New Specula tool uses Outlook for remote code execution in Windows
New Specula tool uses Outlook for remote code execution in Windows A new post-exploitation framework called “Specula” was released by cybersecurity firm TrustedSec, which can turn Microsoft Outlook into a command and control (C2) beacon to remotely execute code. The C2 framework works by creating a custom Outlook Home Page using WebView, exploiting CVE-2017-11774, an … Read more