2 repositories on SrcLog
dump active directory. explore it offline.
generate RTF exploit payload. uses cve-2017-11882, cve-2017-8570, cve-2018-0802, and cve-2018-8174.