Powered by Zoomin Software. For more details please contactZoomin

Flowmon ADS BPATTERNS Description

DDE_Exploit - description

  • Last Updated: May 1, 2026
  • 1 minute read
    • Flowmon Products
    • Flowmon Anomaly Detection System
    • Documentation

Sources:

Attackers have shifted from using Microsoft Word documents with malicious macros to documents that exploit Microsoft's Dynamic Data Exchange (DDE) technique. This method is less effective than macro attacks because users must click through several warning messages before infection occurs. Attackers typically distribute these documents as email attachments, which can deliver various threats including Locky ransomware.

Flowmon ADS detects network traffic when systems download malicious files through DDE exploits and when infected systems communicate with command and control (C&C) servers.

DDE exploit detection in Flowmon ADS
DDE exploit detection in Flowmon ADS

TitleResults for “How to create a CRG?”Also Available inAlert