Here is an overview of content I published in June:
Blog posts:
- add-admin: Tiny EXE To Add Administrative Account
- Update: translate.py Version 2.5.8
- FalsePositive GitHub Repository
- VBA Purging
YouTube videos:
Videoblog posts:
SANS ISC Diary entries:
- XLMMacroDeobfuscator: An Update
- Translating BASE64 Obfuscated Scripts
- YARA’s BASE64 Strings
- ISC Handler Series: SANS@MIC – Maldocs: a bit of blue, a bit of red
- Comparing Office Documents with WinMerge
- Video: YARA’s BASE64 Strings
- Sysmon and Alternate Data Streams
NVISO blog posts: