Menu
Is the Chinese Government exploiting a hole in Office for Mac?

Is the Chinese Government exploiting a hole in Office for Mac?

Chinese authorities may be exploiting a security hole in Microsoft Office for Mac to target the Uyghur people

According to Kaspersky and AlienVault Labs, Chinese authorities may be exploiting a security hole in Microsoft Office for Mac to target the Uyghur people, an ethnic group of people who live in parts of Asia and are seeking independence from Chinese rule.

The targeted attacks exploit an old Office for Mac vulnerability (CVE-2009-0563) that was actually fixed over three years ago.

Kaspersky says it has noticed a "significant spike in the number of attacks during Jan 2013 and Feb 2013, indicating the attackers are extremely active at the moment."

Phishing emails have been sent to the Uyghur community that include Microsoft Word documents, which once open, activate a Mac OS X backdoor that "would initiate a connection with the server, and its "tshd_put_file" function was configured to drop stolen data in the "/downloads/" directory located there", writes Kaspersky.

The hackers are able to remotely control the computer and spy on its user's activities.

One of the corrupt files details the "Concerns over Uyghur People's Fundamental Rights Under the New Chinese Leadership". The documents can be identified by the author name: "Captain".

Similar attacks have been reported against other ethnic groups, including the Tibetan people and Uighur activists.

Follow Karen Haslam on Twitter / Follow MacworldUK on Twitter

Related:

Mac backdoor used in attacks against Uighur activists The worst security exploits, fails and blunders: 2012 in review Security expert claims Apple will lose out to 'open, sexy, flexible' competitors Kaspersky Security for Mac review Mountain Lion and Gatekeeper: What you need to know Flashback the wake up call Apple needed: Kaspersky

Follow Us

Join the ARN newsletter!

Error: Please check your email address.

Tags MacapplicationsMicrosoftsecuritysoftwareOffice suitesExploits / vulnerabilities

Upcoming

Slideshows

IN PICTURES: VMworld 2015 Asia-Pacific and Japan party (+ 32 photos)

IN PICTURES: VMworld 2015 Asia-Pacific and Japan party (+ 32 photos)

VMware recently held an Asia-Pacific and Japan party for its partners in San Francisco following two days of keynotes and sessions. Whilst mingling and enjoying drinks and finger food, the partners were joined by VMware management who also took the opportunity to let their hair down to have some fun.

IN PICTURES: VMworld 2015 Asia-Pacific and Japan party (+ 32 photos)
IN PICTURES: VMworld 2015 sponsor and partner showcase (+41 photos)

IN PICTURES: VMworld 2015 sponsor and partner showcase (+41 photos)

VMware's sponsors and partners used the opportunity at VMworld 2015 to showcase some of their technologies. At an exhibition hall, these vendors educated those that popped by their stands on these solutions and addressed some of the issues surrounding mobility, datacentres, and the Cloud. SOme of the big names there included f5, Palo Alto Networks, HP, Intel, Samsung, and Symantec.

IN PICTURES: VMworld 2015 sponsor and partner showcase (+41 photos)

iasset.com is a channel management ecosystem that automates all major aspects of the entire sales, marketing and service process, including data tracking, integrated learning, knowledge management and product lifecycle management.

Show Comments