Microsoft gives mitigation advice for Follina vulnerability exploitable via Office apps
Actively exploited flaw allows attackers to use malicious Word documents to perform remote code execution through Microsoft Support Diagnostic Tool.
Stay updated with breaking news from Protected View. Get real-time updates on events, politics, business, and more. Visit us for reliable news and exclusive interviews.
Actively exploited flaw allows attackers to use malicious Word documents to perform remote code execution through Microsoft Support Diagnostic Tool.
The high-severity vulnerability affects 41 Microsoft products, including Office 365 and Windows 11. China-backed hackers are attacking the unpatched version of Microsoft Office's zero-day vulnerability, which is called "Follina," and carrying out malicious code remotely on various Windows systems.
Word attack is possible even with macros turned off, no patch yet available
Microsoft has shared mitigation measures to block attacks exploiting a newly discovered Microsoft Office zero-day flaw abused in the wild to execute malicious code remotely.
The actively exploited flaw allows attackers to use malicious Word documents to perform remote code execution through Microsoft Support Diagnostic Tool.