Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

WARNING: A New Zero-Day Threat is On the Loose

WARNING: A New Zero-Day Threat is On the Loose

Zero-day threats are some of the most dangerous ones out there. What we mean by “zero day” threats are those that have been discovered by hackers before an official patch has been released by the developers, giving them exactly zero days before they are actively exploited in the wild. One of the more dangerous zero-day threats out there at the moment is one that takes advantage of Internet Explorer.

Before we start making Internet Explorer jokes, we want to mention that there is nothing funny about online threats--particularly those that haven’t been addressed yet by the developers. This newly discovered zero-day threat is called the “Double Kill” Internet Explorer vulnerability. Unfortunately, the Chinese developers who discovered this vulnerability--a computer security company called Qihoo--have been quiet about the details regarding the double-kill IE bug. It’s also difficult to tell if your organization is under threat, as they aren’t revealing any of the warning signs of such an attack.

The only thing known for sure about this threat is that it takes root by using Word documents. It’s likely that this is done through email attachments as well, as email is a major method of transporting threats of all kinds. When the document is opened up, Internet Explorer is opened in the background via some kind of shellcode that downloads an executable file. The vulnerability does all this without showing anything of note to the user, making it a difficult threat to identify, but the effects are well-known. Apparently, the downloaded executable file installs a Trojan horse malware on the user’s device which creates a backdoor into the system.

There are a lot more unknowns than anything else with this vulnerability, though. In particular, professionals aren’t sure if all Word documents are affected by this vulnerability, or if the threat even needs Microsoft Office in order to function as intended. It’s not even known what role Internet Explorer plays in the attack, or if the documents that can trigger this attack are identifiable. All we can tell you is that you need to keep security best practices in mind to keep these kinds of zero-day threats from becoming a problem for your organization.

To start, you should never download an unexpected file from an unexpected sender. This can come in the form of a resume, receipt, or other online document. You can never know for sure what you’re actually downloading, as criminals have been able to spoof email addresses to a dangerous degree in recent years. Just be cautious about everything you can, and augment caution with powerful security tools that can identify potential risks before they become major problems.

To get started with network security, reach out to Voyage Technology at 800.618.9844.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Saturday, 13 September 2025

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Business Computing Data Business Productivity Software Innovation Hackers Cloud Network Security User Tips Efficiency Hardware Internet Malware IT Support Privacy Google Computer Email Workplace Tips Phishing IT Services Collaboration Hosted Solutions Users Workplace Strategy Ransomware Mobile Device Microsoft Small Business Quick Tips Passwords Backup Cybersecurity Saving Money Communication Data Backup Smartphone Managed Service Android Upgrade Business Management VoIP Smartphones Productivity Mobile Devices communications Data Recovery Disaster Recovery Windows Browser Social Media Microsoft Office Managed IT Services AI Current Events Tech Term Network Remote Internet of Things Automation Artificial Intelligence Facebook Miscellaneous Gadgets Cloud Computing Information Covid-19 Holiday Server Managed Service Provider Remote Work Training Outsourced IT Compliance Encryption Spam Employee/Employer Relationship Office Windows 10 IT Support Data Management Business Continuity Government Business Technology Windows 10 Bandwidth Virtualization Blockchain Wi-Fi Two-factor Authentication Mobile Office Data Security Apps Vendor Mobile Device Management Managed Services Voice over Internet Protocol Chrome Gmail Budget Networking Apple App Employer-Employee Relationship BYOD Access Control Information Technology Avoiding Downtime Tip of the week Marketing Office 365 Conferencing How To WiFi BDR HIPAA Applications Computing Hacker Risk Management Health 2FA Help Desk Website Analytics Office Tips Retail Augmented Reality Healthcare Storage Managed IT Services Password Bring Your Own Device Big Data Router Operating System Virtual Private Network Computers Paperless Office Windows 11 Infrastructure Monitoring Excel Document Management Remote Workers Firewall Telephone Scam Data loss The Internet of Things Cooperation Free Resource Project Management Windows 7 Patch Management Social Save Money Microsoft 365 Remote Monitoring End of Support Vulnerability Vendor Management Solutions Going Green Physical Security Customer Service Display Cybercrime Printer Holidays Cryptocurrency Wireless Technology Data Storage Smart Technology Supply Chain Virtual Desktop Video Conferencing Data storage LiFi Machine Learning Managed Services Provider Virtual Machines Professional Services Saving Time Word Outlook Managed IT Service Money Maintenance Downloads Humor Antivirus iPhone Licensing Safety Sports Vulnerabilities Entertainment Mouse Data Privacy Images 101 Administration Robot Mobility Telephone System Multi-Factor Authentication Cost Management Customer Relationship Management IT Management Meetings VPN Employees Settings Wireless Integration Printing Content Filtering Modem Hacking User Tip Processor YouTube Computer Repair Mobile Security Presentation Cookies Monitors Cyber Monday Medical IT Proxy Server Reviews Tactics Development 5G Hotspot Transportation Small Businesses IP Address Google Docs Unified Communications Experience Websites Mirgation Hypervisor Displays Nanotechnology Optimization PowerPoint Bitcoin Shopping Running Cable SharePoint Addiction Electronic Medical Records Language Employer/Employee Relationships Outsourcing Google Wallet Navigation Recovery Management PCI DSS Chatbots Screen Reader Writing Distributed Denial of Service Workplace Hard Drives Windows 8 Lenovo Gig Economy Laptop Service Level Agreement Internet Service Provider Virtual Reality Computing Infrastructure Teamwork Hiring/Firing Domains Drones Evernote Paperless Server Management Regulations Compliance Private Cloud Identity Identity Theft Smart Tech Memes Co-managed IT Refrigeration Superfish Bookmark Halloween Download Net Neutrality Twitter Alerts SQL Server Technology Care Public Speaking Business Communications Lithium-ion battery Financial Data Error History Scary Stories Connectivity IT Social Engineering Break Fix Scams Hacks Browsers Smartwatch Entrepreneur Upload Procurement Fun Remote Computing Azure Hybrid Work Multi-Factor Security Tech Human Resources Deep Learning Social Network Telework Cyber security Tablet IoT Communitications Dark Web Cables Undo CES Education Trends Supply Chain Management Alert Dark Data Google Calendar Term Google Apps Managed IT Customer Resource management FinTech File Sharing Regulations Star Wars IT Assessment How To Microsoft Excel IT Maintenance Mobile Computing Data Analysis Gamification Flexibility Search Notifications Staff Value Business Intelligence Legislation Shortcuts Application Best Practice Organization Travel Social Networking Buisness Google Maps Smart Devices Ransmoware Techology Fileless Malware Digital Security Cameras IBM Legal IT solutions Content Remote Working Wearable Technology Memory Vendors Comparison Google Play Be Proactive Business Growth Health IT Unified Threat Management Motherboard Data Breach Unified Threat Management Directions Videos Assessment Electronic Health Records Permissions Workforce Cortana Wasting Time Threats Trend Micro Network Congestion Specifications Security Cameras Workplace Strategies Alt Codes User Error Microchip Downtime Internet Exlporer Software as a Service Fraud Meta Competition Hosted Solution Username Managing Costs Amazon Point of Sale eCommerce Black Friday SSID Typing Database Surveillance Virtual Assistant Outsource IT Media Google Drive User Network Management Knowledge Tech Support IT Technicians Virtual Machine Environment

Blog Archive