Detecting Follina Exploits Using a Remote Answer File 

By: Matt Ehrnschwender (@M_alphaaa)  A vulnerability in the Microsoft Support Diagnostic Tool (MSDT), dubbed “Follina” (CVE-2022-30190) has been under active exploitation by threat actors for several months. The attack technique that delivers malware via Microsoft Word files first became widely known at the end of May 2022. Proof-of-Concept code, allowing generation of malicious files became […]

The post Detecting Follina Exploits Using a Remote Answer File  appeared first on Binary Defense.