8000 oleobj: add detection for customUI external links · Issue #730 · decalage2/oletools · GitHub
[go: up one dir, main page]
More Web Proxy on the site http://driver.im/
Skip to content
oleobj: add detection for customUI external links #730
Open
@decalage2

Description

@decalage2

See this article: https://www.trellix.com/en-us/about/newsroom/stories/threat-labs/prime-ministers-office-compromised.html
Sample: https://bazaar.abuse.ch/sample/f007020c74daa0645b181b7b604181613b68d195bd585afd71c3cd5160fb8fc4/

Example:

<customUI xmlns="http://schemas.microsoft.com/office/2006/01/customui" > </customUI>
  • also update oleid to report it.

Metadata

Metadata

Assignees

Projects

No projects

Relationships

None yet

Development

No branches or pull requests

Issue actions

    0