Here is an overview of content I published in August:
Blog posts:
- Update: PDFiD.py Version 0.2.5
- Update: oledump.py Version 0.0.37
- Update: format-bytes Version 0.0.5
- Quickpost: Revisiting JA3
- Obtaining Malware Samples for Analysis
- Update: numbers-to-string.py Version 0.0.5
- Quickpost: Compiling DLLs with MinGW on Windows
YouTube videos:
- Dealing With Numeric Obfuscation
- Maldoc Analysis & Linux Tools
- Maldoc with DOSfuscation: example 2
- oledump: plugin_msg
Videoblog posts:
- Dealing With Numeric Obfuscation
- DotNetToJScript Analysis
- Maldoc Analysis & Linux Tools
- Maldoc with DOSfuscation
- oledump: plugin_msg
SANS ISC Diary entries:
- Dealing with numeric obfuscation in malicious scripts
- Video: Maldoc analysis with standard Linux tools
- Numeric obfuscation: another example
- Peeking into msg files – revisited
- A URL shortener handy for phishers
- New Extortion Tricks: Now Including Your (Partial) Phone Number!
- Video: Peeking into msg files – revisited
- OpenSSH user enumeration (CVE-2018-15473)
- Microsoft Publisher malware: static analysis
- Identifying numeric obfuscation
- “When was this machine infected?”
NVISO blog: