Microsoft Closes Outlook Copy-On-Write Flaw with Exchange Online Fix


Microsoft fixed the copy-on-write bug in Outlook for Windows in Exchange Online. The fix stops users removing attachments from sent or received messages. A strong case can be made that the fix should have been present from the start to stop any possibility that clients could comprise Exchange Native Data Protection. Microsoft doesn’t think many people were affected and they could be right, but that doesn’t make the problem any easier to swallow.

The post Microsoft Closes Outlook Copy-On-Write Flaw with Exchange Online Fix appeared first on Petri.

Continue reading Microsoft Closes Outlook Copy-On-Write Flaw with Exchange Online Fix

Outlook for Web Bans 38 More File Extensions in Email Attachments

Malware or computer virus can infect your computer in several different ways, but one of the most common methods of its delivery is through malicious file attachments over emails that execute the malware when you open them.

Therefore, to protect its u… Continue reading Outlook for Web Bans 38 More File Extensions in Email Attachments

Smashing Security #136: Oops, we created Iran’s hacking exploit

Mac users of the Zoom video conferencing app are warned their webcams could be hijacked, security firms warn of how scammers are deepfaking audio to steal from businesses, and our guest owns up to the role he played in an Iranian cyberattack against US… Continue reading Smashing Security #136: Oops, we created Iran’s hacking exploit

PoC Released for Outlook Flaw that Microsoft Patched 6 Month After Discovery

As we reported two days ago, Microsoft this week released an updated version of its Outlook app for Android that patches a severe remote code execution vulnerability (CVE-2019-1105) that impacted over 100 million users.

However, at that time, very few… Continue reading PoC Released for Outlook Flaw that Microsoft Patched 6 Month After Discovery

Important Flaw in Outlook App for Android Affects Over 100 Millions Users

Update (22 June 2019) — More technical details and proof-of-concept for the OutLook for Android vulnerability has been released that we have covered in a separate article here.

Microsoft today released an updated version of its “Outlook for Android” t… Continue reading Important Flaw in Outlook App for Android Affects Over 100 Millions Users

Slack to extend collaboration to folks who don’t want to give up email

As Slack gathered with its growing customer base this week at the Frontiers Conference in San Francisco, it announced several enhancements to the product, including extending collaboration to folks who want to stick with email instead of hanging with their co-workers in Slack . Some habits are tough to break, and using email as your […] Continue reading Slack to extend collaboration to folks who don’t want to give up email

Microsoft Cloud Breach: Hackers Read Your Email for 90 Days

Hackers have been able to read the email of Microsoft’s free cloud customers. No password required. Yes, you read that right. Incredibly, the perps got away with it for almost three months.
The post Microsoft Cloud Breach: Hackers Read Your Email for … Continue reading Microsoft Cloud Breach: Hackers Read Your Email for 90 Days

Hackers Compromise Microsoft Support Agent to Access Outlook Email Accounts

If you have an account with Microsoft Outlook email service, there is a possibility that your account information has been compromised by an unknown hacker or group of hackers, Microsoft confirmed The Hacker News.

Earlier this year, hackers managed to… Continue reading Hackers Compromise Microsoft Support Agent to Access Outlook Email Accounts