I found a malicious Word document with VBA code using the CrowdStrike outage for social engineering purposes. It's an .ASD file (AutoRecover file). My tool oledump.py can analyze it:
This article has been indexed from SANS Internet Storm Center, InfoCON: green