July 19, 2023, 12:05 p.m. | MalBot

Malware Analysis, News and Indicators - Latest topics malware.news

On March 14, 2023, Microsoft published a blogpost describing an Outlook Client Elevation of Privilege Vulnerability (CVSS: 9.8 CRITICAL). The publication generated a lot of activity among white, grey and black hat researchers, as well as lots of publications and tweets about the vulnerability and its exploitation. Below, we will highlight the key points and then focus on the initial use of this vulnerability by attackers before it became public.


Affected products include all supported versions of Microsoft Outlook for …

analysis attack black hat client critical cve cve-2023-23397 cvss elevation of privilege exploitation exploiting generated march microsoft outlook privilege publications researchers vulnerability

CyberSOC Technical Lead

@ Integrity360 | Sandyford, Dublin, Ireland

Cyber Security Strategy Consultant

@ Capco | New York City

Cyber Security Senior Consultant

@ Capco | Chicago, IL

Risk and compliance specialist

@ ZainCash | Baghdad, Baghdad Governorate, Iraq

Information Security Compliance Analyst

@ Evelyn Partners | Liverpool, United Kingdom

Director of Security Engineering

@ Kasada | Melbourne