Connect with us

    Hi, what are you looking for?

    Tech

    NITDA Alerts Nigerians to Exploited Microsoft Office Flaw

    National Information Technology Development Agency (NITDA) has warned Nigerians of an actively exploited Microsoft Office vulnerability, CVE-2026-21509, urging immediate system updates.

    NITDA Alerts Nigerians to Exploited Microsoft Office Flaw

    NITDA

    Through its Computer Emergency Response Team (CERRT.NG), NITDA highlighted the flaw’s high severity (CVSS score 7.8) and confirmed attacker exploitation via malicious documents.

    Vulnerability Details

    CVE-2026-21509 affects Office 2016, 2019, Microsoft 365 Apps, Office 2021, LTSC 2024, and later versions, enabling bypass of Object Linking and Embedding (OLE) security controls.

    Read Also: NITDA, HORSA Empower Lawmakers’ Spouses with Digital Skills for National Growth

    Attackers craft harmful Word, Excel, or PowerPoint files delivered via email or untrusted sources; opening triggers malicious code execution without macro prompts.

    Microsoft issued emergency out-of-band patches, as exploitation preceded disclosure; attacks are targeted, often by sophisticated actors like APT28.

    Mitigation Steps

    NITDA and Microsoft recommend:

    • Installing latest security updates across affected versions.

    • Restarting Office apps, especially for 2021+ where auto-updates apply post-restart.

    • Applying registry protections if patching delays occur; enable endpoint security and email filters.

    Preview Pane is safe—full document opening is required; reinforce user training against suspicious attachments.

    Read Also: NITDA DG Urges Cross River Civil Servants to Embrace Digital Shift 

    Local Impact

    As Nigeria advances digital economy goals, NITDA stresses swift action to safeguard businesses, government systems, and individuals from this zero-day threat.

    Loading

    Spread the love
    Click to comment

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    ad

    You May Also Like

    News

    Lagos State High Court, sitting in Tapa Area of Lagos Island, has ordered the freezing of all bank accounts linked to oil tycoon, Kunle...

    News

    Lagos State Government has initiated moves to seal Access Bank Plc’s Victoria Island facility at Oniru for allegedly discharging untreated faecal matter into public...

    News

    Nigerian Communications Satellite Limited (NigComSat) has recorded a remarkable revenue surge from N650 million in 2023 to over N2 billion by end-2025, its Chief...

    News

    Amazon is in talks to buy US satellite telecoms group Globalstar, seeking to boost its bid to rival Elon Musk’s Starlink, the Financial Times...