SANS ISC

[SANS ISC] More Excel DDE Code Injection

I published the following diary on isc.sans.edu: “More Excel DDE Code Injection“:

The “DDE code injection” technique is not brand new. DDE stands for “Dynamic Data Exchange”. It has already been discussed by many security researchers. Just a quick reminder for those who missed it. In Excel, it is possible to trigger the execution of an external command by using the following syntax… [Read more]

Leave a Reply

Your email address will not be published.

This site uses Akismet to reduce spam. Learn how your comment data is processed.