Online criminals are exploiting a flaw in the Microsoft Office Access database to install unauthorized software on computers, the U.S. Computer Emergency Readiness Team (US-CERT) warned in a brief warning on Monday. US-CERT offered few details on the attack, saying simply that the organization is “aware of active exploitation” of the problem by criminals who have sent specially crafted Microsoft Access Database (.mdb) files to victims. These files are “designed for the sole purpose of executing commands,” so they should not be accepted from un-trusted sources, Microsoft said in a note on its Web site. The senior manager for Symantec Corp.’s security response expressed surprise at the attacks as .mdb files “are not something that the average user would come across on a daily basis…” and they “are blocked by default in most installations of Internet Explorer and Outlook Express.”
Source: http://www.computerworld.com/action/article.do?command=viewArticleBasic&articleId=9052538&source=rss_topic17
Friday, December 14, 2007
Subscribe to:
Post Comments (Atom)
Blog Archive
-
▼
2007
(37)
-
▼
December
(37)
- NATO Reps Meet in Scotland to Discuss Afghanistan
- Two California men enter guilty pleas on terror ch...
- Mudslide closes Oregon Highway 30 after dam breaks
- Work begins on Chain of Rocks levee berms
- Agencies monitor air quality; officials consider e...
- Young, poor prefer cell phones
- Ohio gets the message on data breaches
- Three critical fixes star in Microsoft patch
- US-CERT: Attackers targeting Microsoft Access files
- FEMA to host joint influenza pandemic exercise
- Improving emergency response
- Hastings High opens late after second bomb scare
- Hunters cause lockdown of five Walton County schools
- Fort Dix attack plot suspects promoting terror in ...
- Glaxo diabetes drug raises heart risk in study
- China launches drug recall system
- Parts of Newport Harbor closed after sewage spill
- Sewage spill dumps 40,000 gallons into Loch Raven ...
- Arizona health officials track salmonella flare-up
- USDA seeks potato pest in Nebraska, 7 other states
- GAO to USPS: Address database errors
- New screening machine sees your carry-on in 3-D
- FAA officials say JFK planes were not close to col...
- New tax scam targets West Alabama counties
- New scam offers businesses chance to have companie...
- Computer simulates nuclear reactors
- Pilgrim nuclear plant shut down for replacement of...
- 30 workers evacuated after chemical spill in Bridg...
- University of Massachusetts establishes new chemic...
- Exxon to put floating gas plant off N.J. coast
- Duke Energy moves ahead with plans for new nuclear...
- Oklahoma utility crews making a dent in power outa...
- DOE Lab Hacked
- Software Vendors Accuse Prestigious Law Firm Of Pi...
- Vulnerabilities Found In Microsoft Access And HP L...
- AT&T Offers Schools RFID Tracking For People And A...
- Insiders Remain Greatest Security Threat
-
▼
December
(37)
No comments:
Post a Comment