Extracting With pngdump.py, (Sun, Jun 8th)
ID: 0e00638f-dd83-57e8-96e5-bbd865466c84
STIX ID: report--0e00638f-dd83-57e8-96e5-bbd865466c84
Feed Name: SANS ISC Diary
Threat Score
Didier Stevens analyzes a trojanized PNG containing appended data after the IEND chunk and demonstrates extraction of chunks and the hidden payload using an updated pngdump.py, with screenshots showing the PNG items and the extracted appended payload.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
