Russian Hackers Exploit Microsoft Office Flaw Within Days of Patch Release

Microsoft Office russian hackers

Russian state linked hackers have begun exploiting a newly patched Microsoft Office vulnerability just days after Microsoft released an emergency security update, according to multiple cybersecurity firms.

The flaw, tracked as CVE 2026 21509, was fixed by Microsoft on January 26 after reports of active exploitation. Security researchers say the Russian hacking group known as APT28 started using the vulnerability within 48 to 72 hours of the patch becoming public.

Researchers from Trellix, Zscaler, and Ukraine’s CERT say the attacks targeted government, military, transport, and diplomatic organizations across Europe and nearby regions. Victims were sent carefully crafted Office files that triggered the flaw as soon as they were opened, without requiring macros or extra user actions.

The attacks relied on phishing emails written in both English and local languages. Once opened, the files installed stealthy malware that ran in memory, avoided antivirus tools, and used trusted cloud services for communication. In several cases, the malware focused on stealing Outlook emails and maintaining long term access to internal systems.

Security analysts say the speed of exploitation shows how quickly state level attackers can reverse engineer patches and turn them into real world attacks. Microsoft and US security agencies have urged organizations to apply the update immediately and restart Office apps to ensure protections are active.

The incident highlights the shrinking window between software patches and active attacks, especially for widely used platforms like Microsoft Office.

For more related updates, visit our website.

Written By

Raj has been writing about tech, smartphones, and software updates for several years. His interest in Apple, Android, and future tech comes from a deep curiosity about how devices shape daily life. He focuses on clear, honest news, leaks, and updates that help readers understand what really matters before buying or updating their devices. When not covering tech news, he enjoys exploring new apps, following global tech trends, and learning how software evolves over time. These days, he is often lost in music playlists, lately stuck on Kpop more than he would like to admit.

More From Author

Leave a Reply

Your email address will not be published. Required fields are marked *

You May Also Like

How to update MIUI software on Xiaomi phones safely

How to Update MIUI Software on Xiaomi Phones Safely.

Updating MIUI on a Xiaomi phone is important for keeping your device fast, secure and…

Samsung One UI 8.5 update

Samsung One UI 8.5 Update Brings New Features, Eligible Devices and Release Details

Samsung has started rolling out its new One UI 8.5 update with several upgrades and…

Hunter Alpha AI model interface on OpenRouter

Mystery AI Model Hunter Alpha Sparks DeepSeek Speculation Among Developers

A new AI model called Hunter Alpha has appeared online without any clear owner. The…