Microsoft console files are being exploited to let hackers gain access to private systems



Hackers are now using custom-made MSC files to abuse a known, but unpatched, Windows cross-site scripting (XSS) vulnerability which could allows them to remotely execute malware or malicious code on target devices.

Cybersecurity researchers from the Elastic team recently spotted threat actors distributing Microsoft Saved Console (MSC) files, which are generally used by the Microsoft Management Console (MMC). This tool handles different parts of the operating system, and can create custom views of commonly accessed tools. 

https://cdn.mos.cms.futurecdn.net/Gy9BJ8WnmKgyVMLE625BxV-1200-80.jpg



Source link

Latest articles

spot_imgspot_img

Related articles

spot_imgspot_img