editorial processing. Please clarify any copyright issues with the stated publisher before further use. In case of publication, please send a specimen copy to service@pressebox.de.