TTPwire Vol. 1 · MITRE ATT&CK·Tagged

← All stories

Black Hills InfoSec

MailFail

BHIS · 2025-09-02 · Read original ↗

ATT&CK techniques detected

2 predictions
T1566.002Spearphishing Link
85%
“ack - j / 8a189bafbb54e00fb1b3f3e22dcd81c9 / raw / 5ad366adf6abdaaf981fd8bede5223f543e4242c / dmarc _ and _ spf _ check. py # downloading a file of the top one million domain names wget https : / / downloads. majesticseo. com / majestic _ million. csv # formatting the file cat ma…”
T1071.003Mail Protocols
31%
“##594450215266838447 vim reconstruct _ private _ rsa _ key. py python3 reconstruct _ private _ rsa _ key. py cat > cracked _ private _ key. pem # https : / / gist. github. com / ack - j / 76585af46375641ec841cb6b77d345c3 vim send _ dkim _ email. py python3 send _ dkim _ email. py…”

Summary

MailFail is a Firefox browser extension that identifies and provides commands to exploit a large number of email-related misconfigurations for the current domain and subdomain. The extension's UI popup highlights any misconfigurations in red and links to the supporting documentation.

The post MailFail appeared first on Black Hills Information Security, Inc..