Threat Advisory: Hackers Are Exploiting CVE-2021-40444 | Huntress
ID: 15f1b71b-f30c-51ad-aa31-6626524f2196
STIX ID: report--15f1b71b-f30c-51ad-aa31-6626524f2196
Feed Name: Huntress Blog
Threat Score
Huntress reports on CVE-2021-40444, a high-severity (8.8) MSHTML remote code execution vulnerability exploited via malicious Office (DOCX/RTF/PPTX) files and Explorer Preview; attackers have staged Cobalt Strike in observed samples, detection and registry/workaround guidance is provided, and a list of IOCs (hashes, domains, IPs) is included while Huntress validates that Microsoft patches appear to mitigate the exploit.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
