Conversation
|
Thanks, this is awesome. Any chance you could change the PR to remove all the syntax changes. Adding spaces before every comment, and removing spaces (the most prolific "no change" changes, but other smaller ones exist to, like import ordering). That way the specific new/changed code you introduced can be seen? UPDATE: Leon has schooled me on golint. Currently debating if it would make sense to do a golint commit across the whole repo to save you the effort. Looking for someone to test it our side too. |
|
Really cool @wolf-mash, fantastic (and surprising) to see a variant of the original attack almost 7 years later. Nice work 💪🏼 I've bumped the go version and dependencies, and cleaned up the code with |
PR adds support for authenticating to Exchange Online via auth tokens and syncing forms to exploit CVE-2024-21378. A full write up can be found at https://www.netspi.com/blog/technical/red-team-operations/microsoft-outlook-remote-code-execution-cve-2024-21378/.