Product
medium
advisory
Outlook Security Settings Registry Modification
2 rules 1 TTPAttackers modify Outlook security settings via registry changes to enable malicious mail rules and bypass security controls, potentially leading to persistence and data compromise.
Microsoft Outlook
persistence
registry_modification
outlook
email
2r
1t
medium
advisory
Suspicious MS Outlook Child Process
2 rules 3 TTPsDetection of suspicious child processes spawned by Microsoft Outlook, indicative of spear phishing and malicious file execution leading to potential initial access and further exploitation.
Microsoft Outlook +3
initial-access
phishing
malware
windows
2r
3t