Hackers could spy on Mac users due to Microsoft Word vulnerability 10:11

Researchers at Cisco Talos have discovered a vulnerability in Microsoft’s macOS apps that could allow attackers to spy on Apple computer users by accessing their cameras and microphones. He says On the Talos Intelligence blog.

Cisco Talos has identified a vulnerability in Microsoft applications such as Microsoft Outlook and Teams that could allow hackers to spy on Mac users without the user’s knowledge. The attack relies on the incorporation of malicious libraries into Microsoft applications, allowing them to use rights and permissions previously granted by the user.

macOS has a Transparency Consent and Control (TCC) framework that governs app permissions to access your camera and microphone. Every app must request permission from the TCC, but the discovered vulnerability allows malware to use permissions already granted to Microsoft apps without needing to grant additional permissions.

Following the discovery of the vulnerability, Microsoft updated Teams and OneNote for macOS to change how they handle library review permissions. However, Excel, PowerPoint, Word, and Outlook apps are still vulnerable. Microsoft has classified the vulnerability as “low risk” because they rely on loading unsigned libraries to support third-party add-ins.

Experts have expressed their concerns about this issue and hope that Apple will make changes to the TCC to improve system security.

Previously reportedHe said Apple will introduce new AirPods for the first time in three years.

What are you thinking?



Source: Gazeta

Popular

More from author

Trump’s resistance in the UK was recognized in the implementation of his plan in Ukraine 01:37

The peaceful settlement plan in Ukraine, which is the legally recognized of the United States President Donald Trump's legally recognition of the Crimea in...

Weather estimators Saturday 06:21 Speaking about the weather in Moscow

Cloudy weather is expected on Saturday and up to +10 ° C, reports The Hydromeorology Center of the Russian Federation. According to the weather forecasts,...

FPV-Throns Operators destroyed several dozen Father Yaga Upers near Kupyanskoye 06:48

Russian BPP operators group "West" has already dropped 80 heavy Ukraine drones near Kupyansk. Reporting this Ria Novosti He said the commander of the...

The most useful type of beer is called 06:05

The beer, which is not connected in medium amounts, helps to recover the power after a working day and physical effort. This effect is...