logo

New MonikerLink Flaw Exposes Outlook Users to Data Theft and Malware

ID: 8ea8709e-f93f-55ed-8796-2e44fd5054a8

STIX ID: report--8ea8709e-f93f-55ed-8796-2e44fd5054a8

Feed Name: HackRead

Threat Score
86/100

Date Published: 2024-02-17

Date Updated: 2026-04-22

Author: Waqas

...
...

Check Point Research disclosed a critical Outlook vulnerability (CVE-2024-21413, “#MonikerLink”) that misuses Windows COM and file:// hyperlinks to execute arbitrary code and exfiltrate NTLM credentials; the report describes three attack vectors (hyperlink, attachment, email-reading), potential system compromise and data theft, and advises patching and vigilance while Microsoft has been notified but not yet publicly responded.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.