Untitled attachment
https://media.infosec.exchange/infosec.exchange/media_attachments/files/113/040/020/917/284/801/original/a0f40c4d6ea95150.png
I already have a good number of LNK files that have exploited this to-be-CVE'd vulnerability over the years.
A precise search for one of the three variants seems to be to look for ExifTool metadata where the TargetFileDOSName value has slashes in it.
However, while VirusTotal obviously captures and stores this data, it doesn't seem to be possible to construct a search that looks for anything there? 🤔
GNU social JP is a social network, courtesy of GNU social JP管理人. It runs on GNU social, version 2.0.2-dev, available under the GNU Affero General Public License.
All GNU social JP content and data are available under the Creative Commons Attribution 3.0 license.