Malicious Macros
- by Vince
-
in Blog
-
Hits: 1255
In order to defend against attacks, you have to understand the attack vectors and weigh the risks. A meterpreter shell generated into an .exe file with msfvenom won't make it through email and if it somehow did manage to make its way to a desktop, it would immediately get gobbled up by the antivirus software. I know this for a fact because I've generated said payload and dropped it onto a desktop. I'm not worried about .exe files. On the other hand, I consider Microsoft Office documents a potential risk.
I can block .exe files but I cannot block Microsoft Office documents without angering the masses. With that in mind, what's the exposure? Depends on the users, no? The sender is also a factor.