Close Menu
Xarkas BlogXarkas Blog
    What's Hot

    Android 17 Could Change Smartphones Forever With Gemini Intelligence, AI Fraud Detection, and Much More

    May 13, 2026

    Samsung Launches Android 17-Based One UI 9 Beta for Galaxy S26 Users in India

    May 12, 2026

    Realme 16T 5G Launch Date in India Set for May 22: 8,000mAh Battery, 45W Charging, Colour Options Confirmed

    May 12, 2026
    Facebook X (Twitter) Instagram
    Xarkas BlogXarkas Blog
    • Tech News

      Hummer EV Price in India 2026: Complete Guide, Features, Specifications & Availability

      April 2, 2026

      Apple Vision Pro vs Meta Quest 3: The Ultimate VR Headset Showdown

      December 3, 2025

      ChatGPT told them they were special — their families say it led to tragedy

      November 24, 2025

      Beehiiv’s CEO isn’t worried about newsletter saturation

      November 24, 2025

      TechCrunch Mobility: Searching for the robotaxi tipping point

      November 24, 2025
    • Mobiles

      Android 17 Could Change Smartphones Forever With Gemini Intelligence, AI Fraud Detection, and Much More

      May 13, 2026

      Samsung Launches Android 17-Based One UI 9 Beta for Galaxy S26 Users in India

      May 12, 2026

      Realme 16T 5G Launch Date in India Set for May 22: 8,000mAh Battery, 45W Charging, Colour Options Confirmed

      May 12, 2026

      iQOO 15T Full Specifications Revealed: Here’s When iQOO’s Gaming Focused Flagship Launching

      May 12, 2026

      Samsung Certified Re-Newed Programme Offers Refurbished Galaxy Phones With One-Year Warranty

      May 12, 2026
    • Gaming

      Discord launches Nitro Rewards, giving subscribers access to the base tier of Xbox Game Pass for no extra cost

      May 12, 2026

      NYT’s Wordle to become a TV game show

      May 11, 2026

      AI Dungeon maker Latitude unveils Voyage, a platform for creating AI-powered RPGs

      April 22, 2026

      Roblox’s AI assistant gets new agentic tools to plan, build, and test games

      April 17, 2026

      How the rewards app Freecash scammed its way to the top of the app stores

      April 15, 2026
    • SEO Tips
    • PC/ Laptops

      Dell Pro 14 (AMD Ryzen AI 7 Pro 350) Review: The Sensible Choice for Everyday Office Work

      January 9, 2026

      CES 2026: MSI Unveils New Prestige, Raider, Stealth and Crosshair Laptops with Intel Core Ultra SoCs

      January 7, 2026

      CES 2026: Samsung Unveils New Galaxy Book6 Laptops

      January 6, 2026

      CES 2026: HP Shows a Keyboard-Based PC and New EliteBooks

      January 6, 2026

      CES 2026: Intel Unveils Core Ultra Series 3, Its First Platform Built on 18A

      January 6, 2026
    • EV

      Hummer EV Price in India 2026: Complete Guide, Features, Specifications & Availability

      April 2, 2026

      Here’s How Much It Costs

      November 15, 2025

      Sodium-Ion Batteries Have Landed In America. The Hard Part Starts Now

      November 15, 2025

      Mazda Begins Testing Its Long-Overdue U.S. EV

      November 14, 2025

      Volkswagen Adds Smartwatch Support For U.S. Vehicles

      November 14, 2025
    • Gadget
    • AI
    Facebook
    Xarkas BlogXarkas Blog
    Home - Featured - Microsoft Office, Teams Vulnerabilities Enable Hackers to Access Camera and Microphone on macOS: Report
    Featured

    Microsoft Office, Teams Vulnerabilities Enable Hackers to Access Camera and Microphone on macOS: Report

    KavishBy KavishAugust 22, 2024No Comments3 Mins Read
    Facebook Twitter Pinterest Telegram LinkedIn Tumblr WhatsApp Email
    Microsoft Office, Teams Vulnerabilities Enable Hackers to Access Camera and Microphone on macOS: Report
    Share
    Facebook Twitter LinkedIn Pinterest Telegram Email


    A cybersecurity group has discovered multiple vulnerabilities in apps developed by Microsoft for macOS that allowed hackers to target users. The security flaws affect apps such as Microsoft Office, Outlook, Teams, OneNote and other apps from the Redmond firm, and hackers were able to access a user’s camera and microphone by misusing Apple’s permission framework on its desktop operating system.. While Microsoft has issued fixes for two of its applications on macOS, its other apps are still vulnerable to attackers.

    Microsoft App Vulnerabilities Let Hackers Access Camera, Microphone Without Permissions

    Cybersecurity group Cisco Talos revealed details of eight vulnerabilities spotted in Microsoft’s apps for macOS in a blog post. These flaws allowed hackers to inject specially crafted malicious libraries into six Microsoft apps — Outlook, Teams, PowerPoint, Excel, Word, OneNote — and bypass Apple’s permission model on macOS.

    dylib injection cisco talos dylib injection

    How hackers can inject malicious libraries into legitimate apps on macOS
    Photo Credit: Cisco Talos

     

    In order to gain access to a user’s microphone and camera, malicious software would need to be granted explicit user consent for the relevant permissions, in accordance with Apple’s Transparency, Consent and Control (TCC) framework on macOS. However. some malicious programs can use a process called library injection (or dylib injection on macOS) to gain access to permissions that were granted to other apps.

    As a result, macOS users who had Microsoft’s apps installed on their computer could be vulnerable to hacking, according to Cisco Talos. The flaws allowed hackers to record audio by injecting libraries into the aforementioned apps. Microsoft Excel is the only app in the list that doesn’t have access to the microphone, while apps such as Microsoft Teams can also access the device’s camera.

    Microsoft Patches Two Affected Apps, Other Apps Remain Vulnerable

     The cybersecurity group says that it reported the security vulnerabilities to Microsoft, and the firm has since updated two of the affected apps with fixes for the flaws. Users who are running the latest versions of Microsoft Teams and OneNote should not be impacted, but the company’s Outlook and Office apps are currently affected by the security flaw.

    According to Cisco Talos, Microsoft should not have disabled library validation, as it exposes users to unnecessary risks by bypassing hardened runtime safeguards put in place by Apple on the OS, designed to protect users via TCC and its permission model.

    Apple could increase security on macOS by prompting users when a third-party plugin is being loaded into apps, as these apps might have already been granted permissions. This could warn users that these external plugins can access the same permissions granted to the original app. 



    Source link

    Share. Facebook Twitter Pinterest LinkedIn Tumblr Email
    Kavish
    • Website

    Related Posts

    Android 17 Could Change Smartphones Forever With Gemini Intelligence, AI Fraud Detection, and Much More

    May 13, 2026

    Samsung Launches Android 17-Based One UI 9 Beta for Galaxy S26 Users in India

    May 12, 2026

    Realme 16T 5G Launch Date in India Set for May 22: 8,000mAh Battery, 45W Charging, Colour Options Confirmed

    May 12, 2026

    iQOO 15T Full Specifications Revealed: Here’s When iQOO’s Gaming Focused Flagship Launching

    May 12, 2026

    Discord launches Nitro Rewards, giving subscribers access to the base tier of Xbox Game Pass for no extra cost

    May 12, 2026

    Samsung Certified Re-Newed Programme Offers Refurbished Galaxy Phones With One-Year Warranty

    May 12, 2026

    Comments are closed.

    Top Reviews
    Editors Picks

    Android 17 Could Change Smartphones Forever With Gemini Intelligence, AI Fraud Detection, and Much More

    May 13, 2026

    Samsung Launches Android 17-Based One UI 9 Beta for Galaxy S26 Users in India

    May 12, 2026

    Realme 16T 5G Launch Date in India Set for May 22: 8,000mAh Battery, 45W Charging, Colour Options Confirmed

    May 12, 2026

    iQOO 15T Full Specifications Revealed: Here’s When iQOO’s Gaming Focused Flagship Launching

    May 12, 2026
    About Us
    About Us

    Email Us: info@xarkas.com

    Facebook Pinterest
    © 2026 . Designed by Xarkas Technologies.
    • Home
    • Mobiles
    • Privacy Policy

    Type above and press Enter to search. Press Esc to cancel.

    Ad Blocker Enabled!
    Ad Blocker Enabled!
    Our website is made possible by displaying online advertisements to our visitors. Please support us by disabling your Ad Blocker.