Phishing PDF With Incremental Updates., (Sat, Mar 14th)

Someone asked me for help with this phishing PDF. Taking a look with pdfid.py: Nothing to see here, except Stream Objects (/ObjStm). When stream objects are detected, it’s best to generate statistics (-a) with pdf-parser.py while parsing stream objects too (-O), like this: And here we see that this PDF contains URLs (/URI). Thus we …

Phishing PDF With Incremental Updates., (Sat, Mar 14th)

Someone asked me for help with this phishing PDF. Taking a look with pdfid.py: Nothing to see here, except Stream Objects (/ObjStm). When stream objects are detected, it’s best to generate statistics (-a) with pdf-parser.py while parsing stream objects too (-O), like this: And here we see that this PDF contains URLs (/URI). Thus we …

Phishing PDF With Incremental Updates., (Sat, Mar 14th)

Someone asked me for help with this phishing PDF. Taking a look with pdfid.py: Nothing to see here, except Stream Objects (/ObjStm). When stream objects are detected, it’s best to generate statistics (-a) with pdf-parser.py while parsing stream objects too (-O), like this: And here we see that this PDF contains URLs (/URI). Thus we …

Phishing PDF With Incremental Updates., (Sat, Mar 14th)

Someone asked me for help with this phishing PDF. Taking a look with pdfid.py: Nothing to see here, except Stream Objects (/ObjStm). When stream objects are detected, it’s best to generate statistics (-a) with pdf-parser.py while parsing stream objects too (-O), like this: And here we see that this PDF contains URLs (/URI). Thus we …

Phishing PDF With Incremental Updates., (Sat, Mar 14th)

Someone asked me for help with this phishing PDF. Taking a look with pdfid.py: Nothing to see here, except Stream Objects (/ObjStm). When stream objects are detected, it’s best to generate statistics (-a) with pdf-parser.py while parsing stream objects too (-O), like this: And here we see that this PDF contains URLs (/URI). Thus we …

Phishing PDF With Incremental Updates., (Sat, Mar 14th)

Someone asked me for help with this phishing PDF. Taking a look with pdfid.py: Nothing to see here, except Stream Objects (/ObjStm). When stream objects are detected, it’s best to generate statistics (-a) with pdf-parser.py while parsing stream objects too (-O), like this: And here we see that this PDF contains URLs (/URI). Thus we …

Phishing PDF With Incremental Updates., (Sat, Mar 14th)

Someone asked me for help with this phishing PDF. Taking a look with pdfid.py: Nothing to see here, except Stream Objects (/ObjStm). When stream objects are detected, it’s best to generate statistics (-a) with pdf-parser.py while parsing stream objects too (-O), like this: And here we see that this PDF contains URLs (/URI). Thus we …

CVE-2020-10571

An issue was discovered in psd-tools before 1.9.4. The Cython implementation of RLE decoding did not check for malicious data.

CVE-2020-10571

An issue was discovered in psd-tools before 1.9.4. The Cython implementation of RLE decoding did not check for malicious data.

CVE-2020-10568

The sitepress-multilingual-cms (WPML) plugin before 4.3.7-b.2 for WordPress has CSRF due to a loose comparison. This leads to remote code execution in includes/class-wp-installer.php via a series of requests that leverage unintended comparisons of integers to strings.