Video: I opened on a malicious email attachment.. and this is what happened!

Channel: STÖK

关于

We have all been told to NOT open attachments or click on links inside emails.

But what could happen if we actually do click on a malicious email attachment?

And how can we as defenders/sysadmins detect and protect our users once it has happened?

In this Cybersecurity awareness simulation, STÖK and Fabio send a malicious phishing email, execute a javascript payload, get a shell and enumerate Active Directory.

They then walk through the detection part using Microsoft's EDR solution.


Comments have been disabled by default. But I love to have a conversation with you on this twitter thread:

https://twitter.com/stokfredrik/status/1468244281534165006