logo

SET Update gives significantly better A/V Avoidance for MSF Payloads

ID: 36bfa513-a41d-5520-9af1-4b2106b04c36

STIX ID: report--36bfa513-a41d-5520-9af1-4b2106b04c36

Feed Name: TrustedSec blog

Threat Score
60/100

Date Published: 2025-03-19

Date Updated: 2026-05-01

...
...

This short report describes incorporating Didier Stevens' disitool technique into the Social-Engineer Toolkit (SET) to copy or inject legitimate digital signatures into malicious executables to evade antivirus detection; it instructs users to install the Python pefile library and enable a DIGITAL_SIGNATURE_STEAL option in SET, noting the method improves but does not guarantee AV avoidance.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.