Slashdot Mirror


Microsoft Word Forms Passwords Hacked

An anonymous reader notes: "SecurityFocus has published a hack that can be used to unlock Microsoft Word documents that have been password protected. The 'secure' file can easily be edited and the original password re-inserted, removing any trace of the modification. A ZDNet UK article says Dell uses password protected Word files to send quotes, which could make for a messy legal battle." This feature, known as 'Password to Modify', is not the password protection on the document itself, just the protection that restricts unauthorized editing of the file. This hack allows someone to download such a file, edit it, and restore the password...effectively allowing changes to the file to go potentially unnoticed.

3 of 438 comments (clear)

  1. No biggie by ultrabot · · Score: 0, Offtopic

    Anyone that passes around "confidential" stuff w/o putting it through GPG or equivalent is an idiot and deserver to be burned anyway.

    --
    Save your wrists today - switch to Dvorak
  2. HELLO SIR FROM DELL NIGERIA by asternick · · Score: 0, Offtopic

    It has come to our attention that you have need of a modren computer of the protable varietal. I HUMBLY REPRESENT THE OFFICES OF THE DELL WHO HAVE IN OUR POSSESSION A SPECIAL PRICING IN ORDER TO DELIVER MODREN COMPUTERS OF THE PROTABLE FOR A MERE ONE HUNDRED US DOLLARS ($100.00). PLEASE FIND ATTACHED THIS QUOTE WHICH I AM SURE YOU WILL REMAIN IN THE STRICTEST CONFIDENCE.

  3. Digital Millennium Copyright Act (DMCA) not DCMA by NoSuchGuy · · Score: 0, Offtopic

    But how gives a shit on these acronyms that does not match or obscure the real reason for these laws.?

    The
    HR
    passes the
    "Uniting and Strengthening America by Providing Appropriate Tools Required to Intercept and Obstruct Terrorism"
    (USA PATRIOT ACT)

    and then the
    "Terrorism" Information Awareness" (TIA) or "Total" Information Awareness (TIA)
    and now the United States Visitor and Immigrant Status Indicator
    Technology Program (''US-VISIT'');


    What does all these have in common?
    They all sound soooo harmless!

    --
    Grundgesetz * 23. Mai 1949 - 30. November 2007 - http://www.vorratsdatenspeicherung.de/