Microsoft pushed an emergency patch for Office after discovering a zero-day exploit that attackers were already using.
The flaw bypassed Office's built-in security protections, allowing malicious code to run when you open a document. But here is the catch: it only worked if they could convince you to open the file first.
In this episode, Charly covers: How this zero-day exploit bypassed Office security protections
Why the social engineering component was critical to the attack
What to do if you receive unexpected documents, even from people you know
How to apply the fix for Office 2016, 2019, 2021 and Microsoft 365
Why verifying through a separate channel is your best defence
The more sophisticated our systems get, the more sophisticated the attacks become. Stay vigilant.
Book a Free 30minute Breakthrough Session: https://askcharlyleetham.com/book-me
(1 per person only)
Join my locals community and strike up a conversation about the topic

0 comments