One Day Sec

What alternative COM objects can be used for hijacking Outlook besides the default one mentioned?

The article lists over 20 alternative CLSIDs for COM object 1, including `{B056521A-...}`, `{EFEF7FDB-...}`, and `{93E5752E-...}`, while keeping COM object 2 unchanged. These were identified using Process Monitor during Outlook 2013 startup, providing multiple viable hijacking points for attackers.
alternative COM objectsProcess MonitorOutlook 2013CLSID listhijacking points

Browse all Q&A →