Close Menu
GeekBlog

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    What's Hot

    Humanoid robot offers a peek into a future without chores

    March 10, 2026

    Employees of Google and OpenAI Just Filed a Legal Brief in Support of Anthropic

    March 10, 2026

    You can buy last year’s LG OLED TV at Best Buy for 50% off – and I highly recommend it

    March 9, 2026
    Facebook X (Twitter) Instagram Threads
    GeekBlog
    • Home
    • Mobile
    • Tech News
    • Blog
    • How-To Guides
    • AI & Software
    Facebook
    GeekBlog
    Home»Tech News»Microsoft releases urgent Office patch. Russian-state hackers pounce.
    Tech News

    Microsoft releases urgent Office patch. Russian-state hackers pounce.

    Michael ComaousBy Michael ComaousFebruary 5, 20262 Mins Read
    Share Facebook Twitter Pinterest LinkedIn Tumblr Email Copy Link
    Microsoft releases urgent Office patch. Russian-state hackers pounce.
    Share
    Facebook Twitter LinkedIn Pinterest Email Copy Link

    Russian-state hackers wasted no time exploiting a critical Microsoft Office vulnerability that allowed them to compromise the devices inside diplomatic, maritime, and transport organizations in more than half a dozen countries, researchers said Wednesday.

    The threat group, tracked under names including APT28, Fancy Bear, Sednit, Forest Blizzard, and Sofacy, pounced on the vulnerability, tracked as CVE-2026-21509, less than 48 hours after Microsoft released an urgent, unscheduled security update late last month, the researchers said. After reverse-engineering the patch, group members wrote an advanced exploit that installed one of two never-before-seen backdoor implants.

    Stealth, speed, and precision

    The entire campaign was designed to make the compromise undetectable to endpoint protection. Besides being novel, the exploits and payloads were encrypted and ran in memory, making their malice hard to spot. The initial infection vector came from previously compromised government accounts from multiple countries and were likely familiar to the targeted email holders. Command and control channels were hosted in legitimate cloud services that are typically allow-listed inside sensitive networks.

    “The use of CVE-2026-21509 demonstrates how quickly state-aligned actors can weaponize new vulnerabilities, shrinking the window for defenders to patch critical systems,” the researchers, with security firm Trellix, wrote. “The campaign’s modular infection chain—from initial phish to in-memory backdoor to secondary implants was carefully designed to leverage trusted channels (HTTPS to cloud services, legitimate email flows) and fileless techniques to hide in plain sight.”

    The 72-hour spear phishing campaign began January 28 and delivered at least 29 distinct email lures to organizations in nine countries, primarily in Eastern Europe. Trellix named eight of them: Poland, Slovenia, Turkey, Greece, the UAE, Ukraine, Romania, and Bolivia. Organizations targeted were defense ministries (40 percent), transportation/logistics operators (35 percent), and diplomatic entities (25 percent).

    Source: arstechnica.com

    Hackers Microsoft office Patch pounce Releases Russianstate urgent
    Share. Facebook Twitter Pinterest LinkedIn Tumblr Telegram Email Copy Link
    Previous ArticleAs it preps Specs for the masses, Snap’s Q4 shows revenue growth but fewer daily users
    Next Article These 10 Automatic Cat Feeders Were the Best We Tested (2026)
    Michael Comaous
    • Website

    Michael Comaous is a dedicated professional with a passion for technology, innovation, and creative problem-solving. Over the years, he has built experience across multiple industries, combining strategic thinking with hands-on expertise to deliver meaningful results. Michael is known for his curiosity, attention to detail, and ability to explain complex topics in a clear and approachable way. Whether he’s working on new projects, writing, or collaborating with others, he brings energy and a forward-thinking mindset to everything he does.

    Related Posts

    3 Mins Read

    Humanoid robot offers a peek into a future without chores

    3 Mins Read

    Employees of Google and OpenAI Just Filed a Legal Brief in Support of Anthropic

    3 Mins Read

    You can buy last year’s LG OLED TV at Best Buy for 50% off – and I highly recommend it

    3 Mins Read

    Anthropic Claims Pentagon Feud Could Cost It Billions

    2 Mins Read

    Quad Cortex mini amp modeler: All the power, half the size

    4 Mins Read

    Anthropic launches code review tool to check flood of AI-generated code

    Top Posts

    Discord will require a face scan or ID for full access next month

    February 9, 2026761 Views

    The Mesh Router Placement Strategy That Finally Gave Me Full Home Coverage

    August 4, 2025586 Views

    Trade in your old phone and get up to $1,100 off a new iPhone 17 at AT&T – here’s how

    September 10, 2025288 Views
    Stay In Touch
    • Facebook

    Subscribe to Updates

    Get the latest tech news from FooBar about tech, design and biz.

    Most Popular

    Discord will require a face scan or ID for full access next month

    February 9, 2026761 Views

    The Mesh Router Placement Strategy That Finally Gave Me Full Home Coverage

    August 4, 2025586 Views

    Trade in your old phone and get up to $1,100 off a new iPhone 17 at AT&T – here’s how

    September 10, 2025288 Views
    Our Picks

    Humanoid robot offers a peek into a future without chores

    March 10, 2026

    Employees of Google and OpenAI Just Filed a Legal Brief in Support of Anthropic

    March 10, 2026

    You can buy last year’s LG OLED TV at Best Buy for 50% off – and I highly recommend it

    March 9, 2026

    Subscribe to Updates

    Get the latest creative news from FooBar about art, design and business.

    Facebook
    • About Us
    • Contact us
    • Privacy Policy
    • Disclaimer
    • Terms and Conditions
    © 2026 GeekBlog

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.