Connect with us

    Hi, what are you looking for?

    Tech

    NITDA Alerts Nigerians to Exploited Microsoft Office Flaw

    National Information Technology Development Agency (NITDA) has warned Nigerians of an actively exploited Microsoft Office vulnerability, CVE-2026-21509, urging immediate system updates.

    NITDA Alerts Nigerians to Exploited Microsoft Office Flaw

    NITDA

    Through its Computer Emergency Response Team (CERRT.NG), NITDA highlighted the flaw’s high severity (CVSS score 7.8) and confirmed attacker exploitation via malicious documents.

    Vulnerability Details

    CVE-2026-21509 affects Office 2016, 2019, Microsoft 365 Apps, Office 2021, LTSC 2024, and later versions, enabling bypass of Object Linking and Embedding (OLE) security controls.

    Read Also: NITDA, HORSA Empower Lawmakers’ Spouses with Digital Skills for National Growth

    Attackers craft harmful Word, Excel, or PowerPoint files delivered via email or untrusted sources; opening triggers malicious code execution without macro prompts.

    Microsoft issued emergency out-of-band patches, as exploitation preceded disclosure; attacks are targeted, often by sophisticated actors like APT28.

    Mitigation Steps

    NITDA and Microsoft recommend:

    • Installing latest security updates across affected versions.

    • Restarting Office apps, especially for 2021+ where auto-updates apply post-restart.

    • Applying registry protections if patching delays occur; enable endpoint security and email filters.

    Preview Pane is safe—full document opening is required; reinforce user training against suspicious attachments.

    Read Also: NITDA DG Urges Cross River Civil Servants to Embrace Digital Shift 

    Local Impact

    As Nigeria advances digital economy goals, NITDA stresses swift action to safeguard businesses, government systems, and individuals from this zero-day threat.

    Loading

    Spread the love
    Click to comment

    Leave a Reply

    Your email address will not be published. Required fields are marked *

    ad

    You May Also Like

    News

    Economic and Financial Crimes Commission (EFCC) has arrested Tunde Ayeni, former chairman of defunct Skye Bank Plc, in Abuja on Thursday, April 23, over...

    News

    President Bola Tinubu has formally requested Senate approval for a $516,333,070 loan from Deutsche Bank to fund the construction of the 1,000-kilometre Sokoto-Badagry Super...

    News

    TikTok and the International Chamber of Commerce (ICC) have partnered to launch the Digital Commerce Labs, a global initiative aimed at empowering small businesses...

    News

    Nigerian Communications Commission (NCC) has inaugurated the Nigeria IPv6 Council to accelerate the country’s transition to the next generation of internet protocol. Speaking at...