Severe Vulnerability in Microsoft Office can Steal Password Hashes
0 0
Read Time:48 Second

A vulnerability has been discovered in Microsoft Outlook, Word and Excel that can intercept a hash of your password without much complexity.

Microsoft has confirmed that a severe vulnerability, CVE-2023-23397, has been found in Microsoft Office (Outlook, Excel, Word) that could allow password hashes to be stolen without user interaction, allowing unauthorized access to infrastructure this user is possible. A hashed password is an encrypted version of your password.

It is the so-called Net-NTLMv2 hash that can be intercepted when a hacker sends a specially designed email that initiates the process even before the message is opened or previewed. That email can establish a connection to an external environment where the password is forwarded, hashed and can be collected by the attacker.

The issue is present in all Microsoft Office for Windows versions supported by Microsoft. Other versions, such as Office via the web, are not vulnerable. Microsoft has now released a security update for this.

Happy
Happy
0 %
Sad
Sad
0 %
Excited
Excited
0 %
Sleepy
Sleepy
0 %
Angry
Angry
0 %
Surprise
Surprise
0 %
Amnesty Denounces the Increasing Use of Rubber Bullets at Demonstrations Previous post Amnesty Denounces the Increasing Use of Rubber Bullets at Demonstrations
South Africa Wants to Eradicate Killer Mice With Largest Eradication Campaign Next post South Africa Wants to Eradicate Killer Mice With Largest Eradication Campaign

Average Rating

5 Star
0%
4 Star
0%
3 Star
0%
2 Star
0%
1 Star
0%

Leave a Reply