office document analysis and exploitation
Any file with extension .docm, .xlsm
etc is a macro embedded file
.xlsm
Using oletools, we can extract macro.
.doc
Using Nishang Out-Word.ps1
REQUIREMENT:
Needs payload
Needs a Windows system to generate .doc
NOTE: Need local MS Word installation. Need to disable Defender.
Microsoft Exchange Email
MFA check
office365
OWA office webApp
search on metasploit
Last updated