Hackers can now HACK you with just a Word File! | The Zero-Day Windows Exploit!
Tech Raj
Create your own native application from your website in minutes with AppMySite (no coding required): https://www.appmysite.com/?utm_source=youtube&utm_medium=sponsored&utm_campaign=techraj&utm_content=sponsored-video-word-doc-hack
This is the recently discovered Follina exploit which is assigned as CVE-2022-30190. It allows the hacker to get a Remote Code Execution (RCE) on your computer. In-order to trigger this exploit, the user need not even open the maldoc, he/she just needs to preview it! The vulnerability lies in the MS-MSDT URL protocol - Windows blindly executes code when this protocol is used along with some parameters and a powershell expression.
DISCLAIMER This video is made only for educational purposes and to bring awareness in viewers about this zero day exploit, and it contains instructions on how to protect yourself from it. So take it the right away, do not use it on anyone without their consent. This is a serious thing.
Check out John Hammond's video for a more in-depth explanation about this exploit: https://youtu.be/dGCOhORNKRk
A workaround for this vulnerability is to disable MSDT URL protocol on your computer. In-order to do that:
- Open cmd as administrator
- Backup your registry key with the command: reg export HKEY_CLASSES_ROOT\ms-msdt filename
- Disable MSDT: reg delete HKEY_CLASSES_ROOT\ms-msdt /f
This should make you invulnerable to this exploit until the patch releases.
Stay safe guys! Thanks for watching! SUBSCRIBE for more videos!
Join my Discord: https://discord.gg/6TjBzgt Follow me on Instagram: https://instagram.com/teja.techraj Website: https://techraj156.com Blog: https://blog.techraj156.com ... https://www.youtube.com/watch?v=NQKLWhvRQDE
48342733 Bytes