Nick Hoffman
Nick Hoffman
After talking with the owner of the Clam rules, it sounds like there are some newer features in 0.99 that the signatures are utilizing. The direct quote from him is:...
If it helps I'm pasting a link to download the RTF that this sample was extracted from. https://drive.google.com/open?id=1CREphHyHmHh1jftSwlrf7mHcb2pLKf1z password: oletools This appears to be a programmatically created sample so it...
I believe this document is benign, it was part of a testing repository that I was using for sanity checking some XLS Yara rules. I pulled the latest version and...
Would it be possible to add Ghidra to the list of disassemblers to target?