New MonikerLink Flaw Exposes Outlook Users to Data Theft and Malware
ID: 8ea8709e-f93f-55ed-8796-2e44fd5054a8
STIX ID: report--8ea8709e-f93f-55ed-8796-2e44fd5054a8
Feed Name: HackRead
Threat Score
Check Point Research disclosed a critical Outlook vulnerability (CVE-2024-21413, “#MonikerLink”) that misuses Windows COM and file:// hyperlinks to execute arbitrary code and exfiltrate NTLM credentials; the report describes three attack vectors (hyperlink, attachment, email-reading), potential system compromise and data theft, and advises patching and vigilance while Microsoft has been notified but not yet publicly responded.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
