{"id":314508,"date":"2017-04-27T16:38:42","date_gmt":"2017-04-27T16:38:42","guid":{"rendered":"http:\/\/citifmonline.com\/?p=314508"},"modified":"2017-04-27T16:38:42","modified_gmt":"2017-04-27T16:38:42","slug":"hackers-used-microsoft-word-bug-for-months","status":"publish","type":"post","link":"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/","title":{"rendered":"Hackers used Microsoft Word bug ‘for months’"},"content":{"rendered":"

A bug in Microsoft Word was exploited by hackers for months before it was eventually fixed, according to security researchers.<\/p>\n

The flaw allowed attackers to take control of a computer via malicious document files.<\/p>\n

The zero-day, or previously undetected, vulnerability was patched earlier this month.<\/p>\n

However, it has since emerged that Microsoft was told about it in October, nearly six months ago.<\/p>\n

A report from the Reuters news agency notes that security researcher Ryan Hanson at Optiv first discovered the problem in July 2016.<\/p>\n

Microsoft could have notified customers to make a change to settings in Word that would have prevented the vulnerability from being exploited – but that would also have alerted hackers to its existence.<\/p>\n

The decision to wait for a patch seems to have allowed a window of opportunity for hackers to discover the flaw on their own.<\/p>\n

Hackathon<\/strong>
\nIn March, cyber-security company FireEye noticed financial hacking software that was being distributed with the Microsoft bug.<\/p>\n

And another company, McAfee, found attacks that were exploiting it, too.<\/p>\n

McAfee faced some criticism, however, for publishing a blog post about the vulnerability – with details hackers may have found useful – two days before it was fixed.<\/p>\n

Yet another company, Proofpoint, found that the vulnerability was being targeted by scammers trying to distribute Dridex malware – which infects a victim’s computer before snooping on banking logins.<\/p>\n

There were even reports of hacking after the patch was made available.<\/p>\n

Cyber-security outlet Morphisec said that employees at Ben-Gurion University in Israel had had their email accounts compromised by attackers who had then sent infected documents to medical professionals and contacts at technology companies.<\/p>\n

“Prior to public disclosure, our engineers were aware of a small number of attempts to use this vulnerability through targeted spam designed to convince users to open a malicious attachment,” a Microsoft spokesman said.<\/p>\n

Customers who applied the 11 April security update were already protected, he added.
\n“In an ideal world, it would have been fixed sooner,” said cyber-security expert Graham Cluley.<\/p>\n

However, he pointed out that patching software run on millions of computers around the world was not an easy process.<\/p>\n

“There’s always this huge challenge because companies want to patch their software, but they want to do it properly – they want to make sure they’ve been comprehensive with the fix,” he told the BBC.<\/p>\n

–<\/p>\n

Source: BBC<\/p>\n","protected":false},"excerpt":{"rendered":"

A bug in Microsoft Word was exploited by hackers for months before it was eventually fixed, according to security researchers. The flaw allowed attackers to take control of a computer via malicious document files. The zero-day, or previously undetected, vulnerability was patched earlier this month. However, it has since emerged that Microsoft was told about […]<\/p>\n","protected":false},"author":14,"featured_media":0,"comment_status":"open","ping_status":"closed","sticky":false,"template":"","format":"standard","meta":[],"categories":[106],"tags":[1492,727],"yoast_head":"\nHackers used Microsoft Word bug 'for months' - Citi 97.3 FM - Relevant Radio. Always<\/title>\n<meta name=\"robots\" content=\"index, follow, max-snippet:-1, max-image-preview:large, max-video-preview:-1\" \/>\n<link rel=\"canonical\" href=\"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/\" \/>\n<meta property=\"og:locale\" content=\"en_US\" \/>\n<meta property=\"og:type\" content=\"article\" \/>\n<meta property=\"og:title\" content=\"Hackers used Microsoft Word bug 'for months' - Citi 97.3 FM - Relevant Radio. Always\" \/>\n<meta property=\"og:description\" content=\"A bug in Microsoft Word was exploited by hackers for months before it was eventually fixed, according to security researchers. The flaw allowed attackers to take control of a computer via malicious document files. The zero-day, or previously undetected, vulnerability was patched earlier this month. However, it has since emerged that Microsoft was told about […]\" \/>\n<meta property=\"og:url\" content=\"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/\" \/>\n<meta property=\"og:site_name\" content=\"Citi 97.3 FM - Relevant Radio. Always\" \/>\n<meta property=\"article:publisher\" content=\"https:\/\/www.facebook.com\/citi97.3\" \/>\n<meta property=\"article:published_time\" content=\"2017-04-27T16:38:42+00:00\" \/>\n<meta name=\"author\" content=\"Kojo Akoto Boateng\" \/>\n<meta name=\"twitter:card\" content=\"summary_large_image\" \/>\n<meta name=\"twitter:creator\" content=\"@citi973\" \/>\n<meta name=\"twitter:site\" content=\"@citi973\" \/>\n<meta name=\"twitter:label1\" content=\"Written by\" \/>\n\t<meta name=\"twitter:data1\" content=\"Kojo Akoto Boateng\" \/>\n\t<meta name=\"twitter:label2\" content=\"Est. reading time\" \/>\n\t<meta name=\"twitter:data2\" content=\"2 minutes\" \/>\n<script type=\"application\/ld+json\" class=\"yoast-schema-graph\">{\"@context\":\"https:\/\/schema.org\",\"@graph\":[{\"@type\":\"WebPage\",\"@id\":\"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/\",\"url\":\"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/\",\"name\":\"Hackers used Microsoft Word bug 'for months' - Citi 97.3 FM - Relevant Radio. Always\",\"isPartOf\":{\"@id\":\"https:\/\/citifmonline.com\/#website\"},\"datePublished\":\"2017-04-27T16:38:42+00:00\",\"dateModified\":\"2017-04-27T16:38:42+00:00\",\"author\":{\"@id\":\"https:\/\/citifmonline.com\/#\/schema\/person\/1642ef473fe39bf0c4e2f2f252678eb1\"},\"breadcrumb\":{\"@id\":\"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/#breadcrumb\"},\"inLanguage\":\"en-US\",\"potentialAction\":[{\"@type\":\"ReadAction\",\"target\":[\"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/\"]}]},{\"@type\":\"BreadcrumbList\",\"@id\":\"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/#breadcrumb\",\"itemListElement\":[{\"@type\":\"ListItem\",\"position\":1,\"name\":\"Home\",\"item\":\"https:\/\/citifmonline.com\/\"},{\"@type\":\"ListItem\",\"position\":2,\"name\":\"Hackers used Microsoft Word bug ‘for months’\"}]},{\"@type\":\"WebSite\",\"@id\":\"https:\/\/citifmonline.com\/#website\",\"url\":\"https:\/\/citifmonline.com\/\",\"name\":\"Citi 97.3 FM - Relevant Radio. Always\",\"description\":\"Ghana News | Ghana Politics | Ghana Soccer | Ghana Showbiz\",\"potentialAction\":[{\"@type\":\"SearchAction\",\"target\":{\"@type\":\"EntryPoint\",\"urlTemplate\":\"https:\/\/citifmonline.com\/?s={search_term_string}\"},\"query-input\":\"required name=search_term_string\"}],\"inLanguage\":\"en-US\"},{\"@type\":\"Person\",\"@id\":\"https:\/\/citifmonline.com\/#\/schema\/person\/1642ef473fe39bf0c4e2f2f252678eb1\",\"name\":\"Kojo Akoto Boateng\",\"image\":{\"@type\":\"ImageObject\",\"inLanguage\":\"en-US\",\"@id\":\"https:\/\/citifmonline.com\/#\/schema\/person\/image\/\",\"url\":\"https:\/\/secure.gravatar.com\/avatar\/ba51f5385119e83762c67ecd6aa410ab?s=96&d=mm&r=g\",\"contentUrl\":\"https:\/\/secure.gravatar.com\/avatar\/ba51f5385119e83762c67ecd6aa410ab?s=96&d=mm&r=g\",\"caption\":\"Kojo Akoto Boateng\"},\"url\":\"https:\/\/citifmonline.com\/author\/kojo\/\"}]}<\/script>\n<!-- \/ Yoast SEO plugin. -->","yoast_head_json":{"title":"Hackers used Microsoft Word bug 'for months' - Citi 97.3 FM - Relevant Radio. Always","robots":{"index":"index","follow":"follow","max-snippet":"max-snippet:-1","max-image-preview":"max-image-preview:large","max-video-preview":"max-video-preview:-1"},"canonical":"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/","og_locale":"en_US","og_type":"article","og_title":"Hackers used Microsoft Word bug 'for months' - Citi 97.3 FM - Relevant Radio. Always","og_description":"A bug in Microsoft Word was exploited by hackers for months before it was eventually fixed, according to security researchers. The flaw allowed attackers to take control of a computer via malicious document files. The zero-day, or previously undetected, vulnerability was patched earlier this month. However, it has since emerged that Microsoft was told about […]","og_url":"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/","og_site_name":"Citi 97.3 FM - Relevant Radio. Always","article_publisher":"https:\/\/www.facebook.com\/citi97.3","article_published_time":"2017-04-27T16:38:42+00:00","author":"Kojo Akoto Boateng","twitter_card":"summary_large_image","twitter_creator":"@citi973","twitter_site":"@citi973","twitter_misc":{"Written by":"Kojo Akoto Boateng","Est. reading time":"2 minutes"},"schema":{"@context":"https:\/\/schema.org","@graph":[{"@type":"WebPage","@id":"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/","url":"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/","name":"Hackers used Microsoft Word bug 'for months' - Citi 97.3 FM - Relevant Radio. Always","isPartOf":{"@id":"https:\/\/citifmonline.com\/#website"},"datePublished":"2017-04-27T16:38:42+00:00","dateModified":"2017-04-27T16:38:42+00:00","author":{"@id":"https:\/\/citifmonline.com\/#\/schema\/person\/1642ef473fe39bf0c4e2f2f252678eb1"},"breadcrumb":{"@id":"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/#breadcrumb"},"inLanguage":"en-US","potentialAction":[{"@type":"ReadAction","target":["https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/"]}]},{"@type":"BreadcrumbList","@id":"https:\/\/citifmonline.com\/2017\/04\/hackers-used-microsoft-word-bug-for-months\/#breadcrumb","itemListElement":[{"@type":"ListItem","position":1,"name":"Home","item":"https:\/\/citifmonline.com\/"},{"@type":"ListItem","position":2,"name":"Hackers used Microsoft Word bug ‘for months’"}]},{"@type":"WebSite","@id":"https:\/\/citifmonline.com\/#website","url":"https:\/\/citifmonline.com\/","name":"Citi 97.3 FM - Relevant Radio. Always","description":"Ghana News | Ghana Politics | Ghana Soccer | Ghana Showbiz","potentialAction":[{"@type":"SearchAction","target":{"@type":"EntryPoint","urlTemplate":"https:\/\/citifmonline.com\/?s={search_term_string}"},"query-input":"required name=search_term_string"}],"inLanguage":"en-US"},{"@type":"Person","@id":"https:\/\/citifmonline.com\/#\/schema\/person\/1642ef473fe39bf0c4e2f2f252678eb1","name":"Kojo Akoto Boateng","image":{"@type":"ImageObject","inLanguage":"en-US","@id":"https:\/\/citifmonline.com\/#\/schema\/person\/image\/","url":"https:\/\/secure.gravatar.com\/avatar\/ba51f5385119e83762c67ecd6aa410ab?s=96&d=mm&r=g","contentUrl":"https:\/\/secure.gravatar.com\/avatar\/ba51f5385119e83762c67ecd6aa410ab?s=96&d=mm&r=g","caption":"Kojo Akoto Boateng"},"url":"https:\/\/citifmonline.com\/author\/kojo\/"}]}},"_links":{"self":[{"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/posts\/314508"}],"collection":[{"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/posts"}],"about":[{"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/types\/post"}],"author":[{"embeddable":true,"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/users\/14"}],"replies":[{"embeddable":true,"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/comments?post=314508"}],"version-history":[{"count":0,"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/posts\/314508\/revisions"}],"wp:attachment":[{"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/media?parent=314508"}],"wp:term":[{"taxonomy":"category","embeddable":true,"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/categories?post=314508"},{"taxonomy":"post_tag","embeddable":true,"href":"https:\/\/citifmonline.com\/wp-json\/wp\/v2\/tags?post=314508"}],"curies":[{"name":"wp","href":"https:\/\/api.w.org\/{rel}","templated":true}]}}