Here is an overview of content I published in July:
Blog posts:
- Quickpost: nslookup Types
- Update: format-bytes.py Version 0.0.9
- Quickpost: tcp-honeypot.py & Browser Tests
YouTube videos:
Videoblog posts:
SANS ISC Diary entries:
- Maldoc: Payloads in User Forms
- A “Stream O” Maldoc
- Machine Code?
- Malicious XSL Files
- Machine Code? No!
- isodump.py and Malicious ISO Files
- Malicious RTF Analysis CVE-2017-11882 by a Reader
- Analyzing Compressed PowerShell Scripts
- A Python TCP proxy
- Video: Analyzing Compressed PowerShell Scripts
- Recognizing ZLIB Compression