home.social

#outlook — Public Fediverse posts

Live and recent posts from across the Fediverse tagged #outlook, aggregated by home.social.

  1. Inside Kimsuky's Abuse of Legitimate Remote Control Tools Across Northeast Asia

    Kimsuky conducted spear phishing campaigns against South Korean and Japanese targets during the first half of 2026, distributing LNK malware through OneDrive share links. The malicious files established scheduled tasks that periodically fetched PowerShell scripts from command-and-control servers to profile systems, exfiltrate Thunderbird and Outlook email data, and log keystrokes. The threat actor installed legitimate remote control software including Chrome Remote Desktop and AnyDesk to evade antivirus detection and maintain multiple access channels. A malicious Chrome extension designed to steal Gmail data exhibited characteristics of AI-generated code, featuring Korean comments, debug strings, and Unicode emoji throughout. The operation employed rotating infrastructure and compromised legitimate Korean servers as command-and-control nodes to impede tracking efforts.

    Pulse ID: 6a873495a873c0ec3c6d9880
    Pulse Link: otx.alienvault.com/pulse/6a873
    Pulse Author: AlienVault
    Created: 2026-08-20 17:08:37

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #AnyDesk #Asia #Chrome #ChromeExtension #CyberSecurity #EDR #Email #ICS #InfoSec #Japan #Kimsuky #Korea #LNK #Malware #OTX #OpenThreatExchange #Outlook #Phishing #PowerShell #RAT #SouthKorea #SpearPhishing #UK #bot #AlienVault

  2. Cavern C2 Uses DNS and Google Apps Script to Blend Into Legitimate Traffic

    Indicators extracted from public reporting. Source: securelist.com/project-cav3rn-

    Pulse ID: 6a8367506b41736758a8d45b
    Pulse Link: otx.alienvault.com/pulse/6a836
    Pulse Author: CyberHunter_NL
    Created: 2026-08-17 19:56:00

    Be advised, this data is unverified and should be considered preliminary. Always do further verification.

    #CyberSecurity #Cyberespionage #DNS #Espionage #Google #HTTP #HTTPS #InfoSec #OTX #OpenThreatExchange #Outlook #RCE #SecureList #bot #CyberHunter_NL

  3. Da ich bereits 2 Arbeitstage komplett auf #IT Probleme verschwendet habe, die unsere SystemAdmins nicht raffen/lösen, weil die alle keine IT'ler sind:

    #Kleopatra wurde neu aufgespielt. Danach Update Rechner auf W11.

    Wie kann ich einen bestehenden Schlüssel für ein Funktionspostfach so importieren, dass Kleopatra den als "meinen" erkennt und in Outlook zum Senden anbietet?
    Outlook/ GpgOL bietet nur meinen persönlichen Schlüssel an.

    #Fedihelp #ItProblem #Software #Outlook

    Edit: W11

  4. Announcing General Availability of Authenticator Lite (in Outlook)

    "Authenticator Lite (in Outlook) expands the opportunity to convert users by bringing the enhanced security of push notifications to devices that have not yet downloaded the Microsoft Authenticator App. "

    techcommunity.microsoft.com/t5

    #microsoft #security #mfa #entra #azuread #azureactivedirectory #authenticatorapp #outlook #phone #azure #microsoftsecurity #identity #idp #authentication #cloud #cloudnative #ios #android #mobile