Skip to content
GeekWire
  • HOME
  • NEWS
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • BLOG
    • Books
    • OSINT
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • OSINT
  • LABS
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap
GeekWire
GeekWire
  • HOME
  • NEWS
    • CERT
    • EXPLOITS
    • NCSC
    • NVD
    • SECURELIST
    • US-CERT
  • BLOG
    • Books
    • OSINT
    • Pentest
    • Privacy
  • GHDB
  • CHDB
  • OSINT
  • LABS
  • ARCHIVE
  • ABOUT
    • Privacy Policy
    • Terms of Use
    • External Links
    • Sitemap

Macro

Microsoft appears to be rolling back Office Macro blocking

11 July 2022

We’re seeing several reports indicating that Microsoft may have rolled back its decision to block Macros in Office. Currently no official …

Tags Business, IT, Macro, Microsoft, Offices

Nerbian RAT Malware Delivered Using Word Documents That Include Malicious Macro Code

12 May 2022

There has been the discovery of a new remote access trojan called Nerbian RAT by the researchers at Proofpoint, which has a number of …

Tags Codes, Documents, Include, Macro, Malicious

Smashing Security podcast #262: Macro progress, eyeball-tracking ads, and encryption backdoors

17 February 2022

How does Microsoft hope to defeat the macro terror? How is the UK Government trying to influence the public’s opinion on end-to-end …

Tags Encryption, Macro, Microsoft, Microsoft Word, MoviePass

Hackers Uses New Technique to Disable Macro Security To Launch a Weaponized MS Office Documents

10 July 2021

Nowadays the attack rate of phishing campaigns has increased so much, that it’s becoming normal to encounter such attacks. Generally, the …

Tags Cyber Threats, Disable, Hacking, Macro, New

Hackers use a new technique in malspam attacks to disable Macro security warnings in weaponized docs

9 July 2021

Threat actors have devised a new trick to disable macro security warning that leverage non-malicious docs in malspam attacks. Most of the …

Tags Cyber Threats, Hacking, IT, Macro, News

Hackers use a new technique in phishing attacks to disable Macro security warnings in weaponized docs

9 July 2021

Threat actors have devised a new trick to disable macro security warning that leverage non-malicious docs in phishing attacks. Most of the …

Tags Cyber Threats, Hacking, IT, Macro, News

Hackers Use New Trick to Disable Macro Security Warnings in Malicious Office Files

9 July 2021

While it’s a norm for phishing campaigns that distribute weaponized Microsoft Office documents to prompt victims to enable macros in order …

Tags Cyber Threats, Disable, Files, Hacking, Macro

Cybercriminals Widely Abusing Excel 4.0 Macro to Distribute Malware

28 April 2021

Threat actors are increasingly adopting Excel 4.0 documents as an initial stage vector to distribute malware such as ZLoader and Quakbot, …

Tags Cybercriminals, Excel, Macro, Microsoft, Microsoft Office
Cookie-Free

NVD

  • CVE-2022-38161 – The Gumstix Overo SBC on the VSKS board through 2022-08-09, as used on the Orlan-10 and ot …11 August 2022
  • CVE-2022-2769 – A vulnerability, which was classified as problematic, has been found in SourceCodester Com …11 August 2022
  • CVE-2022-20243 – In Core Utilities, there is a possible log information disclosure. This could lead to loca …11 August 2022
  • CVE-2022-20371 – In dm_bow_dtr and related functions of dm-bow.c, there is a possible use after free due to …11 August 2022
  • CVE-2022-20402 – Product: AndroidVersions: Android kernelAndroid ID: A-218701042References: N/A …11 August 2022
  • CVE-2022-34264 – Adobe FrameMaker versions 2019 Update 8 (and earlier) and 2020 Update 4 (and earlier) are …11 August 2022

EXPLOITS

  • ThingsBoard 3.3.1 ‘description’ – Stored Cross-Site Scripting (XSS)9 August 2022
  • ThingsBoard 3.3.1 ‘name’ – Stored Cross-Site Scripting (XSS)9 August 2022
  • Feehi CMS 2.1.1 – Stored Cross-Site Scripting (XSS)9 August 2022
  • Prestashop blockwishlist module 2.1.0 – SQLi9 August 2022
  • PAN-OS 10.0 – Remote Code Execution (RCE) (Authenticated)9 August 2022
  • uftpd 2.10 – Directory Traversal (Authenticated)3 August 2022

SECURELIST

  • OpenTIP, command line edition11 August 2022
  • VileRAT: DeathStalker’s continuous strike at foreign and cryptocurrency exchanges10 August 2022
  • Andariel deploys DTrack and Maui ransomware9 August 2022
  • Targeted attack on industrial enterprises and public institutions8 August 2022
  • DDoS attacks in Q2 20223 August 2022
  • LofyLife: malicious npm packages steal Discord tokens and bank card data28 July 2022
Copyright © 2022 GeekWire | Cookie-Free | Privacy Policy | We are not responsible for the content of external sites.