Quickly Finding Encoded Payloads in Office Documents, (Sun, May 7th)
![](https://www.dataleakreport.com/wp-content/uploads/2023/04/Screen-Shot-2023-04-24-at-9.22.39-AM-1024x670.png)
Malicious documents like this RevengeRAT ppam file found on MalwareBazaar contain VBA code that you can analyze with oledump.py.
Article Link: https://isc.sans.edu/diary/rss/29818
1 post – 1 participant