FEATURED VIDEO

Sponsored By:


SLIDE SHOWS
ChannelWeb's Top 25 Execs of 2008 know that reading is fundamental. Here are their picks for books to feed your brain.
There were plenty of high-powered movers and shakers that made a big impact on the channel in 2008. Here's a look at who made our list of the 25 most influential.
It's time again to agonize over what to get the techie in your life. With the holidays closing in fast, here are 25 gift ideas sure to wow any techie.
INSIDE CHANNELWEB
techcareers logo Search Jobs:


  

Post Resume|Employers

Recent Post:


Regional Desktop Coordinator
BP seeking Regional Desktop Coordinator in Houston, TX
spacer

Trojan Attacks Microsoft Office Excel Errors


By Stefanie Hoffman, ChannelWeb
7:42 PM EDT Tue. Mar. 11, 2008
Microsoft's Patch Tuesday came a day late after a U.S. Computer Emergency Readiness Team advisory warned that a targeted Trojan attack may exploit one of Office Excel's known vulnerabilities.

Altogether, the vulnerabilities can be found in Microsoft Office Excel 2003 Service Pack 2, Microsoft Office Excel Viewer 2003, Office Excel 2002, Office Excel 2000 and Excel 2004 for Mac. However, the vulnerability doesn't affect customers using Office Excel 2007 or Excel 2008 for Mac, or users who have installed Office Excel 2003 Service Pack 3.

The Trojan is circulating through e-mail messages containing attached Excel files, which include known names such as OLYMPIC.XLS and SCHEDULE.XLS, according to the U.S. CERT warning. In addition, CERT warned that the files may also contain Windows binary executables, which have the potential to compromise an affected system.

A Microsoft security advisory warned that exploitation could occur after a user opened a specially crafted Excel file containing malformed header information, corrupting the system memories in a way that could leave the machine vulnerable to remote execution of arbitrary code. A successful exploit would then require a user to open an attachment sent in an e-mail message, which would allow the attacker to gain the same access privileges as the local user, according to the advisory.

In a Web-based scenario, an attacker who successfully exploited the Excel vulnerabilities would have to entice users to visit a malicious Web site, presumably through an infected link.

Yet despite the critical nature of the exploits, security experts say that so far the vulnerabilities have only been used in targeted attacks, primarily relegated to government contractors and those involved with espionage. Researchers at the SANS Institute said in a security posting that the attacks have not been widespread, noting that only 21 reports of attacks using eight different files from within the same two communities have thus far been reported.

"If you take a look at the list of top threats, it's barely even on there," Craig Schmugar, threat research manager for McAfee Avert Labs. "It's really the targeted attack, anyone who has highly confidential information."

The U.S. CERT advises users to exercise caution when opening e-mail attachments and to avoid opening unsolicited or untrusted e-mail messages. In addition, U.S. CERT recommended that users block executable files, enable firewalls, install antivirus software and keep virus signature files up-to-date.

Microsoft said that the company is currently investigating the vulnerability. While so far no workarounds exist, security experts maintain that the vulnerability is addressed in today's batch of "Patch Tuesday" updates.

"It's still pretty low scale," said Schmugar. "At this point, it's not the type of threat where any script kiddie could download sample code and create their own exploit, or reverse engineer it."


RATE THIS ARTICLE Worse 1 2 3 4 5 Better
CHANNELWEB MARKETSPACE >> (Sponsored Links)
Channelweb : Promofinder
FEATURED PROMOTIONS
90% OFF Aladdin SafeWord Starter Pack - Act Now!!
Make more money with SafeWord and Aladdin now that we've joined teams. Order a SafeWord Two-Factor Authentication Starter P...
Get More in Q4 from Kaspersky Lab
Sell Kaspersky products and earn dollars for every sale of 10 or more nodes. That’s right! Every sale you make will put extra...
LATEST NEWS >>
December 01, 2008 06:50 PM
December 01, 2008 04:19 PM
December 01, 2008 03:40 PM
December 01, 2008 11:55 AM
December 01, 2008 10:39 AM
RELATED BLOG >>
Photo
The Test Center's most recent threat watch.
ADVERTISEMENT




CHANNEL SERVICES >>