A small tool to view real-world ActivityPub objects as JSON! Enter a URL
or username from Mastodon or a similar service below, and we'll send a
request with
the right
Accept
header
to the server to view the underlying object.
{
"@context": [
"https://www.w3.org/ns/activitystreams",
{
"ostatus": "http://ostatus.org#",
"atomUri": "ostatus:atomUri",
"inReplyToAtomUri": "ostatus:inReplyToAtomUri",
"conversation": "ostatus:conversation",
"sensitive": "as:sensitive",
"toot": "http://joinmastodon.org/ns#",
"votersCount": "toot:votersCount",
"litepub": "http://litepub.social/ns#",
"directMessage": "litepub:directMessage",
"Hashtag": "as:Hashtag"
}
],
"id": "https://infosec.exchange/users/screaminggoat/statuses/112655111486592099",
"type": "Note",
"summary": null,
"inReplyTo": "https://infosec.exchange/users/screaminggoat/statuses/112649830425492018",
"published": "2024-06-21T14:36:22Z",
"url": "https://infosec.exchange/@screaminggoat/112655111486592099",
"attributedTo": "https://infosec.exchange/users/screaminggoat",
"to": [
"https://www.w3.org/ns/activitystreams#Public"
],
"cc": [
"https://infosec.exchange/users/screaminggoat/followers"
],
"sensitive": false,
"atomUri": "https://infosec.exchange/users/screaminggoat/statuses/112655111486592099",
"inReplyToAtomUri": "https://infosec.exchange/users/screaminggoat/statuses/112649830425492018",
"conversation": "tag:infosec.exchange,2024-06-11:objectId=166832790:objectType=Conversation",
"content": "<p><strong>NetSPI</strong>: <a href=\"https://www.netspi.com/blog/technical-blog/red-team-operations/microsoft-outlook-remote-code-execution-cve-2024-21378/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">CVE-2024-21378 — Remote Code Execution in Microsoft Outlook</a><br>NetSPI provides vulnerability details and a proof of concept for <a href=\"https://nvd.nist.gov/vuln/detail/CVE-2024-21378\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">CVE-2024-21378</a> (8.8 high, disclosed 13 February 2024 <a href=\"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21378\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">by Microsoft</a>) Outlook Remote Code Execution Vulnerability via synced form objects. They covered how CVE-2024-21378 was discovered and weaponized it by modifying the Outlook pentesting tool \"Ruler.\" A pull request containing the proof of concept is provided on GitHub. </p><p>Due to the renewed interest in Outlook RCE (see parent toot above), people on Twitter are resharing CVE-2024-21378.</p><p><a href=\"https://infosec.exchange/tags/CVE_2024_21378\" class=\"mention hashtag\" rel=\"tag\">#<span>CVE_2024_21378</span></a> <a href=\"https://infosec.exchange/tags/Outlook\" class=\"mention hashtag\" rel=\"tag\">#<span>Outlook</span></a> <a href=\"https://infosec.exchange/tags/RCE\" class=\"mention hashtag\" rel=\"tag\">#<span>RCE</span></a> <a href=\"https://infosec.exchange/tags/vulnerability\" class=\"mention hashtag\" rel=\"tag\">#<span>vulnerability</span></a> <a href=\"https://infosec.exchange/tags/CVE\" class=\"mention hashtag\" rel=\"tag\">#<span>CVE</span></a> <a href=\"https://infosec.exchange/tags/Microsoft\" class=\"mention hashtag\" rel=\"tag\">#<span>Microsoft</span></a></p>",
"contentMap": {
"en": "<p><strong>NetSPI</strong>: <a href=\"https://www.netspi.com/blog/technical-blog/red-team-operations/microsoft-outlook-remote-code-execution-cve-2024-21378/\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">CVE-2024-21378 — Remote Code Execution in Microsoft Outlook</a><br>NetSPI provides vulnerability details and a proof of concept for <a href=\"https://nvd.nist.gov/vuln/detail/CVE-2024-21378\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">CVE-2024-21378</a> (8.8 high, disclosed 13 February 2024 <a href=\"https://msrc.microsoft.com/update-guide/vulnerability/CVE-2024-21378\" target=\"_blank\" rel=\"nofollow noopener noreferrer\">by Microsoft</a>) Outlook Remote Code Execution Vulnerability via synced form objects. They covered how CVE-2024-21378 was discovered and weaponized it by modifying the Outlook pentesting tool \"Ruler.\" A pull request containing the proof of concept is provided on GitHub. </p><p>Due to the renewed interest in Outlook RCE (see parent toot above), people on Twitter are resharing CVE-2024-21378.</p><p><a href=\"https://infosec.exchange/tags/CVE_2024_21378\" class=\"mention hashtag\" rel=\"tag\">#<span>CVE_2024_21378</span></a> <a href=\"https://infosec.exchange/tags/Outlook\" class=\"mention hashtag\" rel=\"tag\">#<span>Outlook</span></a> <a href=\"https://infosec.exchange/tags/RCE\" class=\"mention hashtag\" rel=\"tag\">#<span>RCE</span></a> <a href=\"https://infosec.exchange/tags/vulnerability\" class=\"mention hashtag\" rel=\"tag\">#<span>vulnerability</span></a> <a href=\"https://infosec.exchange/tags/CVE\" class=\"mention hashtag\" rel=\"tag\">#<span>CVE</span></a> <a href=\"https://infosec.exchange/tags/Microsoft\" class=\"mention hashtag\" rel=\"tag\">#<span>Microsoft</span></a></p>"
},
"updated": "2024-06-21T14:36:51Z",
"attachment": [],
"tag": [
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/cve_2024_21378",
"name": "#cve_2024_21378"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/outlook",
"name": "#outlook"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/rce",
"name": "#rce"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/vulnerability",
"name": "#vulnerability"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/cve",
"name": "#cve"
},
{
"type": "Hashtag",
"href": "https://infosec.exchange/tags/microsoft",
"name": "#microsoft"
}
],
"replies": {
"id": "https://infosec.exchange/users/screaminggoat/statuses/112655111486592099/replies",
"type": "Collection",
"first": {
"type": "CollectionPage",
"next": "https://infosec.exchange/users/screaminggoat/statuses/112655111486592099/replies?only_other_accounts=true&page=true",
"partOf": "https://infosec.exchange/users/screaminggoat/statuses/112655111486592099/replies",
"items": []
}
},
"likes": {
"id": "https://infosec.exchange/users/screaminggoat/statuses/112655111486592099/likes",
"type": "Collection",
"totalItems": 3
},
"shares": {
"id": "https://infosec.exchange/users/screaminggoat/statuses/112655111486592099/shares",
"type": "Collection",
"totalItems": 0
}
}