🔧 Programmierung7 Common Python Mistakes to Avoid in AI Workflows(01.09.2026 um 14:00 Uhr)
🔧 ProgrammierungThis Python Library Can Run Pandas Workloads Up to 20x Faster(02.09.2026 um 16:00 Uhr)
🔧 Programmierung7 Async Patterns for Running Agents Concurrently in Python(11.08.2026 um 14:00 Uhr)
🔧 ProgrammierungManaging Small Context Windows in Language Models(18.08.2026 um 14:00 Uhr)
🔧 ProgrammierungLearn Vectorized Thinking in Python Through Examples(26.08.2026 um 14:00 Uhr)
🔧 ProgrammierungJavaScript obfuscation: From party trick to phishing kit(27.08.2026 um 12:00 Uhr)
⚠️ Malware / Trojaner / Viren2026-09-01: Essential macOS Stealer infection(04.09.2026 um 21:29 Uhr)
🕵️ SicherheitslückenExploits and vulnerabilities in Q2 2026(26.08.2026 um 12:00 Uhr)
🔧 Programmierung7 Common Python Mistakes to Avoid in AI Workflows(01.09.2026 um 14:00 Uhr)
🔧 ProgrammierungThis Python Library Can Run Pandas Workloads Up to 20x Faster(02.09.2026 um 16:00 Uhr)
🔧 Programmierung7 Async Patterns for Running Agents Concurrently in Python(11.08.2026 um 14:00 Uhr)
🔧 ProgrammierungManaging Small Context Windows in Language Models(18.08.2026 um 14:00 Uhr)
🔧 ProgrammierungLearn Vectorized Thinking in Python Through Examples(26.08.2026 um 14:00 Uhr)
🔧 ProgrammierungJavaScript obfuscation: From party trick to phishing kit(27.08.2026 um 12:00 Uhr)
⚠️ Malware / Trojaner / Viren2026-09-01: Essential macOS Stealer infection(04.09.2026 um 21:29 Uhr)
🕵️ SicherheitslückenExploits and vulnerabilities in Q2 2026(26.08.2026 um 12:00 Uhr)

🎥 IT Security Video 🕛 kürzlich 1 Min Lesezeit CVE-2025-21357
0

SecTor 2025 | Signature of Destruction: Outlook RCE Strikes Again

Cyber Threat & Vulnerability Dossier CVSS 9.5 CRITICAL (Heuristik) EPSS 88.9%
ANGRIPPSVEKTOR
🌐 Netzwerk (Remote)
AUTHENTIFIZIERUNG
🔓 Keine Authentifizierung nötig
SCHADENSPROFIL
RCE / Vollzugriff / Full Compromise
CWE-KLASSIFIZIERUNG
CWE-94: Code Injection
Handlungsempfehlung: Patch-Tuesday Update einspielen oder betroffene Dienste in Windows Defender isolieren.
Im CVE-Radar öffnen
↗ Quelle (YouTube)
🔬 IoC Intelligence (3 Indikatoren erkannt)
CVE-2025-21357CVE-2025-47171CVE-2025-47176
🗣️ Stimme:
📺
YouTube

Author: Black Hat - Bewertung: 0x - Views:20

What if your Outlook signature could compromise your system?



Following up on last year's RCE Chaos, where we achieved remote code execution through the injection of malicious forms by abusing Exchange Outlook synchronization protocols, we're back with a new class of Outlook remote code execution vulnerabilities—this time, abusing signature roaming between cloud and desktop clients.



One compromised email account is all it takes to inject malicious signatures that auto-sync and execute on victims' machines—zero clicks, zero prompts.



We'll unveil three new RCE CVEs: CVE-2025-21357 & CVE-2025-47171 extending last year's form injection abuse and CVE-2025-47176 weaponizing the recently stabilized Outlook Roaming Signatures feature.



Expect live demos and a look into an overlooked attack surface that's been quietly sitting in your inbox for over a year. We'll also show how Exchange helps deliver the final payload—and why traditional detections will miss it.



This one's for reversers, red teamers, and defenders who thought they knew Outlook. You don't.



By:

Michael Gorelik | Chief Technology Officer, Morphisec

Arnold Osipov | Lead Researcher, Morphisec



https://blackhat.com/sector/2025/briefings/schedule/?#signature-of-destruction-outlook-rce-strikes-again-47646

Vollständiger Original-Bericht
Ausführliche Details, Code-Beispiele & Hersteller-Stellungnahme auf youtube.com.
↗ Original-Artikel auf youtube.com lesen
Wie bewertest du diesen Beitrag?
1 Klick Feedback
Teilen mit Netzwerk & Team:
Community Threat-Level Barometer
Live Votum

Wie stufst du das Risiko dieser Schwachstelle / Bedrohung für dein Unternehmen ein?

Noch keine Stimmen — schätze das Risiko als Erster ein.

Community-Analysen & Experten-Meinungen 0

Verfasse deine eigene Analyse, teile Workarounds oder diskutiere diesen Vorfall im Blog.
Noch keine Community-Analyse verfasst. Markiere einen Textabschnitt oder klicke oben auf Eigene Analyse verfassen“!
Community Pulse: Relevanz-Einschätzung
1 Klick Experten-Votum
🔴 Akute Relevanz 35%
🟡 In Evaluierung 26%
🟢 Keine Auswirkung 19%
Spannende Innovation 20%
Verwandte Story-Cluster & Quellen (Vektor-KI)
Port 8095 Engine
1 Quelle
The State of Ransomware: August 2026
1 Quelle
Applying Zero Trust Principles to Agents - Kieran Human - ASW #397
1 Quelle
Connecting Cyber Risks to Board Outcomes & BHUSA interviews from Mimecast & Zscaler - Leslie Nielsen, Brett Stone-Gross, Dan Bowden - BSW #462
Ähnliche Beiträge
🔍 Verwandte News

Auch interessante Nachrichten SecTor 2025 | Signature of Destruction: Outlook RCE Strikes Again

Thematisch verwandte Begriffe: SecTor, 2025, Signature, Destruction · 6 Treffer

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...

Laden...

Beiträge werden geladen ...

Laden...

Videos werden geladen ...