Understanding Microsoft Word OLE Exploit Primitives
ID: 80a30553-3a27-5783-ab38-45c1e60f7640
STIX ID: report--80a30553-3a27-5783-ab38-45c1e60f7640
Feed Name: NCC Research
Threat Score
This whitepaper (ToorCon San Diego, Oct 2015) by Dominic Wang documents OLE internals and exploitation tactics used against Microsoft Office, with a focus on the CTaskSymbol Use-After-Free vulnerability (CVE-2015-1642). It situates the vulnerability within prior OLE exploitation research (including CVE-2013-3906), notes recent malware campaigns that abused OLE flaws, and provides technical detail intended to explain and reproduce exploitation methods for analysis and research.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
