MailSniper is a penetration testing tool for searching through email in a Microsoft Exchange environment for specific terms (passwords, insider intel, network architecture information, etc.). It can be used by a non-administrative user to search their own email, or by an Exchange administrator to search the mailboxes of every user in a domain.[1]
Domain | ID | Name | Use | |
---|---|---|---|---|
Enterprise | T1087 | .003 | Account Discovery: Email Account |
MailSniper can be used to obtain account names from Exchange and Office 365 using the |
Enterprise | T1110 | .003 | Brute Force: Password Spraying |
MailSniper can be used for password spraying against Exchange and Office 365.[1] |
Enterprise | T1114 | .002 | Email Collection: Remote Email Collection |
MailSniper can be used for searching through email in Exchange and Office 365 environments.[1] |