• Posts Tagged ‘updates’

    Quick Update on ~I32SUN.EXE

    by  • May 26, 2012 • Uncategorized

    After my initial excitement died down, I sat down and took a look at the ~I32SUN.exe file and was saddened to find it looked just like CMD.exe. Hoping for something modified or different, I threw both files into BinDiff, but was saddened to see a ...

    Read more →

    But is it Web Scale?

    by  • April 27, 2011 • Uncategorized

    I have been keeping a private collection of malicious PDFs (not for long - ;) ) stored in my MongoDB repository. The collection started off with 30 and progressed as I pulled PDFs off the Internet and the local network. I now have a couple thousan...

    Read more →

    Changes in the MalPdfObj Format

    by  • March 9, 2011 • Uncategorized

    Behind the scenes I have been workoing on improving the creation, information stored and parsing of the malpdfobj format. In its current state there is duplication in a couple areas. I found this to be annoying when parsing the data as it felt nat...

    Read more →

    Updates, Reflections and More Plans

    by  • February 9, 2011 • Uncategorized

    In my last post I mentioned that I wanted to put together an API for my malpdfobj tool, so sharing could be easier. The good news is that I have the RESTful API functioning complete with interactive API documentation, python interfaces and the abi...

    Read more →