SET Update gives significantly better A/V Avoidance for MSF Payloads
ID: 36bfa513-a41d-5520-9af1-4b2106b04c36
STIX ID: report--36bfa513-a41d-5520-9af1-4b2106b04c36
Feed Name: TrustedSec blog
Threat Score
This short report describes incorporating Didier Stevens' disitool technique into the Social-Engineer Toolkit (SET) to copy or inject legitimate digital signatures into malicious executables to evade antivirus detection; it instructs users to install the Python pefile library and enable a DIGITAL_SIGNATURE_STEAL option in SET, noting the method improves but does not guarantee AV avoidance.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
