Microsoft on Friday warned of a previously unknown Outlook vulnerability that Russian hackers had exploited to access user emails.
Russian hackers had exploited the previously unknown Outlook vulnerability, tracked as CVE-2023-23397 (CVSS score: 9.8), to access user emails.
This critical flaw relates to a case of privilege escalation and could be exploited to steal NT Lan Manager (NTLM) hashes and stage relay attacks without user interaction.
Microsoft noted in an advisory released this month, “Specially crafted emails could be sent by external attackers which would connect the victim to an untrusted location under their control.”
“In a nutshell, this leaks the Net-NTLMv2 hash of the victim to an untrusted network where an attacker can relay that hash to another service then and be authenticated as if they have the victim’s identity.”
Microsoft addressed the Outlook vulnerability as part of its March 2023 Patch Tuesday updates, but only after Russian-based hackers leveraged it in attacks against various European targets.
The attackers targeted a wide range of industries and organizations with malicious emails in an attempt to gain access to user emails.
On Friday, Microsoft’s incident response team disclosed findings of possible exploitation of the Outlook vulnerability dating back to April 2022.
The team’s investigation found that the Russian-based hackers had been actively targeting various industries and organizations with malicious emails, attempting to access user emails by exploiting the critical privilege escalation flaw.
Microsoft has urged all users to update their Outlook clients as soon as possible and cautioned them not to open suspicious emails or attachments until the Outlook vulnerability is patched.
It is unclear how many users have been affected by this latest attack. Microsoft has urged all customers who believe they may be vulnerable or have noticed suspicious activities related to their accounts to contact technical support immediately.
More Stories
Killnet and AnonymousSudan Collaborate to Launch Cyber Attacks on Western Organisations
In recent news, it has been reported that two Russia-sympathetic hacktivist groups, Killnet and AnonymousSudan, have allegedly launched a series...
$4000 Gone In An Instant: Mother Defrauded in Facebook Marketplace Car Deal
A mother of four is warning others to be cautious after believing she had purchased a safe and dependable car...
Shocking Scam: Sydney Family Loses $200K Life-Savings in Suncorp Spoofing Fraud
A family from Sydney has lost their life savings worth $200,000 due to a fraudulent scam. Peter and Madison, who...
Mysterious Money Transfer Leaves Couple Speechless: How They Got an Unsolicited $4000
A young couple in Melbourne claims their bank is making up a personal loan they do not understand. Ashley and...
Phishing + AI + Voice Cloning= Big Trouble: The New Way Criminals are Stealing Your Money
New Alert: Criminals use AI and voice cloning to trick you out of your money. Earlier this year, Microsoft unveiled...
‘Impossible to Spot’ Delivery Scam Email Targets Australia Post Customers – Don’t Fall Victim!
Unsuspecting shoppers should be cautious as a parcel delivery scam that is hard to distinguish targets Australia Post customers. Email...