by @leo.granda
22 Mar 2024

Bypassing Defender SmartScreen & Outlook Protected View Protocol

by @leo.granda
22 Mar 2024

Bypassing Defender SmartScreen & Outlook Protected View Protocol

CVEs

8.1 High Severity
9.8 Critical Severity

OS

10.0.25398.1128.*
10.0.25398.1128.*
10.0.25398.1128.*
10.0.25398.1085.*
10.0.25398.1085.*
10.0.25398.1085.*
10.0.25398.950.*
10.0.25398.950.*
10.0.25398.950.*
10.0.25398.1189.*
10.0.20348.2458.*
10.0.20348.2402.*
10.0.20348.2402.*
10.0.20348.2402.*
10.0.20348.2333.*
10.0.20348.770.*
10.0.20348.1903.*
10.0.20348.2700.*
10.0.20348.2700.*
10.0.20348.2700.*
10.0.17763.7009.*
18410.*
10.0.17763.6414.*
10.0.17763.6659.*
10.0.17763.5458.*
10.0.17763.3770.*
10.0.17763.5936.*
10.0.17763.5820.*
10.0.17763.6532.*
10.0.17763.5696.*
W12
10.0.22631.5039.*
10.0.22631.5039.*
10.0.22631.4890.*
10.0.22631.4890.*
10.0.22631.4751.*
10.0.22621.4751.*
10.0.22631.4460.*
10.0.22631.4460.*
10.0.22631.3880.*
10.0.22631.3880.*
W12
10.0.22000.3260.*
10.0.22000.3260.*
10.0.22000.2710.*
10.0.22000.2899.*
10.0.22000.2899.*
22000.2899.*
22000.2899.*
22000.3019.*
22000.3019.*
22000.3260.*
W12
10.0.22621.5039.*
10.0.22621.5039.*
10.0.22621.4890.*
10.0.22621.4890.*
10.0.22621.4751.*
10.0.22621.4751.*
10.0.22621.3958.*
10.0.22621.3958.*
10.0.22621.3155.*
10.0.22621.3155.*
W12
10.0.19045.5608.*
10.0.19045.5608.*
10.0.19045.5608.*
10.0.19045.5487.*
10.0.19045.5487.*
10.0.19045.5487.*
10.0.19045.5371.*
10.0.19045.5371.*
10.0.19045.5371.*
10.0.19045.5247.*
W12
10.0.19044.5608.*
10.0.19044.5608.*
10.0.19044.5608.*
10.0.19044.5487.*
10.0.19044.5487.*
10.0.19044.5487.*
10.0.19044.5371.*
10.0.19044.5371.*
10.0.19044.5371.*
10.0.19044.5011.*
W11
10.0.17763.6893.*
10.0.17763.6893.*
10.0.17763.6775.*
10.0.17763.6414.*
10.0.17763.6659.*
10.0.17763.6659.*
10.0.17763.5820.*
10.0.17763.5820.*
10.0.17763.5820.*
10.0.17763.6532.*

Apps

2024.*
2021.*
365 Apps
365 AppsMicrosoft
2401.17231.20236.*
116.0.17231.20194.*
16.0.17425.20070.*
16.0.17328.20184.*
16.0.17328.20162.*
16.0.17328.20068.*
16.0.17231.20236.*
16.0.17231.20194.*
16.0.17126.20132.*
16.0.16924.20106.*
Office
OfficeMicrosoft
16.0.17726.20160.*
16.0.17328.*
16.0.17425.20070.*
16.0.17328.20184.*
16.0.5435.*
16.0.17328.20162.*
16.0.17328.20068.*
16.0.17231.20236.*
16.0.17231.20194.*
16.0.5422.*

Screenshots from the blog posts

images/clu2nciod2xh21jk47m8mc74l.pngimages/clu2nciod2xh21jk47m8mc74l.png

Summary

CVE-2024-21412 and CVE-2024-21413 represent significant cybersecurity threats. The exploitation of these vulnerabilities underscores the importance of proactive measures to safeguard against emerging threats. By adopting a multilayered security approach, staying vigilant, and implementing best practices, organizations can mitigate the risks posed by these and future vulnerabilities.

Description

users/photos/cl16zs42l01qe0knx382g7y3m.jpg

@leo.granda

18 posts

Total vcoins

19.8K

Badges

badges/images/cl1xi65zx02el0jms239bekpv.png

Malware Researcher

badges/images/cl1xi6pcn02et0jms48zfg0ns.png

Early-bird

badges/images/clktw3w8b0psc1inaam75d4oc.png

Vulnerability Researcher

Social media links

Comments (1)