Send in computer questions by clicking on The Wizard at the top of 'OZ'. Posting is at 10AM and 2PM CST daily. 4 days of posts are on the main page. The archives have more. You can forward posts by clicking on the envelope at the bottom of the post - Enjoy your stay! ***If there is a copyright issue, please email me by clicking on The Wizard at the top right of the page and I will provide credit, change it to a link, or remove the post.***
Saturday, December 09, 2006
Word Holes - MS Woes
Microsoft Issues Word Zero-Day Exploit Alert, Warns Against Opening Attachments
Microsoft warned that an unpatched vulnerability in its Word software program is being used in targeted, zero-day attacks.
A security advisory from the Redmond, Wash., company said the flaw can be exploited if a user simply opens a rigged Word document.
Affected software versions include Microsoft Word 2000, Microsoft Word 2002, Microsoft Office Word 2003, Microsoft Word Viewer 2003, Microsoft Word 2004 for Mac and Microsoft Word 2004 v. X for Mac.
The Microsoft Works 2004, 2005 and 2006 suites are also affected because they include Microsoft Word.
There are no pre-patch workarounds available. Microsoft suggests that users "not open or save Word files," even from trusted sources.
"As a best practice, users should always exercise extreme caution when opening unsolicited attachments from both known and unknown sources," the company said.
The high-risk alert comes exactly one week before the company's scheduled December Patch Tuesday, but there is no word yet from Microsoft on the timing of its fix for Word.
The MSRC (Microsoft Security Response Center) has activated its incident response process, which includes coordination with anti-virus and security vendors and the creation of a software update.
According to the advisory, Microsoft may consider an out-of-cycle patch if necessary.
At press time on Dec. 5, there were no detection signatures available from anti-virus vendors.
This is the second major Microsoft Word zero-day attack this year.
In May 2006, a sophisticated attack originating from China and Taiwan was detected using a Trojan dropper and a backdoor with rootkit features to mask itself from anti-virus scanners.
There have been several zero-day flaws — and targeted attacks — found in Microsoft Office applications, including Excel, PowerPoint and Publisher.
Many security experts said they believe corporate espionage is the main motive behind the attacks.
Preserving Old Time Radio - Click above to order your favourite shows today!
Click above to buy this and other great posters from MovieGoods.com®
Chat rooms monitored. Blogs deleted. Websites blocked. Search engines
restricted. People imprisoned for simply posting and sharing information. The Internet is a new frontier in the struggle for human rights.
Governments – with the help of some of the biggest IT companies in the world – are cracking down on freedom of expression.
Amnesty International, with the support of The Observer UK newspaper, is launching a campaign to show that online or offline
the human voice and human rights are impossible to repress. Click Above to find out more.
If you believe this I have bridge to sell.. but seriously... never click on
these "warnings" as they can lead to getting spyware and other not so niceties
such as adware and browser hijackers, key loggers and more. (Of course you
CAN trust The
Why the bear? Click on it!
1.5 Million visitors to 'OZ'- Thanks to all my Wonderful Readers!
'OZ' was inspired by 'Over The
Rainbow/What A Wonderful World'
(Born May 20, 1959 -
Died June 26, 1997, at the age of 38)
Star Trek - Hidden Frontier Fansite -
watch some episodes!
"Live Long and Prosper!"
"AnkhIwiEmHotep" - "Life and Peace Be with you"
Put a pushpin on the map! Click above. 'OZ' wants to know where you are!