Wednesday, November 20, 2013

Analyzing Malicious PDFs

InfoSec Institute describes Analyzing Malicious PDFs. "Several vulnerabilities were found in previous years and it keeps increasing day by day, so it’s important to analyze any PDF before opening it because just the simple act of opening the PDF file could exploit a vulnerability to automatically download malicious code from the Internet. We can analyze any PDF by using online approach or offline approach. For the protection we have to use the alternative PDF reader and always install the update or patch of PDF reader."

I didn't realize there were online services that let you scan a pdf to see if it's safe.

Bonus: There are some trojan servlets for tomcat, All Your Tomcat Are Belong to Bad Guys?.

No comments: