New Specula tool uses Outlook for remote code execution in Windows
The cybersecurity company TrustedSec today unveiled "Specula," a new red team post-exploitation framework that shows how Microsoft Outlook can be configured to function as a C2 beacon for the purpose of remotely executing code.
Using WebView, this C2 framework creates a personalized Outlook Home Page by taking advantage of CVE-2017-11774, an Outlook security feature bypass vulnerability that was fixed in October 2017.
According to Microsoft, in a file-sharing attack scenario, an attacker might supply a specially created document file intended to take advantage of the vulnerability read more about New Specula tool uses Outlook for remote code execution in Windows.
Get up to date on the latest cybersecurity news and enhance your knowledge of cybersecurity with o...



