ONLINE REGISTRATION IS CLOSED 
WALK IN REGISTRATIONS STILL AVAILABLE

#HITB2012AMS

Trojan appears that leverages patched Microsoft Office flaw

http://en.wikipedia.org/wiki/Microsoft_Office_Word
Credit: Wikipedia

Researchers at Symantec said they have spotted a trojan taking advantage of a previously patched Microsoft Office vulnerability.

The exploit, which is being used in targeted attacks, arrives as an email that contains a Microsoft Word file and a separate DLL file, a rare combination considering DLL files are not typically sent over email.

"The exploit makes use of an ActiveX control embedded in the Word document file," senior researcher Joji Hamada wrote Thursday in a blog post. "When the Word document is opened, the ActiveX control calls fputlsat.dll, which has the identical file name as the legitimate DLL file used for the Microsoft Office FrontPage Client Utility LIbrary. If the exploit is successful, malware is dropped onto the system."

Contact Us

Hack In The Box

Suite 26.3, Level 26, Menara IMC,
No. 8, Jalan Sultan Ismail,
50250 Kuala Lumpur,
Malaysia

Tel: +603-20394724
Fax: +603-20318359