This Friday, we’ll explore the Wad archive format, used in Doom.
https://www.youtube.com/live/g0VyFDYefqQ?si=4tKlJ0gQ9TVFV_Ir
Notices by Ange (ange@mastodon.social)
-
Embed this notice
Ange (ange@mastodon.social)'s status on Thursday, 16-Jan-2025 06:45:57 JST Ange -
Embed this notice
Ange (ange@mastodon.social)'s status on Wednesday, 08-Jan-2025 16:19:52 JST Ange What is your favorite pdf hack (not file-format based):
Change text?
Remove watermark?
Remove ads pictures on documents to print?In conversation from mastodon.social permalink -
Embed this notice
Ange (ange@mastodon.social)'s status on Sunday, 05-Jan-2025 20:03:43 JST Ange What's your favorite file format challenge / trick / bug / surprise / work / art ?
Bonus point if it's underrated or obscure!In conversation from mastodon.social permalink -
Embed this notice
Ange (ange@mastodon.social)'s status on Sunday, 05-Jan-2025 10:03:05 JST Ange My stream about crafting a PDF file from scratch is over.
https://www.youtube.com/live/q6KgFezu8tw?si=Ep9Gm-scYSr1FFcg
It was nice and chill to take the time to answer questions, thanks again for joining!In conversation from mastodon.social permalink Attachments
-
Embed this notice
Ange (ange@mastodon.social)'s status on Saturday, 04-Jan-2025 23:02:29 JST Ange I will stream in 8h about the basics of the PDF format, teaching how to make a basic PDF from scratch.
This is an easy-level introduction to the PDF [portable document format], aimed at all audiences: infosec, but also digipres, DFIR, and others.
This will not cover complex cases, polyglots, abuses or exploit.
That will come next but this stream is the start on the topic.
The stream will be recorded and available publicly.In conversation from mastodon.social permalink -
Embed this notice
Ange (ange@mastodon.social)'s status on Wednesday, 18-Sep-2024 17:55:20 JST Ange Some tools detect the EICAR file in Zip files by size and CRC so that it even detects it in password-protected zips without having the password.
This can of course lead to accidental or intentional FPs.In conversation from mastodon.social permalink -
Embed this notice
Ange (ange@mastodon.social)'s status on Wednesday, 18-Sep-2024 17:55:19 JST Ange CRC-forging is also useful to collide arbitrary contents inside a ZIP archive. It makes possible re-usable and instant MD5 collisions for ZIP-based documents such as DOCX, XLSX, EPUB, XPS, 3MF.
https://speakerdeck.com/ange/inside-out-abusing-archive-file-formatsIn conversation from mastodon.social permalink Attachments
-
Embed this notice
Ange (ange@mastodon.social)'s status on Wednesday, 18-Sep-2024 17:55:19 JST Ange Some even detect a CRC-colliding file if there's no password.
In conversation from mastodon.social permalink Attachments
-
Embed this notice
Ange (ange@mastodon.social)'s status on Wednesday, 10-Jan-2024 05:41:53 JST Ange An extreme example of a weird file construct, applicable to most formats:
a polymock, with fake file formats signatures at their correct offset.In conversation from mastodon.social permalink Attachments
-
Embed this notice
Ange (ange@mastodon.social)'s status on Friday, 30-Dec-2022 14:33:27 JST Ange My file formats dissection repo should be now up-to-date.
https://github.com/corkami/pics/blob/master/binary/README.md#imagesIn conversation from mastodon.social permalink Attachments