June 3, 2022
1 min read

State-backed Chinese hackers exploiting new MS Office bug

Chinese hackers have a long history of using software security flaws to target Tibetans….reports Asian Lite News

China government-backed hackers, previously observed targeting the Tibetan government-in-exile based in Dharamshala, are actively exploiting a bug in Microsoft Office to steal and delete users’ data.

According to cyber-security firm Proofpoint, the newly-discovered vulnerability titled ‘Follina’ in Microsoft Office is being exploited by advanced persistent threat (APT) group ‘TA413’ linked to the Chinese government.

“TA413 CN APT spotted ITW exploiting the #Follina #0Day using URLs to deliver Zip Archives which contain Word Documents that use the technique. Campaigns impersonate the “Women Empowerments Desk” of the Central Tibetan Administration,” Proofpoint said in a tweet.

Chinese hackers have a long history of using software security flaws to target Tibetans.

Microsoft has acknowledged the vulnerability, officially titled CVE-2022-30190 regarding the Microsoft Support Diagnostic Tool (MSDT) in Windows vulnerability, but was yet to issue a security patch.

“An attacker who successfully exploits this vulnerability can run arbitrary code with the privileges of the calling application. The attacker can then install programmes, view, change, or delete data, or create new accounts in the context allowed by the user’s rights,” Microsoft said in an update.

In a blog post, cyber-security researcher Kevin Beaumont also detailed the new vulnerability.

According to the Verge, current analysis suggests that ‘Follina’ affects Microsoft Office 2013, 2016, 2019, 2021, Office ProPlus, and Office 365.

The US Cybersecurity and Infrastructure Security Agency has also asked system administrators to implement Microsoft’s guidance for mitigating exploitation.

“Customers with Microsoft Defender Antivirus should turn-on cloud-delivered protection and automatic sample submission. These capabilities use artificial intelligence and machine learning to quickly identify and stop new and unknown threats,” said Microsoft.

ALSO READ: Canada says China harassed its aircraft on N. Korea mission

Previous Story

Panjshir sees fierce fighting between NRF and Taliban

Next Story

Mitigation steps suggested on Ken-Betwa project’s impact on wildlife

Latest from -Top News

Defence bridges rise as UAE General visits India

UAE Land Forces Chief’s New Delhi visit strengthens defence ties with India, deepening cooperation in technology, training and strategic planning through high-level talks, industry briefings and ceremonial engagements….reports Asian Lite News The

Chip passports for UAE Indians

India’s missions in the UAE launch chip-enabled e-passports and a streamlined online system, promising faster immigration, reduced paperwork and a smoother experience for more than 4.3 million expats….reports Asian Lite News The

Taliban’s Grave Warning for Pakistan

It came less than 24 hours after Pakistan’s Defence Minister Khawaja Asif reportedly issued a stern warning to Afghan Taliban…reports Asian Lite News As relations between Afghanistan and Pakistan continue to deteriorate,

US deports 2,790 Indians in 2025

The MEA on Thursday confirmed that over 2,790 Indians were deported from the US this year after authorities verified their identity and nationality….reports Asian Lite News The Ministry of External Affairs (MEA) confirmed on

India–Cyprus talks on future plan

EAM Jaishankar expressed appreciation for Cyprus’ support for India on cross-border terrorism….reports Asian Lite News External Affairs Minister S. Jaishankar and Cyprus Foreign Minister Constantinos Kombos met in New Delhi on Thursday
Go toTop

Don't Miss

Taiwan Watches Closely as Chinese Warships Circle

Taiwanese armed forces have monitored the situation and deployed naval

Volkswagen exits Xinjiang amid human rights controversy 

The decision aligns with VW’s broader cost-cutting measures, which include