Re: [exim] [oss-security] Exim CVE-2019-16928 RCE using a h…

Top Page
Delete this message
Reply to this message
Author: Peter Wullinger
Date:  
To: exim-users
Subject: Re: [exim] [oss-security] Exim CVE-2019-16928 RCE using a heap-based buffer overflow
Hi there,

>   After you've rev-iewed all these documents, we can -easily talk abou-t
>     the following steps:


This very much looks like thread hijacking used by emotet-successor type
malware: Quote message from hijacked mailbox, reply to original sender
with malware link but from a different sender address.

Somebody that received the original message has/has a malware infection.

Kind regards,
  Peter