logo

Threat Advisory: Hackers Are Exploiting CVE-2021-40444 | Huntress

ID: 15f1b71b-f30c-51ad-aa31-6626524f2196

STIX ID: report--15f1b71b-f30c-51ad-aa31-6626524f2196

Feed Name: Huntress Blog

Threat Score
75/100

Date Published: 2024-06-24

Date Updated: 2026-04-28

...
...

Huntress reports on CVE-2021-40444, a high-severity (8.8) MSHTML remote code execution vulnerability exploited via malicious Office (DOCX/RTF/PPTX) files and Explorer Preview; attackers have staged Cobalt Strike in observed samples, detection and registry/workaround guidance is provided, and a list of IOCs (hashes, domains, IPs) is included while Huntress validates that Microsoft patches appear to mitigate the exploit.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.