all InfoSec news
Novel PDF malware: injecting JavaScript into the encrypted section of Adobe Type 1 font binaries is not detectable by malware scanners and doesn't interfere with decryption/decompilation of the font (along with a new tool for malicious PDF analysis)
Web: https://www.reddit.com/r/Malware/comments/xeoo5g/novel_pdf_malware_injecting_javascript_into_the/
Sept. 15, 2022, 5:53 a.m. | /u/thenextsymbol
Malware Analysis & Reports reddit.com
Apologies if this isn't new but the fact that none of the malware detection tools alert on it coupled with the fact that I could find nothing about this sort of thing on the internet suggested to me that it was a new kind of thing. No idea if this exploits a still extant vulnerability or an old one.
The tool is the [the pdfalyzer](https://github.com/michelcrypt4d4mus/pdfalyzer); I just open sourced it. …
adobe analysis decryption encrypted javascript malicious malware pdf scanners tool
More from reddit.com / Malware Analysis & Reports
Video: Packers, polymorphism and common misconceptions
2 days, 2 hours ago |
reddit.com
Fake site sponsored to imitate original site
3 days, 15 hours ago |
reddit.com
Mac Malware Persistence: What It Is, How It's Achieved
3 days, 22 hours ago |
reddit.com
New stealthy Python RAT "PY#RATION" malware targets Windows in attacks
4 days, 20 hours ago |
reddit.com
New stealthy Python RAT "PY#RATION" malware targets Windows in attacks
4 days, 23 hours ago |
reddit.com
Latest InfoSec / Cybersecurity Jobs
Cybersecurity Engineer
@ Apercen Partners LLC | Folsom, CA
IDM Sr. Security Developer
@ The Ohio State University | Columbus, OH, United States
IT Security Engineer
@ Stylitics | New York City
Information Security Engineer
@ VDA Labs | Remote
Information Security Analyst
@ Metropolitan Transportation Commission | San Francisco, CA
Director of Security Operations, CISO office
@ Okcoin | San Jose, California, United States
Systems Security Engineer
@ Synctera | Canada or US Remote
Cyberark Senior Consultant I | Remote, Canada
@ Optiv | Toronto, ON
Privacy & Cybersecurity Counsel
@ Brightspeed | Charlotte, NC, United States
Sr/Staff Threat Researcher
@ SecurityScorecard | Remote (US/Canada)
Consultant SOC / CERT H/F
@ Hifield | Sèvres, France
SOC Analyst
@ Starling Bank | Southampton, England, United Kingdom