Windows falls victim to animated cursor attacks

By
Follow google news

Corrupted cursor files could deliver malicious payloads.

Windows falls victim to animated cursor attacks
Microsoft is warning that attackers are actively exploiting an unpatched vulnerability in animated cursor (.ani) files for Windows.

Security vendors have seen series of targeted attacks that used malformed .ani files. The flaw allows attacks to take over control of a system without any user interaction.

The attack is launched when the user receives a specially-crafted .ani file embedded in either a web page or e-mail message. The file is installed on the user's system and then delivers its malicious payload.

Nearly all supported versions of Windows and Internet Explorer are vulnerable to the attack. Only users running Windows Vista and Internet Explorer 7 in protected mode appear to be safe, said Microsoft. In protected mode, no file is allowed to access or modify any system files without user permission.

Alternative browsers such as Firefox or Opera do not appear to be vulnerable to the attack.

Add iTnews as your trusted source

Got a news tip for our journalists? Share it with us anonymously here.
Copyright ©v3.co.uk
Tags:

Most Read Articles

Anthropic opens Claude Mythos Preview AI program to Australia

Anthropic opens Claude Mythos Preview AI program to Australia

Defence says Palantir is "sandboxed" in its environment

Defence says Palantir is "sandboxed" in its environment

Services Australia describes fraud, debt-related machine learning use cases

Services Australia describes fraud, debt-related machine learning use cases

Researchers build self-replicating AI worm with BYO LLM

Researchers build self-replicating AI worm with BYO LLM

Log In

  |  Forgot your password?