Voyage Tech Blogs

Voyage Technology has been serving the Beaver Dam area since 1999, providing IT Support such as technical helpdesk support, computer support, and consulting to small and medium-sized businesses.

WARNING: A New Zero-Day Threat is On the Loose

WARNING: A New Zero-Day Threat is On the Loose

Zero-day threats are some of the most dangerous ones out there. What we mean by “zero day” threats are those that have been discovered by hackers before an official patch has been released by the developers, giving them exactly zero days before they are actively exploited in the wild. One of the more dangerous zero-day threats out there at the moment is one that takes advantage of Internet Explorer.

Before we start making Internet Explorer jokes, we want to mention that there is nothing funny about online threats--particularly those that haven’t been addressed yet by the developers. This newly discovered zero-day threat is called the “Double Kill” Internet Explorer vulnerability. Unfortunately, the Chinese developers who discovered this vulnerability--a computer security company called Qihoo--have been quiet about the details regarding the double-kill IE bug. It’s also difficult to tell if your organization is under threat, as they aren’t revealing any of the warning signs of such an attack.

The only thing known for sure about this threat is that it takes root by using Word documents. It’s likely that this is done through email attachments as well, as email is a major method of transporting threats of all kinds. When the document is opened up, Internet Explorer is opened in the background via some kind of shellcode that downloads an executable file. The vulnerability does all this without showing anything of note to the user, making it a difficult threat to identify, but the effects are well-known. Apparently, the downloaded executable file installs a Trojan horse malware on the user’s device which creates a backdoor into the system.

There are a lot more unknowns than anything else with this vulnerability, though. In particular, professionals aren’t sure if all Word documents are affected by this vulnerability, or if the threat even needs Microsoft Office in order to function as intended. It’s not even known what role Internet Explorer plays in the attack, or if the documents that can trigger this attack are identifiable. All we can tell you is that you need to keep security best practices in mind to keep these kinds of zero-day threats from becoming a problem for your organization.

To start, you should never download an unexpected file from an unexpected sender. This can come in the form of a resume, receipt, or other online document. You can never know for sure what you’re actually downloading, as criminals have been able to spoof email addresses to a dangerous degree in recent years. Just be cautious about everything you can, and augment caution with powerful security tools that can identify potential risks before they become major problems.

To get started with network security, reach out to Voyage Technology at 800.618.9844.

 

Comments

No comments made yet. Be the first to submit a comment
Already Registered? Login Here
Guest
Friday, 30 January 2026

Captcha Image

Sign Up For Our Newsletter!

Mobile? Grab this Article!

Qr Code

Tag Cloud

Security Technology Tip of the Week Best Practices Data Business Computing Business Productivity Software Innovation Cloud Hackers Efficiency Hardware Network Security User Tips Internet Malware IT Support Privacy IT Services Google Email Workplace Tips Computer Phishing Collaboration Hosted Solutions Workplace Strategy Users Ransomware Mobile Device Backup Small Business Microsoft Productivity Quick Tips Managed Service Saving Money Passwords Communication Cybersecurity Smartphone Data Backup AI Android Upgrade Disaster Recovery Data Recovery Business Management VoIP Smartphones Mobile Devices communications Windows Browser Social Media Microsoft Office Managed IT Services Network Current Events Tech Term Internet of Things Remote Artificial Intelligence Information Holiday Facebook Miscellaneous Automation Cloud Computing Covid-19 Training Gadgets Managed Service Provider Remote Work Compliance Server IT Support Outsourced IT Employee/Employer Relationship Encryption Spam Windows 10 Office Government Data Management Business Continuity Blockchain Windows 10 Bandwidth Virtualization Business Technology Wi-Fi Two-factor Authentication Mobile Office Data Security Vendor Apps Mobile Device Management Chrome Gmail BYOD Budget WiFi Apple App Employer-Employee Relationship Tip of the week Managed Services Voice over Internet Protocol Networking How To Marketing BDR Office 365 HIPAA Applications Access Control Conferencing Computing Hacker Information Technology Avoiding Downtime Website Analytics Office Tips Augmented Reality Router Storage Password Virtual Private Network Bring Your Own Device Big Data Health Help Desk 2FA Operating System Retail Computers Risk Management Healthcare Managed IT Services Cooperation Free Resource Project Management Windows 7 Patch Management Save Money Firewall Remote Monitoring Vulnerability End of Support Microsoft 365 Vendor Management Solutions Physical Security The Internet of Things Display Printer Paperless Office Social Infrastructure Windows 11 Monitoring Going Green Document Management Excel Customer Service Cybercrime Remote Workers Telephone Scam Data loss Virtual Desktop Data storage LiFi Vulnerabilities Data Privacy Word Outlook Images 101 Robot Telephone System Cost Management Money Multi-Factor Authentication Mobility Humor IT Management VPN Meetings Safety Sports Mouse Employees User Tip Modem Integration Processor Computer Repair Mobile Security Administration Holidays Smart Technology Data Storage Machine Learning Customer Relationship Management Supply Chain Saving Time Video Conferencing Settings Managed Services Provider Wireless Printing Virtual Machines Content Filtering Professional Services Managed IT Service Hacking Presentation YouTube Maintenance Downloads Antivirus Cryptocurrency Wireless Technology Licensing iPhone Entertainment Google Wallet Telework Cyber security Tech Human Resources Trends Alert File Sharing Regulations CES Dark Data Google Calendar Recovery Communitications Cables Managed IT Customer Resource management Laptop Data Analysis Star Wars How To Microsoft Excel Hard Drives Windows 8 Supply Chain Management Domains Drones FinTech Term Google Apps Gamification Notifications Staff Travel Social Networking Legislation IT Assessment IT Maintenance Halloween Value Business Intelligence Techology Fileless Malware Google Maps Refrigeration Flexibility Public Speaking Organization Shortcuts Content Wearable Technology Health IT Unified Threat Management Motherboard Lithium-ion battery Digital Security Cameras Comparison Smart Devices Ransmoware Entrepreneur Scary Stories Memory Vendors Unified Threat Management Directions Assessment Permissions Hacks Remote Working Data Breach Fun Google Play Be Proactive Videos Network Congestion Specifications Deep Learning Electronic Health Records Workforce Wasting Time Threats User Error Microchip Internet Exlporer Fraud Undo Education Trend Micro Security Cameras Workplace Strategies Username Point of Sale Black Friday Software as a Service Meta Managing Costs Amazon Database Mobile Computing Tech Support IT Technicians eCommerce Search SSID Network Management Proxy Server Cookies Monitors Cyber Monday Application Best Practice Surveillance Virtual Assistant Outsource IT Buisness Virtual Machine Environment Media Tactics Hotspot Websites Mirgation IBM Legal Reviews IT solutions Medical IT Nanotechnology Business Growth Development Transportation Small Businesses Hypervisor Displays SharePoint Addiction Electronic Medical Records Language Chatbots Shopping Optimization Cortana PowerPoint Management Lenovo Screen Reader Writing Distributed Denial of Service Alt Codes Employer/Employee Relationships Outsourcing Downtime Navigation Service Level Agreement Virtual Reality Computing Infrastructure Competition PCI DSS Private Cloud Identity Gig Economy Hosted Solution Workplace Server Management Superfish Bookmark Identity Theft Smart Tech Typing Internet Service Provider Teamwork Hiring/Firing Regulations Compliance Evernote Paperless Download Twitter Alerts Error Google Drive User Memes Knowledge Co-managed IT SQL Server Technology Care Browsers Connectivity Social Engineering Break Fix Net Neutrality Financial Data History 5G Business Communications Upload Remote Computing IP Address Google Docs Smartwatch Multi-Factor Security Unified Communications IT Experience Scams Social Network Running Cable Azure Hybrid Work Tablet IoT Dark Web Bitcoin Procurement

Blog Archive