TE
TechEcho
Home24h TopNewestBestAskShowJobs
GitHubTwitter
Home

TechEcho

A tech news platform built with Next.js, providing global tech news and discussions.

GitHubTwitter

Home

HomeNewestBestAskShowJobs

Resources

HackerNews APIOriginal HackerNewsNext.js

© 2025 TechEcho. All rights reserved.

Targeted Attacks Against Tibetan and Hong Kong Groups Exploiting CVE-2014-4114

81 pointsby kevcampbalmost 10 years ago

4 comments

joe_the_useralmost 10 years ago
&quot;This campaign, &#x27;Detach from Attachments,&#x27; urges users to avoid sending or opening email attachments, and to use cloud-based storage to send files like Google Drive as an alternative.&quot;<p>-- Seems an entirely wrong-headed approach - easily defeated as this exploit showed (even a conventional virus could spread download links or even upload more files). Shouldn&#x27;t the campaign involve avoid insecure files in insecure format from unknown or unverified sources?
评论 #9847988 未加载
评论 #9849510 未加载
stephengilliealmost 10 years ago
I think this is the OLE vulnerability we were discussing last week:<p><a href="https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=9821405" rel="nofollow">https:&#x2F;&#x2F;news.ycombinator.com&#x2F;item?id=9821405</a>
评论 #9848201 未加载
reiichirohalmost 10 years ago
The CVE entry dates it as going way back to 2014 though?
评论 #9847332 未加载
notsonyalmost 10 years ago
If this post is being upvoted because of &quot;Tibet&quot; please remember that the US, UK and every other EU member state officially recognizes Tibet as part of the sovereign territory of China.
评论 #9848179 未加载